Provides a security scanner for AI agent skills and MCP servers, detecting threats like prompt injection, identity hijacking, and memory poisoning.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.
ws: Memory exhaustion DoS from tiny fragments and data chunks
OpenClaw: Workspace .env npm_execpath could influence bundled runtime dependency install
OpenClaw: busybox and toybox applet execution weakened exec approval binding
OpenClaw's device removal and token revocation do not terminate active WebSocket sessions
OpenClaw has Inconsistent Host Exec Environment Override Sanitization
process.env. You'll be asked to provide them before it can run.GITHUB_STEP_SUMMARYGITHUB_TOKENGUARD_SCANNER_MODEGUARD_SCANNER_TASK_DIROPENCLAW_STATE_DIRVT_API_KEY[](https://m8ven.ai/mcp/koatora20-guard-scanner-1ai7qv)