How to Use the Veracode MCP in Vercel AI SDK
Show real-time security scan results in your frontend with Vercel AI SDK.
Works with every AI agent you already use
…and any MCP-compatible client
Connect Veracode MCP to Vercel AI SDK
Create your Vinkius account to connect Veracode to Vercel AI SDK and route execution through our secure gateway. The platform manages server hosting, runtime updates, and security layers. Configuration requires no manual server provisioning.
Stream App Security Profiles to Your UI
The `get_application_details` tool retrieves a Veracode application's compliance policy, business criticality rating, and risk score. Since results stream directly into the UI via Vercel AI SDK, users see this detailed information appear in real-time, eliminating loading spinners. You can also track all configured Dynamic Analysis (DAST) scans using `list_dynamic_analyses`. This makes building live dashboards simple; your agent fetches data and streams updates as they arrive.
Pinpoint Code Vulnerabilities in Real Time
Need to show a user exactly where a flaw is? The `get_finding_details` tool pulls the vulnerability type (CWE), affected source file, and specific code path. With Vercel AI SDK, this data streams instantly into your React or Next.js component. It also gives remediation guidance right out of the box. You can process a list of findings via `list_security_findings` and stream actionable advice to the user as they interact with your product.
Manage App Structure On Demand
Managing app containers is straightforward. Use `create_application` when you need a new Veracode profile container, or use `delete_application` if the profile is retired. The SDK handles these actions as API calls, showing immediate confirmation. Furthermore, listing all apps with `list_applications` provides the unique GUIDs needed to keep your front-end state accurate. This makes building a reliable application inventory page fast.
Set up Veracode MCP in Vercel AI SDK
Prerequisites
- Node.js 18+ and a TypeScript project
-
ai+@modelcontextprotocol/sdkpackages - Active Vinkius subscription with a valid endpoint token
- 1
Install dependencies
Run
npm install ai @modelcontextprotocol/sdkplus your preferred model provider (e.g.@ai-sdk/openai). - 2
Create the Streamable HTTP transport
Use
StreamableHTTPClientTransportwith your Vinkius endpoint URL. Replace[YOUR_TOKEN_HERE]with your token from cloud.vinkius.com. - 3
Discover and use tools
Call
mcpClient.tools()to auto-discover all Veracode tools. Pass them directly togenerateText()orstreamText()— no manual schema definitions needed. - 4
Works with any model provider
Swap
openai("gpt-4o")for any AI SDK provider — Anthropic, Google, Mistral. The MCP tools work identically across all supported models.
import { experimental_createMCPClient as createMCPClient } from "ai";
import { StreamableHTTPClientTransport } from "@modelcontextprotocol/sdk/client/streamableHttp";
import { generateText } from "ai";
import { openai } from "@ai-sdk/openai";
const transport = new StreamableHTTPClientTransport(
new URL("https://edge.vinkius.com/[YOUR_TOKEN_HERE]/mcp")
);
const mcpClient = await createMCPClient({ transport });
const tools = await mcpClient.tools();
const { text } = await generateText({
model: openai("gpt-4o"),
tools,
prompt: "List recent Veracode transactions",
});
console.log(text);
await mcpClient.close(); Independent Platform Disclaimer: Vinkius is an independent platform and is not affiliated with, endorsed by, sponsored by, verified by, or otherwise authorized by Veracode. All third-party trademarks, logos, and brand names are the property of their respective owners. Their use on this website is strictly for informational purposes to identify service compatibility and interoperability.
Why Choose Vinkius
Vinkius connects your tools to AI with real-time monitoring and automatic cost savings — all from one dashboard.
Real-time monitoring
Live
visibility into every interaction
Connect your favorite tools to your AI and see exactly what's happening — every request, every response, in real time.
Built-in savings
60%
lower AI costs
Vinkius compresses data between your apps and your AI automatically. Lower bills every month — no configuration required.
Single dashboard
One
place for every integration
Every tool your AI connects to, managed from a single screen. One account, complete control.
Common questions about Veracode MCP in Vercel AI SDK
Use it with your favorite AI tools
Connect this server to Cursor, Claude, VS Code, and more.
Start using the Veracode MCP today
We host it, we monitor it, we maintain it. You just paste one token.