io.github.leochong/visus-mcp

MCPcommunity
v0.6.1io.github.leochongUnknownUpdated 6mo agonpmGitHub

Security-first web access for Claude. Sanitizes pages, blocks injection, redacts PII.

How Visus-MCP helps your MCP-compatible AI agents become EU AI compliant ready "What the web shows you, Lateos reads safely." -- The EU AI Act (Regulation (EU) 2024/1689) is the world's first comprehensive AI law, effective from August 2024. It regulates AI systems based on risk levels, with stringent requirements for general-purpose AI (GPAI) like MCP-compatible agents that process web content.…

Works in
ClaudeCursorCopilotGemini

Inferred from the transports this listing declares (stdio). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.

Automatically indexed from public sources. Not yet verified by the developer on Forge.Claim this listing →
1GitHub stars
2Forks
6mo agoLast update
Package
Authorio.github.leochong
LicenseUnknown
Version0.6.1
Sourcemcp-registry
Trust Status
B
60/100Good
✓Listed in Forge index+10/10
—Publisher identity verified+0/20
→ Publisher: run `forge publish` from the package repo to claim ownership
—Ed25519 publish signature+0/5
→ Included automatically when the publisher runs `forge publish`
—Domain verification+0/5
→ Publisher: host /.well-known/forge.json on the package homepage with { "publisher": "<github-login>" }
—npm Trusted Publishing (Sigstore)+0/5
→ Publish from GitHub Actions with --provenance so the attestation binds this package to this repo
—npm maintainer match+0/5
→ Earned once your identity is verified above and that login is an npm maintainer of this package
✓CVE scan · clean+30/30
✓Static analysis · clean+20/20
Paste into Claude Code, Cursor, or any AI assistant to fix all gaps
StatusCommunity-indexed
PublisherUnverified
SignatureUnsigned
Domain—
Provenance—
Dependencies60 resolved · 2 with advisories
Tool surface40 tools · 1 privileged
Security scan⚠ Warnings (5)v0.27.0 · 3mo agoHow well does this scan work?
EvalsNone
IndexedJun 13, 2026

Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.

Tools

40 tools · 1 privileged
Statically extracted from the published packagev0.27.0 · 3mo ago

Read out of the source npm actually ships, at scan time. The package was never executed. Tools registered dynamically at runtime, or hidden inside bundled or minified code, can be missed — so this is a floor on the tool surface, not a complete census of it.

visus_context_scanNo description published

This tool published no description. Forge does not invent one.

visus_db_verifyNo description published

This tool published no description. Forge does not invent one.

visus_fetch_structuredNo description published

This tool published no description. Forge does not invent one.

visus_fetchNo description published

This tool published no description. Forge does not invent one.

visus_get_ledger_proofNo description published

This tool published no description. Forge does not invent one.

visus_scan_mcpNo description published

This tool published no description. Forge does not invent one.

comment_injectionNo description published

This tool published no description. Forge does not invent one.

direct_instruction_injectionNo description published

This tool published no description. Forge does not invent one.

role_hijackingNo description published

This tool published no description. Forge does not invent one.

system_prompt_extractionNo description published

This tool published no description. Forge does not invent one.

privilege_escalationNo description published

This tool published no description. Forge does not invent one.

context_poisoningNo description published

This tool published no description. Forge does not invent one.

data_exfiltrationNo description published

This tool published no description. Forge does not invent one.

base64_obfuscationNo description published

This tool published no description. Forge does not invent one.

unicode_lookalikesNo description published

This tool published no description. Forge does not invent one.

zero_width_charactersNo description published

This tool published no description. Forge does not invent one.

glassworm_unicode_clustersNo description published

This tool published no description. Forge does not invent one.

html_script_injectionNo description published

This tool published no description. Forge does not invent one.

data_uri_injectionNo description published

This tool published no description. Forge does not invent one.

markdown_link_injectionNo description published

This tool published no description. Forge does not invent one.

url_fragment_hashjackNo description published

This tool published no description. Forge does not invent one.

social_engineering_urgencyNo description published

This tool published no description. Forge does not invent one.

instruction_delimiter_injectionNo description published

This tool published no description. Forge does not invent one.

multi_language_obfuscationNo description published

This tool published no description. Forge does not invent one.

reverse_text_obfuscationNo description published

This tool published no description. Forge does not invent one.

leetspeak_obfuscationNo description published

This tool published no description. Forge does not invent one.

jailbreak_keywordsNo description published

This tool published no description. Forge does not invent one.

token_smugglingNo description published

This tool published no description. Forge does not invent one.

system_message_injectionNo description published

This tool published no description. Forge does not invent one.

conversation_resetNo description published

This tool published no description. Forge does not invent one.

memory_manipulationNo description published

This tool published no description. Forge does not invent one.

capability_probingNo description published

This tool published no description. Forge does not invent one.

chain_of_thought_manipulationNo description published

This tool published no description. Forge does not invent one.

hypothetical_scenario_injectionNo description published

This tool published no description. Forge does not invent one.

ethical_overrideNo description published

This tool published no description. Forge does not invent one.

output_format_manipulationNo description published

This tool published no description. Forge does not invent one.

negative_instructionNo description published

This tool published no description. Forge does not invent one.

credential_harvestingNo description published

This tool published no description. Forge does not invent one.

time_based_triggersNo description published

This tool published no description. Forge does not invent one.

code_execution_requestsprivilegedNo description published

This tool published no description. Forge does not invent one.

0 of 40 tools published a description.

Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.

About

How Visus-MCP helps your MCP-compatible AI agents become EU AI compliant ready "What the web shows you, Lateos reads safely." -- The EU AI Act (Regulation (EU) 2024/1689) is the world's first comprehensive AI law, effective from August 2024. It regulates AI systems based on risk levels, with stringent requirements for general-purpose AI (GPAI) like MCP-compatible agents that process web content. Art. 9 (Risk Management): Identify and mitigate systemic risks, including prompt injection and data…

Keywords
mcp
Alternatives
Comparing tool surfaces…

No dependency coverage

This package was last scanned before Forge began storing the resolved tree. The next scan will record it.