Proximity: Open-source MCP security scanner

Source: Help Net Security

Author: Mirko Zorz

URL: https://www.helpnetsecurity.com/2025/10/29/proximity-open-source-mcp-security-scanner/

Proximity: Open-source MCP security scanner

ONE SENTENCE SUMMARY:

Proximity is an open-source tool that assesses MCP server risks with NOVA, enhancing AI system security evaluations.

MAIN POINTS:

  1. Proximity scans Model Context Protocol servers to identify available prompts, tools, and resources.
  2. Evaluates potential security risks linked to MCP servers like prompt injection and data exfiltration.
  3. Integrates with NOVA rule engine to detect issues such as prompt injection and jailbreak attempts.
  4. Helps security teams assess AI systems before deployment in their environments.
  5. Created to address the increased attack surface from the widespread adoption of MCP servers.
  6. Provides a security assessment framework for exposed server prompts and tools.
  7. Analysts write pattern-based rules with NOVA for detecting suspicious content.
  8. Allows scanning of tool descriptions to detect harmful content before deployment.
  9. Available for free on GitHub for easy access by developers and security teams.
  10. Intended to adapt with changing AI environments for continued security evaluation.

TAKEAWAYS:

  1. Proximity enhances security evaluation of AI systems with MCP server scanning.
  2. Collaboration with NOVA provides a robust framework for detecting security threats.
  3. Offers a proactive solution to mitigate risks from exposed MCP resources.
  4. Free availability on GitHub makes it accessible to developers globally.
  5. Aims to support ongoing AI security assessments as technology evolves.