S

squirrelscan.com

squirrelscan is a website auditing service focused on SEO, performance, security, and AI-agent readiness checks. It can run audits locally via CLI and adds cloud features such as hosted crawling, reports, credits, and MCP access.

3 integrations · MCP · REST · CLI

squirrelscan exposes three developer integration surfaces on its own domain: a REST API at `https://api.squirrelscan.com` with OpenAPI, a hosted streamable-HTTP MCP server at `https://mcp.squirrelscan.com/mcp`, and the `squirrel` CLI; authentication uses org API keys, CLI login tokens, and MCP OAuth sign-in depending on surface.

discovered 2mo ago
MCP servers1
REST · OpenAPI1
CLI1
Credentials
squirrelscan org API keyapi_keyGet key ↗

Create a key in Settings → API Keys, or run `squirrel auth login` and then `squirrel keys create`. Pick scopes and expiry, copy the key when shown (it is shown once), then supply it as Authorization: Bearer sq_... or set SQUIRRELSCAN_API_KEY for CLI/headless use. The legacy env alias SQUIRREL_API_TOKEN is also accepted by the CLI.

squirrelscan CLI login tokenbearer$ squirrel auth login

Acquired by the CLI — running squirrel auth login opens the auth flow and stores the credential.

squirrelscan MCP OAuth sign-inoauth2Set up OAuth ↗

For the hosted MCP server, add https://mcp.squirrelscan.com/mcp to your MCP client with no auth header and let the client handle OAuth discovery from the authorization-server metadata. No pre-registration is needed: the client registers itself dynamically, runs authorization code + PKCE (S256), and you just sign in in the browser, choose an organization, and approve access.

squirrelscan API keyapi_keyGet key ↗

Create a key at https://app.squirrelscan.com/settings/api-keys (or run squirrel keys create after squirrel auth login). Set it as SQUIRRELSCAN_API_KEY, or send it as Authorization: Bearer sq_... on any request. Local, unauthenticated audits are always free; a key is only needed for cloud features such as hosted crawling, publishing, and credits.

OAuth 2.1 (sign in from your MCP client)oauth2

MCP clients discover OAuth automatically via https://mcp.squirrelscan.com/.well-known/oauth-authorization-server. No pre-registration needed: dynamic client registration and client id metadata documents (client.dev) are both supported. Authorization code + PKCE (S256).

conventions · 6/8 published

Publish these signals → /publishing