copper-mcp (seunghyukchoe/copper-mcp) is an MCP server listed on the M8ven Trust Index. It scores 74 out of 100, grade C. It declares 28 tools. No publisher has claimed this listing.

C
Emerging
74/100
9 days ago

copper-mcp

Enables secure, read-only inspection and validation of KiCad PCB boards through MCP, with deterministic routing and optional AI policy plugins.

Emerging. No concerning findings. Grades remain capped until the project builds reputation through adoption. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.

How we verified

Code Verified⚡ Live Monitored: not connected

Verified is a snapshot. Live keeps it current, and builds your track record.

⚡ Connect GitHub → continuous verification on every pushwhy connect →

Who stands behind it

seunghyukchoe

Source: Glama

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access →

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
28 tools verified — handlers match their declared behaviour
17 read-only tools verified — handlers contain no write/delete/exec
No credential exfiltration, no sensitive file access, no obfuscation
Static analysis found nothing flowing your secrets to unexpected places.
Open source with a license and README
Anyone can audit the code, the license is declared, and the publisher documents what it does.
🔐
You'll be asked for 1 credential: KICAD_API_TOKEN
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// environment variables
To run this server yourself, you supply these values. They go in your own MCP client configuration and stay on your machine. The secret label means the value is sensitive, not that the server mishandles it.
configCOPPER_MCP_ROUTING_JOB_STORE
configCOPPER_MCP_WORKSPACE
configKICAD_API_SOCKET
🔐 secretKICAD_API_TOKEN
configCOPPER_MCP_TRANSPORT
configCOPPER_MCP_HOST
configCOPPER_MCP_PORT
configCOPPER_MCP_MAX_BOARD_BYTES
configCOPPER_MCP_MAX_PARSE_TOKENS
configCOPPER_MCP_MAX_PARSE_NODES
configCOPPER_MCP_MAX_PARSE_CHILDREN_PER_LIST
configCOPPER_MCP_MAX_PARSE_OBJECTS
configCOPPER_MCP_MAX_PARSE_TOTAL_VERTICES
configCOPPER_MCP_MAX_PARSE_INTERSECTION_TESTS
configCOPPER_MCP_KICAD_CLI
configCOPPER_MCP_KICAD_TIMEOUT_SECONDS
configCOPPER_MCP_MAX_DRC_REPORT_BYTES
configCOPPER_MCP_MAX_DRC_CONTEXT_BYTES
configCOPPER_MCP_MAX_DRC_CONTEXT_FILES
configCOPPER_MCP_MAX_DRC_CONTEXT_SCAN_SECONDS
configCOPPER_MCP_MAX_ROUTE_PREVIEW_SECONDS
configCOPPER_MCP_MAX_FILL_VERTICES
configCOPPER_MCP_MAX_SCENE_OBJECTS
configCOPPER_MCP_MAX_SCENE_VERTICES
configCOPPER_MCP_MAX_RENDER_BYTES
configCOPPER_MCP_MAX_SCENE_ANNOTATIONS
configCOPPER_MCP_MAX_PLACEMENT_SUBJECTS
configCOPPER_MCP_MAX_PLACEMENT_RULES
configCOPPER_MCP_MAX_PLACEMENT_CHECKS
configCOPPER_MCP_MAX_PLACEMENT_SECONDS
configCOPPER_MCP_ALLOW_APPLYflag, and over MCP each additionally needs its own single-use token, issued
configCOPPER_MCP_ALLOW_LIVE_IPCby default behind the exact flag; with it off the live tools stay listed
configCOPPER_MCP_ALLOW_LIVE_APPLY(, required alongside COPPER_MCP_ALLOW_LIVE_IPC and independent of
// quality suggestions

Tool annotations

23/29 tools have annotations

Add readOnlyHint or destructiveHint annotations to every tool so hosts can warn users before invoking.

All four hints declared on every tool

6/29 tools missing one or more hints — server_info (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); inspect_board (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); run_board_drc (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint), +3 more. OpenAI's directory rejects tools where any of the four hints are missing or non-boolean.

For every tool, set all four hints (readOnlyHint, destructiveHint, idempotentHint, openWorldHint) to explicit true/false values that match the handler’s actual behaviour.

Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.

// full audit trail
The findings above are the summary. The full trail, every check we ran, each deduction, the network hosts observed and the dependency advisories, goes to verified publishers, along with an alert whenever a new one lands. Verified publishers can also review each finding and dispute it in one click. Publisher corrections have sharpened several of our checks this month, because the maintainer knows the codebase better than any scanner.
// improvement guidance — verified publishers only
We have 2 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/seunghyukchoe/copper-mcp)](https://m8ven.ai/mcp/seunghyukchoe/copper-mcp)
Shows your grade and updates automatically. Prefer no grade? Append ?variant=verified to the badge URL.
commit: eeef3a9a4009c3752e912a14d94550802354b02a
code hash: d36ea9f2bd5ba98bb0a52196c81dc0bab3c5f304277e3a1173cd37e3e39f87ee
verified: 9/1/2026, 6:41:12 PM
view raw JSON →
Check MCPs from inside your assistant
Tool Check · MCP

Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.

https://m8ven.ai/api/mcp/tool-check
check_toolsearch_toolscompare_toolsrecommend_alternativescheck_publisherreport_concern
How to add it →Free · no account needed · works in any MCP client