An intentionally vulnerable MCP server designed as a live demo target for the MCP Trust security scanner. It contains deliberate insecure patterns to demonstrate scanning capabilities.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
process.env. You'll be asked to provide them before it can run.GITHUB_TOKEN— MCP-CODE-007 low Secret-like environment variable access ()[](https://m8ven.ai/mcp/stevemonsway-mcp-trust-demo-1369gk)