Agent stack · 3 MCPs


Security review
Repos, dependencies, and error signals for agents.
Difficulty: IntermediateSetup time: 15 minMCPs: 3
GitHub, Sentry, and Brave Search MCPs for triage and dependency awareness.
Install all 3 MCPs at once
Paste into .cursor/mcp.json or your client's MCP settings. Add API keys from each server's README where required.
{
"mcpServers": {
"github": {
"command": "npx",
"args": [
"-y",
"@github/github-mcp-server"
],
"env": {
"GITHUB_PERSONAL_ACCESS_TOKEN": "YOUR_GITHUB_API_KEY"
}
},
"sentry": {
"command": "npx",
"args": [
"-y",
"@modelcontextprotocol/server-sentry"
],
"env": {
"SENTRY_AUTH_TOKEN": "YOUR_SENTRY_API_KEY"
}
},
"brave-search": {
"command": "npx",
"args": [
"-y",
"@modelcontextprotocol/server-brave-search"
],
"env": {
"BRAVE_API_KEY": "YOUR_BRAVE_SEARCH_API_KEY"
}
}
}
}{
"mcpServers": {
"github": {
"command": "npx",
"args": [
"-y",
"@github/github-mcp-server"
],
"env": {
"GITHUB_PERSONAL_ACCESS_TOKEN": "YOUR_GITHUB_API_KEY"
}
},
"sentry": {
"command": "npx",
"args": [
"-y",
"@modelcontextprotocol/server-sentry"
],
"env": {
"SENTRY_AUTH_TOKEN": "YOUR_SENTRY_API_KEY"
}
},
"brave-search": {
"command": "npx",
"args": [
"-y",
"@modelcontextprotocol/server-brave-search"
],
"env": {
"BRAVE_API_KEY": "YOUR_BRAVE_SEARCH_API_KEY"
}
}
}
}{
"mcp": {
"servers": {
"github": {
"command": "npx",
"args": [
"-y",
"@github/github-mcp-server"
],
"env": {
"GITHUB_PERSONAL_ACCESS_TOKEN": "YOUR_GITHUB_API_KEY"
}
},
"sentry": {
"command": "npx",
"args": [
"-y",
"@modelcontextprotocol/server-sentry"
],
"env": {
"SENTRY_AUTH_TOKEN": "YOUR_SENTRY_API_KEY"
}
},
"brave-search": {
"command": "npx",
"args": [
"-y",
"@modelcontextprotocol/server-brave-search"
],
"env": {
"BRAVE_API_KEY": "YOUR_BRAVE_SEARCH_API_KEY"
}
}
}
}
}{
"mcpServers": {
"github": {
"command": "npx",
"args": [
"-y",
"@github/github-mcp-server"
],
"env": {
"GITHUB_PERSONAL_ACCESS_TOKEN": "YOUR_GITHUB_API_KEY"
}
},
"sentry": {
"command": "npx",
"args": [
"-y",
"@modelcontextprotocol/server-sentry"
],
"env": {
"SENTRY_AUTH_TOKEN": "YOUR_SENTRY_API_KEY"
}
},
"brave-search": {
"command": "npx",
"args": [
"-y",
"@modelcontextprotocol/server-brave-search"
],
"env": {
"BRAVE_API_KEY": "YOUR_BRAVE_SEARCH_API_KEY"
}
}
}
}{
"mcpServers": {
"github": {
"command": "npx",
"args": [
"-y",
"@github/github-mcp-server"
],
"env": {
"GITHUB_PERSONAL_ACCESS_TOKEN": "YOUR_GITHUB_API_KEY"
}
},
"sentry": {
"command": "npx",
"args": [
"-y",
"@modelcontextprotocol/server-sentry"
],
"env": {
"SENTRY_AUTH_TOKEN": "YOUR_SENTRY_API_KEY"
}
},
"brave-search": {
"command": "npx",
"args": [
"-y",
"@modelcontextprotocol/server-brave-search"
],
"env": {
"BRAVE_API_KEY": "YOUR_BRAVE_SEARCH_API_KEY"
}
}
}
}Setup steps
- Install each MCP using the combined config below
- Fill in required env vars for authenticated servers
- Restart your MCP client (Cursor / Claude / VS Code)
- Ask the agent to confirm tools are available
Once set up, try
- Confirm all MCPs in Security review are connected and list available tools
- Walk me through a first workflow using Security review
- What env vars do I still need for Security review?
Share this stack
Set up with your agent
Paste into Cursor, Claude, or any agent that can run multi-step MCP setup.
Install the Averlo stack "Security review" (GitHub MCP, Sentry MCP, Brave Search MCP) for Cursor.
1. For each server, read its README if install fails.
2. Merge this combined config:
{
"mcpServers": {
"github": {
"url": "https://api.githubcopilot.com/mcp/",
"headers": {
"Authorization": "Bearer YOUR_GITHUB_PAT"
}
},
"sentry": {
"command": "npx",
"args": [
"@sentry/mcp-server"
],
"env": {
"SENTRY_ACCESS_TOKEN": "YOUR_TOKEN",
"EMBEDDED_AGENT_PROVIDER": "openai",
"OPENAI_API_KEY": "YOUR_SENTRY_API_KEY"
}
},
"brave-search": {
"command": "npx",
"args": [
"-y",
"@brave/brave-search-mcp-server"
],
"env": {
"BRAVE_API_KEY": "YOUR_BRAVE_API_KEY"
}
}
}
}
3. Collect any required API keys from the user; do not invent secrets.
4. Smoke-test each server.
Stack page: https://averlo.xyz/stacks/security-review.html
