OfficialVerified

Cx Agentic AI MCP Server

Checkmarx One scanning, findings, and AI remediation tools for MCP-enabled coding agents.

Data last scanned today · Reviewed today

660PythonApache-2.0

Overview

Cx Agentic AI MCP Server provides an interface between Checkmarx One and your preferred AI development environments. By exposing project scanning, vulnerability management, and remediation capabilities as callable tools, it enables your assistant to query and resolve security findings directly within your coding session.

Our verdict

With a security score of 43/100, this server is classified as high-risk. The evaluation highlights critical gaps, specifically that authentication methods and read-only mode support remain unreviewed. Given these findings, this tool is recommended only for developers operating in non-sensitive environments until further security audits are conducted.

  • Supports automated project scanning and AI-driven remediation
  • Contains zero direct external dependencies
  • Released under an Apache-2.0 open source license
  • Lacks verification for read-only mode support
  • Authentication mechanisms remain unreviewed
  • Maintained by community contributors rather than the vendor

Compatibility

ClientLocalDockerRemoteRead-only
ChatGPT
Claude Desktop
Cursor
VS Code
Windsurf

Frequently asked questions

Which AI clients are supported by the Checkmarx Security MCP server?

The server supports any MCP-capable AI client, including Claude, Cursor, GitHub Copilot, Windsurf, and Kiro.

What functionalities does the MCP server expose to the AI assistant?

The server provides tools for scanning projects, investigating security findings, project management, and generating AI-based remediation.

How do I set up authentication for the MCP server?

You can find instructions for setting up API keys and OAuth2 authentication in the documentation file at docs/authentication.md.

Where can I find instructions for configuring the MCP server for specific clients?

Examples for per-client configuration are provided in the examples/ directory of the repository.

Where can I look if I encounter issues with the server?

The documentation at docs/troubleshooting.md covers common issues regarding connections, authentication, and scan failures.

Alternatives

Badge

Cx Agentic AI MCP Server security score, rated on RepoAI

Maintain this server? Add the live badge to your README.