Is Provider Trust — Verify a Source or Provider MCP server safe?
Probably. Read the findings first.
Use with care. Some checks failed or could not be verified.
Public scan report
scanner v0.1.9 · 2026-09-20 · same rubric, same numbers if you re-run it
no findings
- –Code scanremote-only server, no package to scann/a
- Live reliabilityremote reachable in 125ms20/20
- Tool poisoning6 tool descriptions checked15/15
- Auth qualityopen endpoint, read-only tools10/15
- Maintenancerepository not readable: unknown3/15
- Maintainer identityverified namespace with website, no repo4/10
Overall 69/100. Components that don't apply are left out of the denominator. Any critical finding is an F.RubricAppeal a findingJSON
Other servers that do what Provider Trust — Verify a Source or Provider does
- Watch SkillWatch video and live sessions, keep timestamped evidence, and verify an agent's own work.not reviewedGrowingB
- Agent WormholeCheck tokens, pages and x402 payments before your agent trusts them. Offline verdicts.not reviewedGrowingB
- agent-deviceMCP server for mobile app automation: verify, control, and debug iOS, Android, TV, and desktop appsnot reviewedWidely usedA
Provider Trust — Verify a Source or Provider reviews, tools and install