forgemesh-imagegen (forgemeshlabs/imagegen-mcp) is an MCP server listed on the M8ven Trust Index. M8ven has not graded it: we have no way to read this server ourselves. The publisher has proved control of what we score (Verified Publisher). It is connected through the M8ven GitHub App, so the listing is re-checked on every push.

B
Warning
89/100
4 days ago

forgemesh-imagegen

MCP server for AI image generation with automatic USDC payments on Base mainnet. Generate, remove backgrounds, and upscale images via simple tool calls.

Warning. Serious findings were identified. Review the full report before connecting. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.

How we verified

Code Verified⚡ Live Monitored

Monitored 4 days · every push re-verified

Who stands behind it

gmail.com (@forgemeshlabs) · Verified Publisher

Source: Glama

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
🚨
Secret credentials may flow to a network call
1 flow detected: WALLET_PRIVATE_KEY. We can’t prove the destination matches the brand the credential belongs to.
🔐
You'll be asked for 1 credential: WALLET_PRIVATE_KEY
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
Are you the publisher? Confirm or correct these findings.
// environment variables
To run this server yourself, you supply these values. They go in your own MCP client configuration and stay on your machine. The secret label means the value is sensitive, not that the server mishandles it.
configPYRIMID_AFFILIATE_IDgenerate_image also accepts affiliate_id for Pyrimid attribution, or uses from the environment.
🔐 secretWALLET_PRIVATE_KEY"": "0x...",
// quality suggestions

Tests exist

No test files found

Add tests that exercise each declared tool.

Secrets stay with their owner

1 secret/sensitive value flow into network calls (WALLET_PRIVATE_KEY → dynamic)

Audit where credentials are sent. A NOTION_TOKEN should only reach api.notion.com — never a third-party host.

// embed badge in your README
[![M8ven Verified](https://m8ven.ai/badge/mcp/forgemeshlabs-imagegen-mcp-5nc38d?variant=verified)](https://m8ven.ai/mcp/forgemeshlabs-imagegen-mcp-5nc38d)
Shows verification status without the grade. Want the grade badge instead? Remove ?variant=verified from the URL.
commit: 120f7a1fcdeecf81bf7918ac697bd4538389607e
code hash: 16db32a5fefa6aec1bb6d973eaca55500a25990af3148b72fa5724768e91c1e9
verified: 8/24/2026, 1:28:18 PM
view raw JSON →
Check MCPs from inside your assistant
Tool Check · MCP

Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.

https://m8ven.ai/api/mcp/tool-check
check_toolsearch_toolscompare_toolsrecommend_alternativescheck_publisherreport_concern
How to add it →Free · no account needed · works in any MCP client