CloseCrab (yangwhale/CloseCrab) is an MCP server listed on the M8ven Trust Index. It scores 37 out of 100, grade F. It declares 14 tools. No publisher has claimed this listing.

F
Warning
37/100

CloseCrab

Multi-platform AI bot framework: 5 hot-swappable agent runtimes (Claude Code / OpenClaw / Kilo / Gemini CLI / DeepSeek Harness) across Discord, Feishu, DingTalk and a self-hosted web entrance, with shared memory, bot-to-bot collaboration and real-time voice.

Warning. Serious findings were identified. Review the full report before connecting. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.

How we verified

Code Verified⚡ Live Monitored: not connected

Verified is a snapshot. Live keeps it current, and builds your track record.

⚡ Connect GitHub → continuous verification on every pushwhy connect →

Who stands behind it

yangwhale

Source: github_repo_search

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access →

Install from

The grade above is for the source repository. Registries can serve a different version, so we mark the ones we were not able to read.

// key findings
🚨
Secret credentials may flow to a network call
6 flows detected: JINA_AUTH, JINA_API_KEY. We can’t prove the destination matches the brand the credential belongs to.
🚨
Reads files from sensitive locations
Touches: ~/.config/gcloud/application_default_credentials.json
🔐
You'll be asked for 8 credentials: CC_NATIVE_SECRET, LIVEKIT_API_KEY, LIVEKIT_API_SECRET, FEISHU_SMTP_PASS, JINA_API_KEY, FEISHU_API_KEY, GEMINI_API_KEY, KILO_SERVER_PASSWORD
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// tools this server exposes14 tools

These names and descriptions are the publisher's own, read from the source code. We print them as written. Our assessment is the findings above, not this list.

wiki_query

Search the wiki using BM25 + knowledge graph augmentation.

wiki_page

Read a wiki page's plain text content by its slug (filename without .html).

wiki_graph_neighbors

Get N-hop neighbors of a wiki page in the knowledge graph.

wiki_graph_path

Find the shortest path between two wiki pages in the knowledge graph.

wiki_status

Get wiki statistics: page counts, link counts, health score, recent activity.

wiki_search

Simple keyword search across wiki page titles and tags.

wiki_list

List wiki pages, optionally filtered by type and/or tag.

bash

Run a shell command and return stdout+stderr. 60s timeout.

read

Read a file. Returns first 8KB.

search_web

联网搜索(Jina)。**要上网查东西,先用这个,不要先用内置的 Google 搜索。**

read_url

打开一个网址,把正文读回来(去掉导航和广告,只留文字)。

run_bash

在这台机器上跑一条 shell 命令,返回退出码、stdout 和 stderr。

read_file

读暂存目录里的一个文件(就是 write_file 写的那些)。

write_file

把内容写进暂存目录里的一个文件。**整份覆盖,不是追加。**

// environment variables
To run this server yourself, you supply these values. They go in your own MCP client configuration and stay on your machine. The secret label means the value is sensitive, not that the server mishandles it.
configAGENT_NAME
configALLOWED_ROOMS
🔐 secretCC_NATIVE_SECRET
configLIVEKIT_ADMIN_URL
🔐 secretLIVEKIT_API_KEY
🔐 secretLIVEKIT_API_SECRET
configLIVEKIT_NATIVE_URL
configLIVEKIT_URL
configWIKI_URL
configBOT_NAME
configWHISPER_MODEL
configGOOGLE_CLOUD_PROJECT
configCHIRP2_LOCATION
configFEISHU_SMTP_USER
🔐 secretFEISHU_SMTP_PASS
configFEISHU_SMTP_HOST
configFEISHU_SMTP_PORT
configCC_PAGES_URL_PREFIX
configJINA_AUTH
🔐 secretJINA_API_KEY
🔐 secretFEISHU_API_KEY
configFIRESTORE_PROJECT
configFIRESTORE_DATABASE
configGCS_BUCKET
configFEISHU_PROGRESS_INTERVAL
configFEISHU_ANIMATE_INTERVAL
configGBRAIN_BASE_URL
configVERTEX_PROJECT
configVERTEX_LOCATION
configPROXY_PORT
configCC_PAGES_WEB_ROOT
configSUBAGENT_MODEL
configCLOUD_ML_REGION
configANTHROPIC_VERTEX_PROJECT_ID
configSUBAGENT_MAX_ROUNDS
configSUBAGENT_MAX_TASKS
configCHIRP_MODEL
configCHIRP_LOCATION
configFUNASR_WS_URL
configFUNASR_MODE
🔐 secretGEMINI_API_KEY
configCC_WATCHDOG_SILENCE_SEC
configCC_WATCHDOG_TICK_SEC
configSTT_AB_DEBUG
configDSH_BIN
configDSH_PROFILE
configANTHROPIC_VERTEX_REGION
configINFO_SCORER_MODEL
configINFO_SCORER_TIMEOUT_S
configUSAGE_POLICY_FALLBACK_TIMEOUT_S
configUSAGE_POLICY_FALLBACK_MAX_TOKENS
configUSAGE_POLICY_MIN_PARTIAL_CHARS
configANTHROPIC_MODEL
configVOICE_RX_DEBUG
configDAVE_UNREADY_GRACE_S
configDAVE_REJOIN_COOLDOWN_S
configVOICE_BOOT_VERIFY_TIMEOUT
configVOICE_BOOT_VERIFY_POLL
configVOICE_DEAF_GRACE_S
configDAVE_PY_BACKEND
configTTS_MODEL
configQWEN3_TTS_HOST
configQWEN3_TTS_PORT
configQWEN3_TTS_VOICE
configCLOUD_TTS_VOICE
configDISCORD_TTS_BACKEND
configSTT_PROVIDER
configVOICE_CORPUS_GAP
configVOICE_CORPUS_MIN
configVOICE_CORPUS
configGOOGLE_GENAI_USE_VERTEXAI
configGOOGLE_CLOUD_LOCATION
configSTT_PHRASE_BOOST
configSTT_ENDPOINTING
configSTT_MODEL
configSTT_LANGUAGE
configSTT_LOCATION
configLIVEKIT_AGENT_PORT
🔐 secretKILO_SERVER_PASSWORD
configKILO_SERVER_USERNAME
configFEISHU_IMAP_HOST
configFEISHU_IMAP_PORT
configMAIL_ADMIN_BOT
configGEMINI_IDLE_GRACE_SEC
configLK_DEBUG
configLK_TEE
configLK_TEE_DIR
configLK_TEE_PUSH
configLK_TEE_THRESH
configLK_TEE_HANG
configLK_TEE_PRE
configLK_TEE_MIN
configLK_TEE_MAX
configWIKI_REPO在新机器上从零跑起 Wiki:v1/v2 差异 · WIKI_REPO 归属 · 一条命令装 MCP(scripts/install-wiki-mcp.sh)· 中文检索的坑
// quality suggestions

Tool annotations

No tools have read-only/destructive annotations

Add readOnlyHint or destructiveHint annotations to every tool so hosts can warn users before invoking.

All four hints declared on every tool

14/14 tools missing one or more hints — wiki_query (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); wiki_page (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); wiki_graph_neighbors (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint), +11 more. OpenAI's directory rejects tools where any of the four hints are missing or non-boolean.

For every tool, set all four hints (readOnlyHint, destructiveHint, idempotentHint, openWorldHint) to explicit true/false values that match the handler’s actual behaviour.

Tool test coverage

Only 3/14 tools referenced in tests (21%)

Write tests that reference each tool by name so every tool has at least one test.

No access to sensitive paths

Reads sensitive paths: ~/.config/gcloud/application_default_credentials.json

Remove reads of sensitive system paths. If you genuinely need them, document why in the README.

Domain consistency

npm scope @yizhiyanhua-ai doesn't match GitHub owner yangwhale

Use the same org name across GitHub, npm, and your homepage so users can verify the publisher.

Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.

// full audit trail
The findings above are the summary. The full trail, every check we ran, each deduction, the network hosts observed and the dependency advisories, goes to verified publishers, along with an alert whenever a new one lands. Verified publishers can also review each finding and dispute it in one click. Publisher corrections have sharpened several of our checks this month, because the maintainer knows the codebase better than any scanner.
// improvement guidance — verified publishers only
We have 5 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Verified](https://m8ven.ai/badge/mcp/yangwhale/closecrab?variant=verified)](https://m8ven.ai/mcp/yangwhale/closecrab)
Shows verification status without the grade. Want the grade badge instead? Remove ?variant=verified from the URL.
commit: 0239a717c3eaf22d59da94efd109dd0ac19b93cc
code hash: f58ac338c07f67fa46514b5aa73a14dcdf7e9a80f0f518d6bd6e1344f5a23441
view raw JSON →
Check MCPs from inside your assistant
Tool Check · MCP

Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.

https://m8ven.ai/api/mcp/tool-check
check_toolsearch_toolscompare_toolsrecommend_alternativescheck_publisherreport_concern
How to add it →Free · no account needed · works in any MCP client