Skip to content
Verified official

web recon agent MCP

v0.8.1

io.github.joepangallo/web-recon-agent

Owned-target web security assessment MCP server for authenticated, high-friction apps.

transport:stdio runtime:npm

Target client

run in your project directory

Held in this page only — never stored, logged, or sent anywhere but back to your screen.

claude mcp add web-recon-agent -e MCP_TARGET_ALLOWLIST=<MCP_TARGET_ALLOWLIST> -e MCP_OWNED_TARGETS=<MCP_OWNED_TARGETS> -e MCP_JOB_STORE_PATH=<MCP_JOB_STORE_PATH> -e MCP_MAX_CONCURRENT=<MCP_MAX_CONCURRENT> -e MCP_CONFIG_PATH=<MCP_CONFIG_PATH> -- npx -y mcp-web-recon-agent

Adds it for this project only. Append --scope user to make it available everywhere. Claude Code docs

This listing does not declare its tools. Connect the server and your client will discover them on the handshake.