Inspect an MCP server for common security risks before you install it. Offline, zero telemetry.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts — it cannot prove the absence of malicious code.
Inspect an MCP server for common security risks before you install it. Offline, zero telemetry.