VibeShift MCP
Get secure, working code in 1 shot
2025-05-19

Put cursor in auto feedback loop so that it tries to generate secure, fully working code in one shot. Completely open source.
VibeShift MCP is an open-source security agent that integrates with AI coding assistants like GitHub Copilot and Cursor to ensure generated code is both functional and secure. It acts as an automated security engineer, analyzing AI-generated code in real time to detect vulnerabilities such as XSS and SQL injection, then providing AI-driven remediation before the code reaches production.
The tool operates within the Model Context Protocol (MCP), enabling seamless interaction with existing AI coding environments. Key features include static and dynamic code analysis, automated test recording, regression testing, and a self-healing mechanism for test scripts. By embedding security directly into the development workflow, VibeShift helps developers ship secure code faster without manual reviews.
Setup requires Python 3.10+, an LLM API key, and Playwright for browser interactions. Its modular design supports contributions, particularly for new security analyzer integrations.
The tool operates within the Model Context Protocol (MCP), enabling seamless interaction with existing AI coding environments. Key features include static and dynamic code analysis, automated test recording, regression testing, and a self-healing mechanism for test scripts. By embedding security directly into the development workflow, VibeShift helps developers ship secure code faster without manual reviews.
Setup requires Python 3.10+, an LLM API key, and Playwright for browser interactions. Its modular design supports contributions, particularly for new security analyzer integrations.
Developer Tools
Artificial Intelligence
GitHub
Tech