Korea Public Data Catalog MCP (obundh/korea-public-data-catalog-mcp) is an MCP server listed on the M8ven Trust Index. It scores 74 out of 100, grade C. It declares 7 tools. No publisher has claimed this listing.

C
Emerging
74/100

Korea Public Data Catalog MCP

Enables users to discover and recommend Korea public datasets by describing their project idea, searching a static catalog of 96,056 datasets without API calls.

Emerging. No concerning findings. Grades remain capped until the project builds reputation through adoption. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.

How we verified

Code Verified⚡ Live Monitored: not connected

Verified is a snapshot. Live keeps it current, and builds your track record.

⚡ Connect GitHub → continuous verification on every pushwhy connect →

Who stands behind it

obundh

Source: Glama

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access →

Install from

The grade above is for the source repository. Registries can serve a different version, so we mark the ones we were not able to read.

// key findings
No credential exfiltration, no sensitive file access, no obfuscation
Static analysis found nothing flowing your secrets to unexpected places.
Open source with a license and README
Anyone can audit the code, the license is declared, and the publisher documents what it does.
🔐
You'll be asked for 7 credentials: DART_API_KEY, DATA_GO_KR_SEARCH_KEY, ECOS_API_KEY, GYEONGGI_DATA_API_KEY, KOSIS_API_KEY, SEOUL_OPEN_DATA_API_KEY, VWORLD_API_KEY
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// environment variables
To run this server yourself, you supply these values. They go in your own MCP client configuration and stay on your machine. The secret label means the value is sensitive, not that the server mishandles it.
configBUSAN_CATALOG_RUNTIME_ASSET_OUTPUT
configBUSAN_CATALOG_RUNTIME_SEAL_OUTPUT
configBUSAN_CATALOG_SOURCE_CONTRACT_OUTPUT
configBUSAN_CATALOG_SOURCE_DATABASE
configBUSAN_CATALOG_SOURCE_EXPORT_INPUT
configBUSAN_CATALOG_SOURCE_REPORT_INPUT
configBUSAN_CONCURRENCY
configBUSAN_MAX_DATASETS
configBUSAN_MAX_OPENAPI_DATASETS
configBUSAN_MAX_PAGES
configBUSAN_OPENAPI_SMOKE_LIMIT
configBUSAN_PAGE_SIZE
configBUSAN_REQUEST_DELAY_MS
configCANONICAL_SNAPSHOT_JSONL
configCANONICAL_SNAPSHOT_MANIFEST
configCENSUS_CUTOFF_AT
configCENSUS_EPOCH_ID
🔐 secretDART_API_KEY
configDART_CONCURRENCY
configDART_FILINGS_BEGIN_DATE
configDART_FILINGS_END_DATE
configDART_GUIDE_CONCURRENCY
configDART_MAX_FILING_PAGES
configDART_PAGE_SIZE
configDART_REQUEST_DELAY_MS
configDATA_GO_API_CONTRACT_CATALOG_RUNTIME_ASSET_OUTPUT
configDATA_GO_API_CONTRACT_CATALOG_RUNTIME_SEAL_OUTPUT
configDATA_GO_API_CONTRACT_DATABASE
configDATA_GO_KR_CONCURRENCY
configDATA_GO_KR_EXTERNAL_FILE_CONCURRENCY
configDATA_GO_KR_EXTERNAL_FILE_MAX_RECORDS
configDATA_GO_KR_LINKED_DISCOVERY_CONCURRENCY
configDATA_GO_KR_LINKED_DISCOVERY_MAX_RECORDS
configDATA_GO_KR_MAX_PAGES
configDATA_GO_KR_PER_PAGE
configDATA_GO_KR_SEARCH_GROUPING
🔐 secretDATA_GO_KR_SEARCH_KEY
configDATA_GO_KR_SEARCH_MAX_REQUESTS
configDATA_GO_KR_SEARCH_SIZE
configDATA_GO_KR_SEARCH_TYPES
configDATA_GO_KR_STD_CONCURRENCY
configDATA_GO_KR_STD_MAX_DEFINITIONS
configDATA_GO_KR_STD_MAX_MEMBER_PAGES
configDATA_ONE_WINDOW_EVIDENCE_DIRECTORY
configDATA_ONE_WINDOW_RAW_ROOT
configDATA_ONE_WINDOW_REPORT_DIRECTORY
configDATA_ONE_WINDOW_RUNTIME_ASSET_OUTPUT
configDATA_ONE_WINDOW_RUNTIME_SEAL_OUTPUT
configDATA_ONE_WINDOW_SOURCE_DATABASE
🔐 secretECOS_API_KEY
configECOS_CONCURRENCY
configECOS_MAX_ITEM_PAGES_PER_TABLE
