Announcing Snyk MCP for Agentic Workflows - Early Access
We are excited to announce that Snyk MCP for Agentic Workflows is transitioning from an experimental feature to Early Access. This milestone introduces significant enhancements to how developers can integrate Snyk's security intelligence into their AI-driven workflows, making security an even more seamless part of the development process.
As we move to Early Access, we are introducing several key changes and new features to improve security, usability, and visibility.
Folder Trust Mechanism: Before a scan can be initiated, MCP will now require the explicit trust of the target folder via a browser popup confirmation. The path of the trusted folder is then saved in the local configuration for future use. For developers who require it, this security mechanism can be disabled using the
--disable-trust
flag.New MCP Tools: This release introduces a suite of new, dedicated tools to expand the capabilities of MCP. These include:
snyk_aibom
,snyk_container_scan
,snyk_iac_scan
,snyk_sbom_scan
, andsnyk_trust
. These tools provide more granular control and a wider range of security scans that can be programmatically invoked within your AI environments.Improved Logging and Analytics: We've enhanced our logging and analytics to provide better insights and easier debugging. Logs are now sent as notifications to the MCP Host and are also persisted locally.
VS Code Extension Auto-Discovery: To simplify the setup process for developers using Visual Studio Code, MCP will be auto-discovered through our VS Code extension (starting v2.23.0) for GitHub Copilot. This makes it even easier to get started with AI-powered security scanning directly within your IDE.
--experimental Flag Removal: With the move to Early Access, the
--experimental
flag is no longer required to use MCP. We've streamlined the process, allowing for easier integration and a cleaner command-line experience. Existing workflows that have the flag configured will not be affected and will continue to work as expected.
If you have any questions, feel free to reach out to the Snyk support team.
We encourage everyone to explore these new capabilities. To benefit from a more powerful and secure Snyk MCP experience, including all the features mentioned, please upgrade to Snyk CLI v1.1298.0!

Costin Busioc | Senior Product Manager