Redthread

com.redthreadsecv0.7.469Updated Oct 9, 2026

Attack paths, scan findings and shadow AI for AI-native apps and their clouds; vet MCP servers.

VerifiedStreamable HTTPWeb executableSecurity & Monitoring

Overview

AI-generated overview

Gives an assistant visibility into attack paths, scan findings and shadow AI across AI-native apps and their clouds, and lets it vet MCP servers.

What it does
The server exposes security context for AI-native applications and the cloud environments they run in. According to its description it covers attack paths, scan findings and shadow AI, and it can vet MCP servers. No individual tools are listed in the manifest, so the exact operations are not documented.
When to use it
Worth considering when you want an assistant to reason about security exposure in AI-native applications and their cloud accounts, or to check MCP servers before adopting them. Less useful if you only need general cloud management or code assistance without a security focus. Because no tool list is published, evaluate it against your own workflow before relying on it.
Requirements
A remote MCP endpoint reached over streamable HTTP at the provider's hosted address. No packages, environment variables or headers are declared, and no authentication method is stated, so account or credential needs are not documented. Network access to the provider's service is required.
Before you install
The manifest declares no authentication, environment variables or headers, so it is unclear what credentials or account access the remote endpoint expects; confirm this before connecting. The description mentions scanning and vetting, which implies the service inspects your applications, cloud environments and MCP servers, so review what data is sent to the provider. No tool list is published, so the exact read or write actions are unknown.

Installation

In SourceWeft

  1. Open Redthread in the dashboard and add it to a workspace.
  2. Enable the server for the chats that should use its tools.

Web executable via Streamable HTTP. Remote servers run from the web runtime once configured in a workspace.

Other MCP clients

Add this to your client's mcpServers config.

{
  "mcpServers": {
    "redthread": {
      "type": "http",
      "url": "https://app.redthreadsec.com/mcp"
    }
  }
}

Tools

0
Tool metadata has not been indexed yet.

Version history

1
  1. v0.7.469LatestOct 9, 2026