Skip to main content
Secure Annex hosts an MCP server which provides access to extension information and files. This enables the ability to use natural language to understand extensions from the perspective of your organization’s risk tolerence.

Connect

The MCP server can be added to other applications with this configuration.
{
  "mcpServers": {
    "secure-annex": {
      "command": "npx",
      "args": ["-y", "mcp-remote", "https://mcp.secureannex.com/mcp"]
    }
  }
}
Once added, the service will prompt the user to authenticate using OAuth. If you do not already have a Secure Annex account, you must login to the application first in order for one to be created.

Available Tools

search_extensions

Search extensions by name/description across platforms. Returns extension_id/slug for other tools.

get_extension_details

Get comprehensive metadata for a specific extension including permissions and overview.

get_security_analysis

Get AI-powered security analysis with risk assessments and detailed findings.

get_signatures

Get signature matches for an extension, including rule names, severity, and file paths where signatures were detected.

get_verdicts

Get security verdicts and assessments for an extension, including confidence scores and reasoning.

list_extension_files

List all files in an extension version with directory structure.

read_extension_file

Read content of a specific extension source file.

search_extension_files

Search extension files by filename or content with context.

Usage

Try prompts like:
Can you tell me about the extension Browser WatchDog for Chrome and any problems it might have using Secure Annex?
I