tokyo-transit-mcp (loosephoto/tokyo-transit-mcp) is an MCP server listed on the M8ven Trust Index. It scores 46 out of 100, grade D. It declares 13 tools. The publisher has proved control of what we score (Verified Publisher). It is connected through the M8ven GitHub App, so the listing is re-checked on every push.
Integrates ODPT and JMA APIs to provide comprehensive transit information, route search, weather, and AI advice for the Tokyo metropolitan area.
Warning. Serious findings were identified. Review the full report before connecting. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.
How we verified
Monitored 13 days · every push re-verified
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
No access to sensitive paths
Reads sensitive paths: .env
Remove reads of sensitive system paths. If you genuinely need them, document why in the README.
No eval / new Function
4 eval() or new Function() calls — dynamic code execution
Replace eval / Function with explicit parsing or safer alternatives.
Readable source code
2 files are minified or bundled, which is usually build output rather than concealment
Ship unminified, readable source.
[](https://m8ven.ai/mcp/loosephoto/tokyo-transit-mcp)?variant=verified from the URL.Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.
https://m8ven.ai/api/mcp/tool-check