prime-silo (binary16labs/prime-silo) is an MCP server listed on the M8ven Trust Index. It scores 0 out of 100, grade F. It declares 17 tools. No publisher has claimed this listing.
The canonical Sovereign AI Agent OS & runtime harness. Built for Model Context Protocol (MCP), Agent-to-Agent (A2A) swarms, and zero-token tax execution.
Warning. Serious findings were identified. Review the full report before connecting. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.
How we verified
Verified is a snapshot. Live keeps it current, and builds your track record.
⚡ Connect GitHub → continuous verification on every pushwhy connect →Who stands behind it
binary16labs
Source: github_repo_search
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access →
Install from
The grade above is for the source repository. Registries can serve a different version, so we mark the ones we were not able to read.
BENNY_HOMEBENNY_LMSTUDIO_ENDPOINTSDASH_HOSTLONGVIEW_THIN_CHARSLONGVIEW_WINDOW_CHARSLONGVIEW_WORKSPACENEO4J_PASSWORDNEO4J_URINEO4J_USERPRIME_SILO_APIPRIME_SILO_HOMEBENNY_OFFLINEBENNY_REQUIRE_SIGNATURESSSL_CERT_FILETESSERACT_CMDBENNY_DEFAULT_MODELBENNY_API_URLREPORT_CALL_TIMEOUTREPORT_MAX_TOKENSREPORT_GROUNDINGREPORT_GROUNDING_MAXCHARSREPORT_HANDOVER_MAXCHARSREPORT_FINALIZEREPORT_PDFT0_SMOKE_DIRT0_VENV_PYT3_EVAL_OUTT3_MERGE_MANIFESTT3_GGUF_DIRLLAMA_CPP_DIRBENNY_T4_JUDGE_MODELBENNY_T4_BASELINE_MODELT5_EVAL_OUTT5_PREFST5_PREFS_MANIFESTT5_MERGE_MANIFESTT5_GGUF_DIRBENNY_HMAC_KEYBENNY_AGENT_API_KEYBENNY_LOG_FILESPACE_LOG_FILELONGVIEW_LOG_FILEBENNY_SYNTH_FILE_TIMEOUTBENNY_GRAPH_WRITE_TIMEOUTSWARM_MAX_CONCURRENCYBENNY_LLM_TIMEOUTOPENAI_API_KEYBENNY_MMDC_CLIMARQUEZ_URLLINEAGE_NAMESPACEBENNY_LINEAGE_ENABLEDPHOENIX_URLSERVICE_NAMETool annotations
No tools have read-only/destructive annotations
Add readOnlyHint or destructiveHint annotations to every tool so hosts can warn users before invoking.
All four hints declared on every tool
17/17 tools missing one or more hints — plan_workflow (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); run_workflow (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); stream_events (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint), +14 more. OpenAI's directory rejects tools where any of the four hints are missing or non-boolean.
For every tool, set all four hints (readOnlyHint, destructiveHint, idempotentHint, openWorldHint) to explicit true/false values that match the handler’s actual behaviour.
Descriptions match behaviour
1 tool describes read intent but its handler mutates — query_csv (line 126: result = eval(query, {"df": df, "pd": pd}))
Rename the tool, rewrite the description, or move the side-effect into a separate clearly-named tool.
Tool test coverage
11/17 tools referenced in tests (65%)
Write tests that reference each tool by name so every tool has at least one test.
No eval / new Function
3 eval() or new Function() calls — dynamic code execution
Replace eval / Function with explicit parsing or safer alternatives.
Readable source code
1 file are minified or bundled, which is usually build output rather than concealment
Ship unminified, readable source.
Secrets never reach shell commands
2 secret values passed to shell commands — possible command injection
Never pass secrets through shell commands. Use library APIs that accept credentials as arguments.
Tool description accuracy
query_csv: description implies read-only but handler writes/deletes/executes
Update tool descriptions to accurately reflect all capabilities — especially write, delete, or execute operations.
Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.
[](https://m8ven.ai/mcp/binary16labs/prime-silo)?variant=verified from the URL.Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.
https://m8ven.ai/api/mcp/tool-check