Security tools for AI agents: scan MCP servers, validate HDP delegation chains, audit releases.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.
undici WebSocket client vulnerable to denial of service via fragment count bypass
undici vulnerable to HTTP response queue poisoning via keep-alive socket reuse
undici vulnerable to Set-Cookie SameSite attribute downgrade via permissive substring matching
undici vulnerable to HTTP header injection via Set-Cookie percent-decoding
process.env. You'll be asked to provide them before it can run.ANTHROPIC_API_KEY— H "x-api-key: $" \HELIXAR_RELEASEGUARD_BIN[](https://m8ven.ai/mcp/helixar-ai-helixar-mcp-1hfl8i)