spring-plugin — security grade SAFE, quality 69/100

Security audit verdict: SAFE · quality 69/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by explyt · MCP Server · ★ 162

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is spring-plugin safe to install? View the security audit →

About spring-plugin

Explyt Spring Plugin for IntelliJ IDEA Community Edition ### Runtime-accurate Spring tooling for IntelliJ IDEA Community — free. Explyt Spring brings real Spring understanding to IntelliJ IDEA Community Edition: bean navigation and inspections backed by your app's actual context, a Spring debugger, an in-IDE Swagger/HTTP client, Quarkus support, Kotlin-first checks, and Spring-aware MCP tools for AI agents. Free for commercial and non-commercial use. text Settings → Plugins → Marke

ideintellijintellij-ideaintellij-pluginjavajetbrainskotlinmcpmcp-toolsmodel-context-protocol

Quick Facts

Stars162
Forks16
LanguageKotlin
CategoryMCP Server
LicenseApache-2.0
Quality Score69.3697361495299/100
Open Issues63
Last Updated2026-10-04
Created2023-11-19
Platformscli, mcp
Est. Tokens~18k

Compatible Skills

These tools work well together with spring-plugin for enhanced workflows:

  • sivalabs-agent-skills — semantic(0.56)+complementary+shared_fw(spring)+rare_topics+similar_pop (62%)
  • JavaClaw — semantic(0.52)+complementary+shared_fw(spring)+similar_pop (61%)
  • api2mcp4j — semantic(0.64)+shared_fw(spring)+rare_topics+similar_pop+shared_platform (60%)

spring-plugin alternative? Top 6 similar tools

Looking for a spring-plugin alternative? If you're comparing spring-plugin with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • api2mcp4j by TheEterna · ⭐ 109

    Spring Boot Starter: Auto-convert existing REST APIs (@RestController) to MCP Server with zero/low-code. Expos

  • drift by dadbodgeoff · ⭐ 785

    Codebase intelligence for AI. Detects patterns & conventions + remembers decisions across sessions. MCP server

  • MCP-Defender by MCP-Defender · ⭐ 256

    Desktop app that automatically scans and blocks malicious MCP traffic in AI apps like Cursor, Claude, VS Code

  • zabbix-mcp-server by initMAX · ⭐ 212

    MCP server for the complete Zabbix API - 237 tools, multi-server, OAuth 2.1 + bearer auth, PDF reports, system

  • spring-ai-mcp by spring-attic · ⭐ 204

    Java SDK for the Model Context Protocol (MCP), providing seamless integration between Java and Spring applicat

  • toolhive-studio by stacklok · ⭐ 169

    ToolHive is an application that allows you to install, manage and run MCP servers and connect them to AI agent

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular Kotlin Agent Tools

Frequently Asked Questions

What is spring-plugin?

spring-plugin is Spring Explyt — free, open-source (Apache-2.0) Spring & Spring Boot plugin that brings Ultimate-grade tooling to IntelliJ IDEA Community Edition (works in Ultimate too): runtime-accurate bean navigati. It is categorized as a MCP Server with 162 GitHub stars.

What programming language is spring-plugin written in?

spring-plugin is primarily written in Kotlin. It covers topics such as ide, intellij, intellij-idea.

How do I install or use spring-plugin?

You can find installation instructions and usage details in the spring-plugin GitHub repository at github.com/explyt/spring-plugin. The project has 162 stars and 16 forks, indicating an active community.

What license does spring-plugin use?

spring-plugin is released under the Apache-2.0 license, making it free to use and modify according to the license terms.

What are the best alternatives to spring-plugin?

The top alternatives to spring-plugin on Agent Skills Hub include api2mcp4j, drift, MCP-Defender. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools