PlugMyPlugin
โ† Browse

mcp-yoshi

aliksir โ˜… 1

mcp-yoshi is a real-time security filter for MCP tool communication that runs as a Claude Code hook, inspecting outbound requests (API keys, private keys, PII, path traversal) and inbound responses (prompt injection, shell embedding, script injection, credential leakage, sandbox escape). It detects 21+ attack patterns including tool definition tampering, prompt injection, and response-based exfiltration attempts, with three-level verdicts (PASS, WARN, BLOCK) and configurable logging.

Security DevOps free runs shell

Install

> /plugin marketplace add aliksir/mcp-yoshi
> /plugin install mcp-yoshi

Source: https://github.com/aliksir/mcp-yoshi

What it's made of

1 command ยท 2 hooks

Commands
1
Agents
0
Skills
0
MCP servers
0
Hooks
2 ยท PostToolUse, PreToolUse

What it needs & plugs into

API keys
none
Paid services
none detected
External tools
mcp-yoshi
Talks to
nothing external detected

Facts extracted from the plugin's files. Prose generated by claude-haiku-4-5-20251001.

Is this your plugin?

Claim it to keep the card accurate and enter the weekly contest. Requires signing in as the GitHub owner (aliksir).