URL SSRF Prevention Validator

URL SSRF Prevention Validator MCP Connector for Claude

A+

Prevents SSRF attacks by validating URL schemes and blocking internal IP ranges.

3 tools Official Updated Oct 1, 2026 Official Vinkius Partner

This MCP server provides a security layer to prevent Server-Side Request Forgery (SSRF) vulnerabilities. It ensures that AI agents only access safe, public web resources by validating the URL scheme and performing deterministic 32-bit integer math to block access to internal, private, and loopback IP ranges. Using the validate_url tool, agents can verify if a target is safe before attempting to browse, effectively shielding the host network from unauthorized probing. It is compatible with Cursor, VS Code, Claude Desktop, Windsurf, and any MCP-compatible client.

ssrfsecurityurl-validationnetwork-safetyip-filtering

3 tools expose this connector's capabilities to your AI agent.

check_ip_safety

Checks if an IP is in a private range

parse_url_components

Parses URL into components

validate_url

See how to talk to your AI agent using URL SSRF Prevention Validator.

Is the URL https://192.168.1.1 safe to visit?

No, the URL is not safe because it targets a private IP range.

Check if https://vinkius.com is a safe URL.

Yes, https://vinkius.com is a safe, public URL.

Validate the safety of file:///etc/passwd

No, the URL is not safe because the file scheme is prohibited.

The `validate_url` tool checks the URL scheme to ensure it is web-safe and uses bitwise integer math to block any requests targeting private or loopback IP ranges.

Related Connectors