# MCP Security Registry
A community-driven registry of security evaluations for Model Context Protocol (MCP) server implementations.
## About This Project
The MCP Security Registry provides standardized security evaluations of MCP server implementations to help developers and organizations make informed decisions about which MCP servers to use in their applications. Our approach uses LLM-based analysis to provide comprehensive security assessments with actionable recommendations.
### What is MCP?
The Model Context Protocol (MCP) standardizes how applications provide context to Large Language Models (LLMs). MCP servers act as intermediaries that manage context, handle retrieval, and facilitate communication between applications and LLMs.
### Why Security Matters
MCP servers often handle sensitive information and provide critical functionality for AI applications. Security vulnerabilities in MCP implementations can lead to data breaches, prompt injection attacks, and other security issues.
## Certification Process
Our certification process is designed to be transparent, thorough, and actionable:
1. **Repository Submission**: Developers submit their MCP server repository for evaluation
2. **LLM-Based Analysis**: Our system analyzes the repository using advanced LLM techniques
3. **Security Profile Generation**: A comprehensive security profile is created
4. **Certification Assignment**: The implementation receives a certification level based on its security posture
5. **Private Results Delivery**: Detailed results are delivered privately to the repository owner
## Certification Levels
MCP implementations can receive one of three certification levels:
- **Bronze**: Meets basic security requirements
- **Silver**: Implements recommended security practices
- **Gold**: Follows security best practices with no critical/high vulnerabilities
See our [Evaluation Criteria](evaluation-criterea.md) for detailed information on certification requirements.
## Request a Certification
To request a security evaluation for your MCP server implementation:
1. Ensure your repository is publicly accessible on GitHub
2. Submit your repository URL through our [certification request form](https://example.com/request-certification)
3. Receive detailed security analysis and certification results via email
4. Address any security issues identified
5. Request a re-evaluation to achieve a higher certification level (optional)
## Security Evaluation Template
Our security evaluations follow a standardized template to ensure comprehensive coverage of all security aspects. You can view the [evaluation template](evaluation-template.md) to understand what aspects of your implementation will be assessed.
## Contributing
We welcome contributions from the community! See our [Contributing Guidelines](CONTRIBUTING.md) for information on how to contribute to the MCP Security Registry project.
## License
This project is licensed under the [MIT License](LICENSE).
MCP Security
MCP Server
A standardized security evaluation framework for MCP servers, including assessment templates and an automated vulnerability scanner. This registry helps developers identify secure implementations for AI applications and promotes best practices across the MCP ecosystem.
工具数
提示词数
GitHub Stars
资源数
快速接入
先看主来源和安装命令,再打开仓库或文档;下面只保留这个条目的关键接入事实。
详细介绍
目录标签
目录标签
接入字段
传输方式(transport,传输协议)
未说明
鉴权方式(authType,认证方式)
none
工具数量(toolCount,工具数)
0
资源数量(resourceCount,资源数)
0
提示词数量(promptCount,提示词数)
0
权限和风险
接入前请确认传输方式、认证方式和部署位置,并根据实际工具能力限制访问范围。
不要直接授予不必要的文件、网络或账号权限;先核对安装命令和配置内容。
仍需确认:installCommand
来源信息

MCP.so
mcp.so
/server/mcp-security/everychart
A standardized security evaluation framework for MCP servers, including assessment templates and an automated vulnerability scanner. This registry helps developers identify secure implementations for AI applications and promotes best practices across the MCP ecosystem.

MCP World
mcpworld.com
/detail/041a73285b2c6caa21c9a7e6ca940950
MCP安全注册表是一个社区驱动的项目,提供对MCP服务器实现的标准安全评估,帮助开发者和组织在选择MCP服务器时做出明智决策。