Datadog has launched a Code Security MCP server that scans AI-generated code for vulnerabilities, exposed secrets, risky dependencies, and infrastructure misconfigurations in real time within the developer's workflow. It consolidates SAST, SCA, secrets detection, and IaC scanning into a single local server with one authentication flow, eliminating the need to manage multiple tools. Scanners are downloaded on demand each session to ensure up-to-date detection. The tool is designed to catch security issues at code generation time rather than waiting for pull requests or CI pipelines.
Table of contents
Detect vulnerabilities as code is generatedConsolidate security scans into a single workflowBuild a secure foundation for AI-assisted developmentSort: