675 MCP Servers Scored on Security: 89% Fail, Only 6 Deemed Safe

Low_Location1261 · reddit · 2026-09-04

RepoAI scored all 675 published MCP servers in its directory on 15 structural security signals (read-only mode, auth, maintenance, publisher). Results: only 0.9% rated safe, 9.8% medium, 89.3% high risk.

Key findings

Ruling out selection bias: 20 popular unindexed GitHub MCP servers (top: 1,860 stars) were scored cold — none reached medium tier, best was 55/100.

Case study: mcp-server-trello exposes 35 tools including dangerous delete operations with no read-only mode, scoring 20/100.

The authors invoke Log4Shell (dormant for 8 years) to argue absence of incidents isn't evidence of safety, and highlight MCP's specific prompt-injection attack surface: an assistant needs no server bug to be tricked into abusing its permissions.

Original post →

More from coding & agent

coding & agent channel →