StackHawk API Security Testing
Unified workflow capability for API security testing and vulnerability management with StackHawk. Covers application and environment management, scan orchestration via Perch, security finding triage, report generation, scan policy enforcement, and repository management. Designed for AppSec engineers, DevSecOps teams, and security program managers.
What You Can Do
MCP Tools
list-applications
List all applications configured in StackHawk for security testing
list-scans
List security scan history for an application environment
get-scan
Get detailed results for a specific security scan
list-findings
List all security vulnerabilities discovered in a scan
get-finding
Get full details for a specific security vulnerability finding
trigger-scan
Trigger a new DAST security scan for an application via StackHawk Perch
get-scan-status
Check the current status of a running or completed scan
list-scan-policies
List security scan policies configured for an organization