This package is intended for demonstration only. Maintained by JFrog Security.
Note: This package is part of a security research demonstration by JFrog. This repository contains a functional implementation of an MCP (Model Context Protocol) runtime used to simulate supply-chain security scenarios in AI-driven environments. This repository and the associated package are part of a security simulation and research project. It is not intended for production environments or…
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts — it cannot prove the absence of malicious code.
Note: This package is part of a security research demonstration by JFrog. This repository contains a functional implementation of an MCP (Model Context Protocol) runtime used to simulate supply-chain security scenarios in AI-driven environments. This repository and the associated package are part of a security simulation and research project. It is not intended for production environments or general-purpose use.