AgentReadyHomeAgent ListingRuntimePricing

← Agent Listing

BurpMCP (swgee)

MCP Tools and AgentsFreeOpen Source

Burp Suite extension with an MCP server to enhance manual application security testing with LLMs.

🛡️ AgentReady threat assessment

MAESTRO 7-layer threat model + OWASP AIVSS risk score for BurpMCP (swgee), derived from its capabilities.

AIVSS 8.5 · High
View MAESTRO 7-layer threat model →

These scores are auto-generated from public information (the agent's own listing, docs, and repository) using the canonical OWASP AIVSS formula and the MAESTRO framework — an estimate for guidance, not a penetration test, audit, or certification. See the scoring methodology — every score is re-derived by the same automated method as an agent's public evidence changes.

Overview

BurpMCP is a Burp Suite extension exposing an MCP server so clients like Claude Desktop and Cursor can let AI perform autonomous web-app testing with full control and visibility. It focuses on augmenting manual AppSec workflows rather than fully automating them. As an intercepting-proxy control surface it carries the usual offensive-tooling scope and misuse risks.

Key features and capabilities

Use cases