4,500+ servers built on MCP Fusion
Vinkius
HCL AppScan logo
Vinkius
AutoGen logo

How to Use the HCL AppScan MCP in AutoGen

Let autonomous agents debate and triage HCL AppScan vulnerabilities using AutoGen.

See Vinkius in Action

Works with every AI agent you already use

…and any MCP-compatible client

HCL AppScan MCP on Cursor AI Code Editor MCP Client HCL AppScan MCP on Claude Desktop App MCP Integration HCL AppScan MCP on OpenAI Agents SDK MCP Compatible HCL AppScan MCP on Visual Studio Code MCP Extension Client HCL AppScan MCP on GitHub Copilot AI Agent MCP Integration HCL AppScan MCP on Google Gemini AI MCP Integration HCL AppScan MCP on Lovable AI Development MCP Client HCL AppScan MCP on Mistral AI Agents MCP Compatible HCL AppScan MCP on Amazon AWS Bedrock MCP Support
MCP Servers - Free for Subscribers
AutoGen

Connect HCL AppScan MCP to AutoGen

Create your Vinkius account to connect HCL AppScan to AutoGen and route execution through our secure gateway. The platform manages server hosting, runtime updates, and security layers. Configuration requires no manual server provisioning.

GDPR Free for Subscribers

Multi-Agent Vulnerability Triage

The `list_issues` MCP tool feeds raw security findings directly into a multi-agent chat. A security-focused agent pulls the list and flags high-severity items. A developer-focused agent then uses `get_issue` to inspect the exact payload and argues whether the flaw is actually exploitable in the current architecture. They negotiate the real risk before bothering a human. The security agent pushes for immediate remediation, while the developer agent checks the application context to determine if a compensating control exists. You get a summarized, debated consensus instead of a massive alert dump.

Consensus-Driven DAST Execution

Triggering a dynamic test happens via the `start_dast_scan` tool. Before firing it, an operations agent might check the current deployment schedule. It debates with the security agent on the best time to run the heavy scan without taking down the staging environment. Once they agree, one agent executes the tool. Another agent takes over monitoring duties by polling `get_scan`. If the scan fails or hangs, the group regroups to decide whether to restart the job or alert the DevSecOps team.

Audit Infrastructure via AutoGen MCP Server

Agents need to know what they are protecting, which is where `list_apps` comes in. They map out the active inventory and retrieve specific risk profiles using `get_app`. To verify connectivity, they call `list_presence` to check if the local AppScan agents are online. This creates a self-healing audit loop. If an agent notices an internal application lacks a healthy presence connection, it alerts the infrastructure team. The group continuously monitors the environment state without manual oversight.

Setup guide

Set up HCL AppScan MCP in AutoGen

Prerequisites

  • Python 3.10+ installed
  • autogen-ext[mcp] package
  • Active Vinkius subscription with a valid endpoint token
  1. 1

    Install AutoGen with MCP

    Run pip install "autogen-ext[mcp]" autogen-agentchat. The MCP extension includes mcp_server_tools for stateless tool access.

  2. 2

    Fetch tools from the MCP

    Call mcp_server_tools(SseServerParams(url=...)) with your Vinkius endpoint. Replace [YOUR_TOKEN_HERE] with your token from cloud.vinkius.com.

  3. 3

    Run your agent

    Pass the tools to AssistantAgent and call agent.run(). The agent invokes HCL AppScan tools and returns structured results.

agent.py
from autogen_ext.tools.mcp import SseServerParams, mcp_server_tools
from autogen_agentchat.agents import AssistantAgent
from autogen_ext.models.openai import OpenAIChatCompletionClient

server_params = SseServerParams(
    url="https://edge.vinkius.com/[YOUR_TOKEN_HERE]/mcp"
)

tools = await mcp_server_tools(server_params)

agent = AssistantAgent(
    name="HCL AppScan_assistant",
    model_client=OpenAIChatCompletionClient(model="gpt-4o"),
    tools=tools,
)

result = await agent.run("List recent HCL AppScan data")
print(result.messages[-1].content)

Why Choose Vinkius

Vinkius connects your tools to AI with real-time monitoring and automatic cost savings — all from one dashboard.

Real-time monitoring

Live

visibility into every interaction

Connect your favorite tools to your AI and see exactly what's happening — every request, every response, in real time.

Built-in savings

60%

lower AI costs

Vinkius compresses data between your apps and your AI automatically. Lower bills every month — no configuration required.

Single dashboard

One

place for every integration

Every tool your AI connects to, managed from a single screen. One account, complete control.

Common questions about HCL AppScan MCP in AutoGen

Install `autogen-ext[mcp]`. Initialize `mcp_server_tools` with your Vinkius MCP endpoint, then pass the resulting list directly into your `AssistantAgent` constructor.
Yes. You provide the tool list to any agent that needs it. The `McpToolAdapter` handles the schema conversion behind the scenes for all of them.
They figure it out through conversation. One agent will run `list_apps` to get the directory, find the target ID, and pass that ID to the agent responsible for triggering the scan.
It works natively. You configure `StreamableHttpServerParams` with your Vinkius URL, and the framework manages the async communication automatically.
Completely. When your MCP connection retrieves raw vulnerability payloads via `get_issue`, the data is processed in a stateless, ephemeral sandbox. Vinkius drops the entire isolate the moment the API call finishes.

Start using the HCL AppScan MCP today

We host it, we monitor it, we maintain it. You just paste one token.

Built & Managed by Vinkius 30s setup 10 tools

We've already built the connector for HCL AppScan. Just plug in your AI agents and start using Vinkius.

No hosting. No infrastructure. No complex setup.
All 10 tools are live and waiting. You're up and running in seconds.

Claude Claude
ChatGPT ChatGPT
Cursor Cursor
Gemini Gemini
Windsurf Windsurf
VS Code VS Code
JetBrains JetBrains
Vercel Vercel
+ other MCP clients

Vinkius gives your AI agents access to the full catalog of app connectors, all fully managed, secure, and enterprise-ready. One subscription, every tool you need.

Zero hosting required Full MCP catalog included Enterprise-grade security Auto-updated by Vinkius

Built, hosted, and secured by Vinkius. You just connect and go.