MCP Server Check

How the score works

Each rule that fires adds its points once, however many tools trigger it. The score is capped at 100: 60 or more means don't install as is, 35 to 59 install only with changes, 15 to 34 review first, and below 15 no major red flags.

RuleSeverityPoints
Tool description contains hidden instructionscritical+30
Install command pipes a download straight into a shellcritical+25
Description gives instructions about other toolshigh+20
Declared read-only, but the tool looks like it actshigh+20
Tool can run code or shell commandshigh+18
Tool reads secrets or credentialshigh+15
Install command isn't pinned to a versionmedium+12
Tool can write, move or delete filesmedium+10
Tool fetches arbitrary URLsmedium+10
Destructive toolmedium+8
Unusually long tool descriptionlow+4
More than 20 toolslow+4
Tools that act carry no behaviour annotationslow+3

Rules match the tool names, descriptions, input schemas and annotations you paste. Pattern checks can miss things and can flag harmless text, so read each finding's evidence.

Check a server