API safety organisation Salt Safety has introduced the most recent growth of its revolutionary Salt Cloud Join functionality. It extends the identical agentless mannequin clients belief for quickly gathering API-specific information in cloud platforms, making use of the identical confirmed ease of use and ‘underneath 10-minute’ deployment to GitHub supply code. Whereas different safety options concentrate on AI fashions and knowledge, Salt is the primary to safe the MCP servers and APIs the place AI brokers have a real-world impression, now discovering them in code earlier than they’re ever deployed.
With GitHub Join, Salt allows clients to securely join their private and non-private GitHub repositories to the Salt Illuminate
platform, extending visibility throughout the complete API lifecycle. The brand new functionality analyses code to proactively uncover APIs, MCP servers, and configurations straight from supply code. Critically, it identifies related instruments and uncovered APIs even when the MCP is hosted elsewhere. This discovery is straight away prioritized by Salt’s traffic-free risk-scoring functionality, which accelerates time-to-insight by assigning quantifiable threat scores with out requiring site visitors assortment. As Gartner® notes, “Software program engineering leaders should examine the suitability of MCP servers obtained particularly from public sources.”
This launch advances Salt Illuminate, the platform purpose-built to find, govern, and safe the API cloth. As organizations embed AI brokers, Salt Illuminate is the one platform that delivers full MCP protection, discovering them in code (GitHub Join), monitoring their runtime site visitors (Agentic AI), and discovering their exterior publicity (MCP Floor Scan). This bridges code-level and runtime posture governance, enabling groups to scale back threat throughout the complete API lifecycle.
Nick Rago, VP of Product Technique, Salt Safety, stated: “AI brokers and MCP servers have reworked how digital programs talk and act. By extending discovery into GitHub, Salt Illuminate provides clients visibility into API and MCP dangers lengthy earlier than deployment. This proactive intelligence is crucial to safeguarding the API cloth that drives trendy innovation.”
Fashionable code repositories have change into the blueprint for the broader API ecosystem, shaping how purposes and AI brokers work together. GitHub Join allows organisations to determine shadow APIs and MCP servers by analysing supply code for configuration patterns and uncovered instruments, even when these companies are hosted elsewhere. It additionally helps a “shift-left” method to governance by highlighting high-risk MCPs in personal repositories in order that coverage could be utilized earlier than deployment. By bringing code-level insights into Salt’s unified threat mannequin, it ensures that APIs and MCPs found in supply code obtain the identical threat scoring as these recognized at runtime.
The put up Salt Safety Launches GitHub Connect with Proactively Uncover Shadow APIs and MCP Dangers in Code Repositories appeared first on IT Safety Guru.