configECOS_MAX_ITEM_TABLES
configECOS_MAX_TABLE_PAGES
configECOS_PAGE_SIZE
configECOS_REQUEST_DELAY_MS
configGYEONGGI_ACCESS_META_LIMIT
configGYEONGGI_API_VERIFY_LIMIT
configGYEONGGI_CONCURRENCY
🔐 secretGYEONGGI_DATA_API_KEY
configGYEONGGI_MAX_CITIES
configGYEONGGI_MAX_PAGES
configGYEONGGI_MAX_PROVIDERS
configGYEONGGI_PAGE_SIZE
configGYEONGGI_RUNTIME_ASSET_OUTPUT
configGYEONGGI_RUNTIME_SEAL_OUTPUT
configGYEONGGI_SKIP_ACCESS_META
configGYEONGGI_SKIP_CITY_ASSOCIATIONS
configGYEONGGI_SKIP_PROVIDER_ASSOCIATIONS
configGYEONGGI_SOURCE_EVIDENCE_DATABASE
configGYEONGGI_SOURCE_EVIDENCE_DIRECTORY
configGYEONGGI_SOURCE_EVIDENCE_REPORT
configGYEONGGI_VERIFY_LIVE_API
configHOST
configINVENTORY_APPROVE_DRIFT
configINVENTORY_DATABASE_PATH
configINVENTORY_DB_PATH
configINVENTORY_REFRESH_DRY_RUN
configINVENTORY_REFRESH_MODE
configINVENTORY_REFRESH_SOURCES
configINVENTORY_RUNTIME_SMOKE_MAX_CALL_MS
configINVENTORY_SEARCH_INDEX_MANIFEST_PATH
configINVENTORY_SEARCH_INDEX_PATH
configINVENTORY_SNAPSHOT_DATA_PATH
configINVENTORY_SNAPSHOT_MANIFEST_PATH
configINVENTORY_SNAPSHOT_RELEASE_ROOT
configINVENTORY_SOURCE_REGISTRY_PATH
configINVENTORY_VERIFY_PUBLISHED
configKMA_API_HUB_CONCURRENCY
configKMA_API_HUB_DATABASE
configKMA_API_HUB_DRY_RUN
configKMA_API_HUB_MAX_BODY_BYTES
configKMA_API_HUB_REGISTRY
configKMA_API_HUB_TIMEOUT_MS
configKOREA_PUBLIC_DATA_LEGAL_CONTACT_URI
configKOREA_PUBLIC_DATA_LEGAL_RELEASE_PUBLISHED_AT
configKOREA_PUBLIC_DATA_LEGAL_RELEASE_ROOT
configKOREA_PUBLIC_DATA_MODE
configKOREA_PUBLIC_DATA_OPERATOR_NAME
configKOREA_PUBLIC_DATA_PRIVACY_POLICY_URI
configKOREA_PUBLIC_DATA_SERVICE_TERMS_URI
🔐 secretKOSIS_API_KEY
configKOSIS_CONCURRENCY
configKOSIS_MAX_BRANCHES
configKOSIS_REQUEST_DELAY_MS
configKOSIS_SOURCE_EVIDENCE_OUTPUT
configKOSIS_START_PARENT_ID
configKOSIS_VIEW_CODES
configLAW_OPEN_API_CONCURRENCY
configLAW_OPEN_API_DISPLAY
configLAW_OPEN_API_GUIDE_CONCURRENCY
configLAW_OPEN_API_MAX_PAGES
configLAW_OPEN_API_MAX_TARGETS
configLAW_OPEN_API_OC
configLAW_OPEN_API_REQUEST_DELAY_MS
configLAW_OPEN_API_SMOKE_TARGETS
configLAW_OPEN_API_SOURCE_EVIDENCE_OUTPUT
configLAW_OPEN_API_TARGETS
configLEGAL_SAFE_CANDIDATE_ROOT
configLEGAL_SAFE_CUTOFF_AT
configLEGAL_SAFE_EVALUATED_AT
configLEGAL_SAFE_SNAPSHOT_ATTESTATION
configLEGAL_SAFE_SNAPSHOT_JSONL
configLEGAL_SAFE_SNAPSHOT_MANIFEST
configLEGAL_TAKEDOWN_DENYLIST_MANIFEST_PATH
configLEGAL_TAKEDOWN_DENYLIST_PATH
configLEGAL_TAKEDOWN_EVALUATED_AT
configLOCALDATA_DATA_GO_KR_LIST_PATH
configLOCALDATA_MAX_DATASETS
configLOCALDATA_NOTICE_ORIGIN_ID
configLOCALDATA_SOURCE_CONTRACT_OUTPUT
configLOCALDATA_SOURCE_EXPORT_INPUT
configNIA_SECTOR_REFRESH_PDF
configONE_WINDOW_RUN_ID
configOPEN_DART_SOURCE_CONTRACT_OUTPUT
configSEOUL_API_MAX_REQUESTS
configSEOUL_API_PAGE_SIZE
configSEOUL_CONCURRENCY
configSEOUL_MAX_PAGES
🔐 secretSEOUL_OPEN_DATA_API_KEY
configSEOUL_OPEN_DATA_CATALOG_OUTPUT
configSEOUL_OPEN_DATA_RUNTIME_PROJECTION_OUTPUT
configSEOUL_OPEN_DATA_RUNTIME_SEAL_OUTPUT
configSEOUL_SHEET_MAX_REQUESTS
configSOURCE_DISCOVERY_PASS_ID
configSOURCE_REGISTRY_PATH
configSTANDARD_MEMBERS_CONVERGENCE_REPORT
configSTANDARD_MEMBERS_EVIDENCE_DATABASE
configSTANDARD_MEMBERS_EVIDENCE_DIRECTORY
configSTANDARD_MEMBERS_EVIDENCE_REPORT
configSTANDARD_MEMBERS_PRECEDING_REPORT
configSTANDARD_MEMBERS_RUNTIME_ASSET_OUTPUT
configSTANDARD_MEMBERS_RUNTIME_SEAL_OUTPUT
🔐 secretVWORLD_API_KEY
configVWORLD_CATALOG_SOURCE_CONTRACT_OUTPUT
configVWORLD_CRAWL_CONCURRENCY
configVWORLD_DOWNLOAD_HISTORY_END
configVWORLD_DOWNLOAD_HISTORY_START
configVWORLD_PORTAL_SESSION_COOKIE
// quality suggestions

