Back to Directory/Security & Auth

Skarn

Scans AI coding sessions and assistant configs for leaked secrets and risky hooks; local, redacted

Security & AuthRoffv0.33.0

skarn-dist

Compiled Skarn release binaries and man pages, published per tag by the Skarn release pipeline.

Free-feature use without a license token is governed by the Skarn Free Edition License Agreement (EULA-FREE.md); use under a license token or trial is governed by the Skarn End User License Agreement (EULA.md). Both ship here, inside every release tarball, and at https://getskarn.com/terms/.

Install options: https://getskarn.com (Homebrew tap skarn-security/tap, container image ghcr.io/skarn-security/skarn, or the release assets in this repository).

Installation

Source-derived launch command. Check the maintainer’s required arguments and credentials before running:

bash
npx -y @skarn-security/skarn

Set up in your AI client

Merge this template into ~/Library/Application Support/Claude/claude_desktop_config.json. Keep existing servers. Add any arguments, credentials, and permissions required by the maintainer; this template has not been install-tested.

json
{
  "mcpServers": {
    "com-getskarn-skarn": {
      "command": "npx",
      "args": [
        "-y",
        "@skarn-security/skarn"
      ]
    }
  }
}

Restart Claude Desktop completely for changes to take effect. Confirm the server appears connected in the client’s tool list, then try a read-only example from its documentation.

Claude Desktop setup reference

Package

@skarn-security/skarnnpm

Compatible MCP Clients

Skarn works with any MCP-compatible client. Copy the config snippet from the Configuration section above and add it to the file shown for your client, then restart the application.

  • Claude Desktop~/Library/Application Support/Claude/claude_desktop_config.jsonRestart Claude Desktop completely for changes to take effect.
  • Cursor~/.cursor/mcp.jsonRestart Cursor for changes to take effect.
  • VS Code.vscode/mcp.jsonReload VS Code window for changes to take effect.
  • Windsurf~/.codeium/windsurf/mcp_config.jsonRestart Windsurf for changes to take effect.
  • Claude Code.mcp.jsonSave at the project root, then start Claude Code in that project and review the MCP server approval prompt. Keep real credentials out of shared files.

Learn More