Tool
Scan an MCP server
Submit any MCP server URL or repository. The scan runs four checks: static source review for known attack patterns, sandboxed runtime behavior, supply-chain provenance, and any incident history on the publisher.
The scan endpoint is being wired now. In the meantime, contact the team directly for a manual scan of any server you're evaluating.