Tool annotations

No tools have read-only/destructive annotations

Add readOnlyHint or destructiveHint annotations to every tool so hosts can warn users before invoking.

All four hints declared on every tool

7/7 tools missing one or more hints — list_public_data_sources (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); search_public_datasets (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); get_public_dataset_details (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint), +4 more. OpenAI's directory rejects tools where any of the four hints are missing or non-boolean.

For every tool, set all four hints (readOnlyHint, destructiveHint, idempotentHint, openWorldHint) to explicit true/false values that match the handler’s actual behaviour.

Tool inputs are validated

6/7 tool handlers declare input schemas (86%)

Declare an inputSchema with zod/joi/yup on every tool definition.

Shell command execution

164 child_process calls — runs shell commands

Prefer library functions over shell-outs. If you must shell out, ensure all inputs are properly escaped.

Secrets not logged

1 secret value sent to console.log

Redact or omit secret values from log output.

Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.

// full audit trail
The findings above are the summary. The full trail, every check we ran, each deduction, the network hosts observed and the dependency advisories, goes to verified publishers, along with an alert whenever a new one lands. Verified publishers can also review each finding and dispute it in one click. Publisher corrections have sharpened several of our checks this month, because the maintainer knows the codebase better than any scanner.
// improvement guidance — verified publishers only
We have 5 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/obundh/korea-public-data-catalog-mcp)](https://m8ven.ai/mcp/obundh/korea-public-data-catalog-mcp)
Shows your grade and updates automatically. Prefer no grade? Append ?variant=verified to the badge URL.
commit: bfe048e8fa591582b329882b059164d28c484538
code hash: 0584edf1322456cf0bd1276acbe69f75df9cfbbe1b14777e2d2918597a3867ec
view raw JSON →
Check MCPs from inside your assistant
Tool Check · MCP

Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.

https://m8ven.ai/api/mcp/tool-check
check_toolsearch_toolscompare_toolsrecommend_alternativescheck_publisherreport_concern
How to add it →Free · no account needed · works in any MCP client