Call for MCP Server Security Scans
tatar-sh · reddit · 2026-07-19
The author is continuing to accept MCP server submissions for scanning, noting that **MCPRadar** checks for multiple risk categories: tool poisoning and prompt injection, dangerous or misleading schemas, secret leakage and insecure configurations, vulnerable dependencies and supply chain risks, anomalous changes between server versions, and cross-server attack paths. The public leaderboard displays scan coverage, findings, risk levels, and downloadable artifacts. New server additions require manual review, meaning **submission requests do not automatically execute commands**, and publication is not guaranteed. The author also invites community feedback on: which servers to include, any false positives or disputed ratings, missing MCP attack vectors, and how to make the scoring methodology clearer.
Related event: MCPRadar Launches as Open-Source MCP Security Scanner(2 posts)→
More from coding & agent
- Notch says he may try vibe coding after struggling to hire good programmers — max_paperclips · 2026-07-21
- Seedance 2.0 keeps character consistency across 15+ shots with just 3 prompts — techhalla · 2026-07-21
- Measuring hung AI coding agents automatically with per-project time and token accounting — VCBU · 2026-07-21
- Claude Opus 4.8 Fast felt wildly overpriced in one coding session, user says — immersive-matthew · 2026-07-21
- WAIC awards highlight an edge multimodal model paper and ChatDev, the multi-agent software framework — 面壁智能 · 2026-07-21
- A developer is adding a post-edit subtitle workflow to ComfyUI — Strong-Loan8299 · 2026-07-21