Security scanner for MCP servers that detects tool poisoning, shadowing, and other risks via static rules and semantic analysis. Exposes the scan_mcp_server tool for scanning MCP servers over stdio.
Emerging. No concerning findings. Grades remain capped until the project builds reputation through adoption. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.
How we verified
Verified is a snapshot. Live keeps it current, and builds your track record.
⚡ Connect GitHub → continuous verification on every pushwhy connect →Who stands behind it
gentaArnezzi · Claimed
Source: Glama
Connect your repo and M8ven re-verifies it on the push itself. Without it we re-check verified listings about once a day, so a fix can sit unseen. Read-only, one click, revoke anytime. What we access →
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
MCPSENTINEL_MCP_BASELINE_DIRMCPSENTINEL_MCP_JUDGEMCPSENTINEL_MCP_JUDGE_MODELMCPSENTINEL_ALLOWED_HOSTSexport ="mcp.example.com,localhost"MCPSENTINEL_ALLOW_PRIVATE_HTTP_TARGETSOPENAI_API_KEYonly the execution path and locale—not , cloud credentials,[](https://m8ven.ai/mcp/gentaarnezzi-mcpsentinel-1umup0)?variant=verified to the badge URL.Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.
https://m8ven.ai/api/mcp/tool-check