Install and verify
--project / AXGUARD_ROOT at the workspace you want analyzed. The host command must resolve to the same environment where the MCP extra is installed.
Tool catalog (31)
Preferaxguard_security_review unless you need a focused follow-up.
Primary and understanding
axguard_security_reviewaxguard_get_projectaxguard_get_application_modelaxguard_get_attack_surface
Scan and model
axguard_scanaxguard_auditaxguard_threat_model
Data flow
axguard_trace_flowaxguard_find_taint_pathsaxguard_find_sensitive_flows
Findings
axguard_list_findingsaxguard_get_findingaxguard_verify_findingaxguard_verify_fix
Evidence
axguard_get_evidenceaxguard_get_evidence_chainaxguard_get_counter_evidence
Attack paths
axguard_find_attack_pathsaxguard_get_attack_pathaxguard_explain_attack_path
Security Twin
axguard_get_security_twinaxguard_compare_security_twinaxguard_what_ifaxguard_blast_radius
Security Memory
axguard_get_security_memoryaxguard_get_security_historyaxguard_find_regressions
Investigation and predictive
axguard_investigateaxguard_get_investigationaxguard_predict_security_risksaxguard_analyze_change_risk
Approvals
Annotations (readOnlyHint, …) are MCP hints. AXguard’s policy engine enforces approvals separately.
Unknown tools default to requiring approval.
Agent skill
Teach agents when to call MCP with skillaxguard-security — see Agent skill. Client-specific setup: AI agents.