source (BlackRoad-OS-Inc/source) is an MCP server listed on the M8ven Trust Index. It scores 30 out of 100, grade F. It declares 6 tools. No publisher has claimed this listing.
BlackRoad Source — canonical source tree with 198 directories organizing every component, service, agent, and product
Warning. Serious findings were identified. Review the full report before connecting. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.
How we verified
Verified is a snapshot. Live keeps it current, and builds your track record.
⚡ Connect GitHub → continuous verification on every pushwhy connect →Who stands behind it
BlackRoad-OS-Inc
Source: github_code
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access →
Install from
The grade above is for the source repository. Registries can serve a different version, so we mark the ones we were not able to read.
AIRTABLE_API_KEYAIRTABLE_BASE_ID_MAINAIRTABLE_TABLE_BACKLOGALLOW_ORIGINSALLOW_SHELLASANA_PROJECT_ID_MAINASANA_PROJECT_ID_OPSAUTH_SERVICE_URLAUTOPAL_GLOBAL_ENABLEDBASE_URLBILLING_DISABLEBLACKROAD_API_URLBLACKROAD_GATEWAY_CONFIGBRAINSTORM_DIRBRAINSTORM_HOSTBRAINSTORM_OWNER_PIDBRAINSTORM_PORTBRAINSTORM_URL_HOSTBRANCH_MAINBRANCH_STAGINGBRC_DISABLE_NATIVE_DBBR_TEST_DISABLE_DBBYPASS_LOGINCHANNEL_DEV_CICHANNEL_DEV_PRSCHANNEL_RELEASESCHANNEL_SECURITYCORS_ORIGINDB_PATHDEFAULT_LLM_MODELDEPLOY_BASE_DIRDISCORD_INVITEDOTENV_PATHELECTRON_DISABLE_LOGGINGENABLE_OPERATORENABLE_RPAFLAGS_MAX_AGE_MSFLAGS_PARAMGH_TOKENGH_WEBHOOK_SECRETGITHUB_ORGGITHUB_TOKENGITHUB_WEBHOOK_SECRETGITLAB_GROUPGITLAB_REPO_SSHGITLAB_SSH_PRIVATE_KEYGIT_REPO_PATHGOOGLE_CALENDAR_CREDENTIALSGSHEETS_SA_JSONGUMROAD_TOKENICS_URLINTERNAL_TOKENJEST_WORKER_IDLINEAR_API_KEYLLM_BRIDGE_URLLLM_URLLOG_LEVELMAIL_PROVIDERMATH_ENGINE_URLMODELS_TTL_MSN8N_PREVIEW_MODEOLLAMA_URLORIGIN_KEY_PATHPI_CORE_HOSTREGISTRY_APIRITUAL_WORKFLOW_FILERITUAL_WORKFLOW_REFRPA_ALLOW_HOSTSSERVICE_TOKENSESSION_SECRETSF_USERNAMESHEETS_CONNECTOR_TOKENSLACK_WEBHOOK_URLSTRIPE_PUBLIC_KEYSTRIPE_SECRETSTRIPE_SECRET_KEYSTRIPE_WEBHOOK_SECRETSUBSCRIBE_MODETARGET_HOSTTARGET_IPTOOLS_PORTWEB_ROOTMODEL_NAMEMODEL_PATHWORKERSGPU_MEMORY_UTILIZATIONMAX_MODEL_LENBLACKROAD_IDENTITY_VALIDATIONBLACKROAD_AUDIT_LOGGINGBLACKROAD_BREATH_SYNCTENSOR_PARALLEL_SIZECORS_ORIGINSSANDBOX_DOMAINSANDBOX_API_KEYKIMI_BASE_URLKIMI_MODEL_NAMEANTHROPIC_API_KEYSECRET_KEYPI_OPS_MQTT_USERNAMEPI_OPS_MQTT_PASSWORDEXPERIMENT_DBPIPELINE_DBNOTEBOOK_DBOLLAMA_MODELACCESS_LOGGITHUB_STEP_SUMMARYBACKUP_DBBACKUP_STOREARCHIVER_DBARCHIVE_DIRENVIRONMENTHOSTOPENAI_API_KEYOLLAMA_BASE_URLCLAUDE_OFFICE_STRIP_PREFIXESCLAUDE_SESSION_IDATLASSIAN_BASE_URLATLASSIAN_EMAILATLASSIAN_API_TOKENPRISM_CALENDAR_EVENT_LOGCODEX_SSH_KEYCODEX_SSH_ACCEPT_NEWGIT_TOKENCODEX_REPOS_BASESERVICES_BLOBCRM_BACKENDSALESFORCE_INSTANCE_URLSALESFORCE_ACCESS_TOKENHUBSPOT_API_KEYPRISM_EMAIL_SMTP_HOSTPRISM_EMAIL_SMTP_PORTPRISM_EMAIL_SMTP_USERNAMEPRISM_EMAIL_SMTP_PASSWORDPRISM_EMAIL_FROMPRISM_EMAIL_SMTP_USE_TLSPRISM_EMAIL_LOG_FILEERP_BACKENDSAP_BASE_URLSAP_USERNAMESAP_PASSWORDNETSUITE_ACCOUNT_IDNETSUITE_CONSUMER_KEYNETSUITE_CONSUMER_SECRETNETSUITE_TOKEN_IDNETSUITE_TOKEN_SECRETHOLO_MQTT_TOPICHOLO_MQTT_HOSTHOLO_MQTT_PORTHOLO_MQTT_USERNAMEHOLO_MQTT_PASSWORDHOLO_MQTT_QOSHOLO_MQTT_KEEPALIVEHOLO_MQTT_TIMEOUTHOLO_MQTT_RETAINHOLO_MQTT_CLIENT_IDHOLO_SHOWCASE_INTERVALHOLO_SHOWCASE_CYCLESOPENAI_BASEMODELAI_BACKENDPRISM_READ_ONLYPRISM_TENANTPRISM_WEB_SEARCH_INDEXPORTTool annotations
No tools have read-only/destructive annotations
Add readOnlyHint or destructiveHint annotations to every tool so hosts can warn users before invoking.
All four hints declared on every tool
6/6 tools missing one or more hints — route_request (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); list_models (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); gateway_stats (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint), +3 more. OpenAI's directory rejects tools where any of the four hints are missing or non-boolean.
For every tool, set all four hints (readOnlyHint, destructiveHint, idempotentHint, openWorldHint) to explicit true/false values that match the handler’s actual behaviour.
Tool test coverage
3/6 tools referenced in tests (50%)
Write tests that reference each tool by name so every tool has at least one test.
No eval / new Function
1 eval() or new Function() call — dynamic code execution
Replace eval / Function with explicit parsing or safer alternatives.
Shell command execution
5 calls in production code run through a shell (services/deploy-platform/road-deploy/server.js:174, web/public/pixel-office/index.ts:460, web/public/pixel-office/index.ts:616)
Prefer library functions over shell-outs. If you must shell out, ensure all inputs are properly escaped.
Secrets never reach shell commands
1 secret value passed to shell commands — possible command injection
Never pass secrets through shell commands. Use library APIs that accept credentials as arguments.
Secrets not logged
6 secret values sent to log
Redact or omit secret values from log output.
Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.
[](https://m8ven.ai/mcp/blackroad-os-inc/source)?variant=verified from the URL.Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.
https://m8ven.ai/api/mcp/tool-check