Docs
Appeal a grade
Appeals never cost anything and never change a grade without a code or rule change. That is the whole point.
How it works
- Re-run the scanner on your package or endpoint. Most appeals end here: fix the finding, publish a release, and the next scan re-grades you within a day.
- If you believe a rule misfired, email appeals@mcp.market with the server name, the finding id and why it is wrong.
- You get an answer within 48 hours. If we agree, the rule is fixed for everyone and the resolution is published on your listing's grade history.
What to send
- The registry name (for example
io.github.acme/shopify). - The finding id from the report (for example
secret.awsorpoison.role-hijack). - A link to the exact line or endpoint, and what it actually does.