Intentionally vulnerable MCP server for security training, mapping to OWASP MCP Top 10 with 10 exploitable scenarios for learning MCP security vulnerabilities.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
process.env. You'll be asked to provide them before it can run.AWS_ACCESS_KEY_ID— "=AKIAIOSFODNN7EXAMPLE and "ADMIN_TOKEN— validated against . Restrict operations to a safe read-only set.[](https://m8ven.ai/mcp/anthonyg-1-mcp-goat-1qw160)