Diagnose, secure, and benchmark your MCP servers
Diagnose, secure, and benchmark your MCP servers. The mcp doctor mcp server wraps that behind the Model Context Protocol, so an assistant can use it through 7 defined tools rather than through you.
Zero-config CLI that auto-discovers MCP server configs across Claude Code, Cursor, VS Code, Windsurf, and Claude Desktop — then tests connections, flags security issues, and benchmarks latency in seconds.
Everything the assistant can do here goes through one of these:
doctor — Run all checks at once (scan + security + bench)scan — Test all MCP server connectionssecurity — Audit configs for security issuesbench — Benchmark server response timesserve — Run as an MCP server (stdio transport)Cursor — ✅Windsurf — ✅Installation goes through your MCP client rather than a global install: point it at @wigu/mcp-doctor on npm and it is fetched when the client starts. The copy-paste blocks for Claude Desktop, Claude Code and Cursor are further down this page.
Plenty of developer tooling servers cover similar ground. The differences that matter in practice are scope of access and how much setup stands between you and a working tool call. MCP Doctor's toolset — doctor, scan, security and 4 more — is a fair guide to whether it matches your workflow. It is maintained by realwigu; worth a glance at recent repository activity before you build anything load-bearing on it.
SyncDev reviews every entry in this directory against the project's own documentation before publishing, and revisits them as servers change.
| Tool | What it does |
|---|---|
| doctor | Run all checks at once (scan + security + bench) |
| scan | Test all MCP server connections |
| security | Audit configs for security issues |
| bench | Benchmark server response times |
| serve | Run as an MCP server (stdio transport) |
| Cursor | ✅ |
| Windsurf | ✅ |
{
"mcpServers": {
"doctor": {
"command": "npx",
"args": ["-y", "@wigu/mcp-doctor"]
}
}
}Add to claude_desktop_config.json, then restart Claude Desktop.
Kill hallucinated APIs — version-accurate, up-to-date library documentation injected straight into context.
Microsoft's official browser automation server — drive a real browser through the accessibility tree, no screenshots needed.
GitHub's official server — repos, issues, pull requests, Actions and code security, straight from your assistant.
Issue tracking at the speed of conversation — Linear's official hosted server with OAuth and zero install.
Local repository surgery — status, diffs, commits, branches and history for any repo on disk.
Timezone sanity for AI — current time anywhere and correct conversions, without the model doing date math.