Dockerfile Audit

by io.github.UnbearableDev · security · mcp-server, official-registry

Hadolint-grade Dockerfile audit — 19 checks: secrets, privileges, supply chain, hygiene.

Source: https://github.com/UnbearableDev/dockerfile-audit

Install

git clone https://github.com/UnbearableDev/dockerfile-audit

Tags: mcp-server, official-registry

Source: mcp-registry

About security MCP servers and Claude skills

Security MCP servers let agents scan dependencies, audit logs, check for vulnerabilities, and enforce policy guardrails. Critical for any agent that touches production.

Dockerfile Audit is one of hundreds of security entries indexed on Skiln. Browse the full security category or the complete directory of Claude skills, MCP servers, agents, commands, and hooks.

Related security MCPs and skills

  • Szamlazz.hu MCP by io.github.UnbearableDev

    Hungarian sole-trader invoicing via Szamlazz.hu - issue, query, PDFs, VAT-ceiling tracking.

  • Kubernetes Manifest Audit by io.github.UnbearableDev

    kube-linter audit for Kubernetes manifests — 63 checks: security, availability, RBAC, network.

  • IAC Audit Pack by io.github.UnbearableDev

    Four IaC audits in one call: Compose, Dockerfile, GitHub Actions, Kubernetes. 131 checks.

  • Hungarian Postcode Validator by io.github.UnbearableDev

    Hungarian postcode lookup + validation - 3,484 codes, sub-10ms lookups, bulk address endpoint.

  • GitHub Actions Audit by io.github.UnbearableDev

    GitHub Actions workflow security audit - 21 checks: pinning, permissions, secrets, injection.

  • Docker Compose Audit by io.github.UnbearableDev

    Security audit for docker-compose.yml — 25 checks: secrets, privileges, network, volumes, images.

  • io.github.cameronrye/activitypub-mcp by io.github.cameronrye

    Security-first, read-only-by-default MCP server for ActivityPub and the Fediverse.

  • ai.sitepulsar/mcp by ai.sitepulsar

    SitePulsar AEO audits: fetch FIND/READ/USE agent-readiness scores for any website.

Frequently asked questions

How do I install Dockerfile Audit?

Add the install command above to your Claude Code, Cursor, or Windsurf MCP configuration. Most servers register via npx, a local command, or a Docker image. Refer to the source repository for environment variables and credential requirements.

Which clients support Dockerfile Audit?

Any MCP-compatible client works: Claude Desktop, Claude Code CLI, Cursor, Windsurf, Zed, and VS Code with the official MCP extension. OpenAI Codex and GitHub Copilot increasingly support MCP via adapter bridges.

Is Dockerfile Audit free?

The server itself is typically open source. Any upstream service (API keys, paid tiers, hosted infrastructure) may have its own pricing. Check the source repository for details.