5
/ 100
1 month ago
glama

MCP-Dandan

Real-time security framework for MCP servers that detects and blocks malicious AI agent behavior by analyzing tool call patterns and intent across multiple threat detection engines.

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
🚨
Reads files from sensitive locations
Touches: ~/.config/Claude/claude_desktop_config.json, ~/.config/Cursor/mcp.json
🔐
You'll be asked for 2 credentials: API_ACCESS_TOKEN, MISTRAL_API_KEY
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// required environment variables
This server reads these from process.env. You'll be asked to provide them before it can run.
configDB_PATH
configELECTRON_DISABLE_SECURITY_WARNINGS
configVITE_DEV_SERVER_URL
configMCP_DEBUG
configMCP_PROXY_PORT
configMCP_PROXY_HOST
configMCP_OBSERVER_APP_NAME
configMCP_OBSERVER_SERVER_NAME
configMCP_OBSERVER_DISCOVERY_MODE
configMCP_TARGET_URL
🔐 secretAPI_ACCESS_TOKEN
configMCP_TARGET_HEADERS
configMCP_SCAN_MODE
🔐 secretMISTRAL_API_KEYInput your <b></b> to enable the Tools Poisoning Engine, and configure detection settings as needed.
configPROGRAMFILES
// full audit trail
The full breakdown of what we checked, the deductions that landed, the network hosts, the dependency advisories, and concrete fix guidance is available to verified publishers.
// improvement guidance — verified publishers only
We have 2 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/82ch-mcp-dandan-iou5ra)](https://m8ven.ai/mcp/82ch-mcp-dandan-iou5ra)
commit: 0c177f5f0b005c6eb5d3a722b57b2ae9b3d7f458
code hash: 023d4076bae9475b279062e95566dee57749e1e58e856cda18b032bd32b45179
verified: 6/26/2026, 9:47:38 AM
view raw JSON →