Monitoring 2k+ MCP Servers: 7,190 Safety-Relevant Changes, Read-to-Write Flips Undetected by Allow-lists

mcpindex · reddit · 2026-08-19

mcpindex ran a crawler over public MCP servers, diffing tool contracts between daily snapshots, revealing concerning data.

Key Stats:

Risky Change Types:

Security Gap:

None trip auth checks; the server is still authorized with the same name. This exposes a gap in allow-lists: covering who may call a tool, but not whether it still does what it declared.

Original post →

More from coding & agent

coding & agent channel →