โ Browse
mcp-yoshi
aliksir โ
1
mcp-yoshi is a real-time security filter for MCP tool communication that runs as a Claude Code hook, inspecting outbound requests (API keys, private keys, PII, path traversal) and inbound responses (prompt injection, shell embedding, script injection, credential leakage, sandbox escape). It detects 21+ attack patterns including tool definition tampering, prompt injection, and response-based exfiltration attempts, with three-level verdicts (PASS, WARN, BLOCK) and configurable logging.
Install
> /plugin marketplace add aliksir/mcp-yoshi
> /plugin install mcp-yoshi
What it's made of
1 command ยท 2 hooks
- Commands
- 1
- Agents
- 0
- Skills
- 0
- MCP servers
- 0
- Hooks
- 2 ยท PostToolUse, PreToolUse
What it needs & plugs into
- API keys
- none
- Paid services
- none detected
- External tools
mcp-yoshi- Talks to
- nothing external detected
Facts extracted from the plugin's files. Prose generated by claude-haiku-4-5-20251001.
Is this your plugin?
Claim it to keep the card accurate and enter the weekly contest. Requires signing in as the GitHub owner (aliksir).