PoC: Open Registry supply chain — unvetted server listing (security research)
Benign PoC for the Open Registry Supply Chain Risk finding: anyone with npm + GitHub can publish an MCP server to the open registry (registry.modelcontextprotocol.io) with no pre-publication review. Server: Minimal benign MCP stdio server (one tool, no sensitive behavior). Follow STEPBYSTEP.md to run the exploit and prove unvetted listing.
Déduit des transports déclarés par cette annonce (stdio). Un client absent de cette liste n’est pas écarté pour autant — c’est simplement quelque chose que Forge ne peut pas confirmer.
La vérification confirme l’identité de l’éditeur (la propriété du dépôt), pas la sûreté du code. L’analyse de sécurité couvre les CVE connues et les scripts d’installation suspects.
Forge n’a aucune analyse enregistrée pour cette entrée et n’a donc aucune observation de sa surface d’outils. C’est une absence de preuve, pas la preuve qu’elle n’expose aucun outil.
Benign PoC for the Open Registry Supply Chain Risk finding: anyone with npm + GitHub can publish an MCP server to the open registry (registry.modelcontextprotocol.io) with no pre-publication review. Server: Minimal benign MCP stdio server (one tool, no sensitive behavior). Follow STEPBYSTEP.md to run the exploit and prove unvetted listing.