Altro · Server MCP locale
Tool Poisoning Scanner
Scans MCP tool definitions for hidden instructions and confused-deputy sinks.
Cosa indica il MCP Registry
La voce come pubblicata nel MCP Registry ufficiale (consultazione: 4 ottobre 2026), ultima versione.
- Nome nel registro
io.github.4hmetuyar/tool-poisoning-scanner- Versione
- 0.2.1
- Stato
- Attivo
- Categoria
- altro
- Trasporto
- stdio (processo locale)
- Pacchetto
- npm
- Pubblicato
- 28 settembre 2026
- Aggiornato
- 28 settembre 2026
- Editore
- 4hmetuyar (GitHub) · 26 server con una pagina qui
- Namespace
- Namespace verificato dal MCP Registry tramite GitHub (github.com/4hmetuyar) · come funziona
- Repository
- github.com/GuardBee/guardbee-mcp (cartella packages/tool-poisoning-scanner)
- Fonte
- Voce nell’API del registro
Pacchetti
| Registro | Pacchetto | Versione | Trasporto |
|---|---|---|---|
| npm | @guardbee/mcp-tool-poisoning-scanner | 0.2.1 | stdio |
Come collegare Tool Poisoning Scanner
Tool Poisoning Scanner viene eseguito in locale a partire da un pacchetto Node.js pubblicato nel registro npm: @guardbee/mcp-tool-poisoning-scanner, versione 0.2.1. Comunica via MCP su stdio, quindi il client lo avvia come programma e dialoga con esso tramite standard input e standard output. Richiede Node.js; i client in genere lo avviano con npx - il comando abituale è npx -y @guardbee/mcp-tool-poisoning-scanner@0.2.1.
Nel formato JSON mcpServers, letto da molti client MCP desktop e per editor di codice, la voce si presenta così (segnaposto tra parentesi angolari):
{
"mcpServers": {
"tool-poisoning-scanner": {
"command": "npx",
"args": [
"-y",
"@guardbee/mcp-tool-poisoning-scanner@0.2.1"
]
}
}
}Ricavato dalla voce del registro, non testato qui. Cosa fa il server, e a quali condizioni, lo stabilisce il suo editore; prima di concedergli l’accesso ai propri account o file conviene consultarne il repository o il sito web. Come aggiungere un server MCP a un assistente · Prima di collegare un server
Altri server di 4hmetuyar (GitHub)
| Server | Esecuzione |
|---|---|
| Oauth AuditorScans MCP server auth code for OAuth 2.1 anti-patterns: token passthrough, missing audience. | Locale · stdio |
| Prompt Injection ScannerScans RAG content/scraped pages for indirect prompt injection. | Locale · stdio |
| Prompt Leak ScannerCatches leaked credentials and PII in outbound LLM prompts. | Locale · stdio |
| Rug Pull DetectorBaselines an MCP server's tools and detects tool-definition changes after approval. | Locale · stdio |
| Secret ScannerScans files for leaked secrets and API keys. | Locale · stdio |
| Security ProxyMCP gateway: many servers, one policy, lethal-trifecta blocking, PII masking, audit log. | Locale · stdio |
| Security SuiteBundle of secret-scanner, dependency-auditor, ssl-inspector, and dns-intelligence. | Locale · stdio |
| Slopsquat ScannerChecks declared npm/PyPI dependencies against real registries to catch slopsquatting. | Locale · stdio |
| Toxic Flow AuditorFinds lethal-trifecta toxic flows in MCP tool catalogs: untrusted input, sensitive data, egress. | Locale · stdio |
| Unbounded Consumption AuditorScans LLM/agent code for Unbounded Consumption / denial-of-wallet risks (OWASP LLM Top 10 2026 #6) | Locale · stdio |
| Vector Store ScannerProbes vector-database endpoints for unauthenticated exposure of embeddings/RAG data. | Locale · stdio |
| Vulnerability ScannerTriggers GuardBee scans, queries findings, AI-assisted remediation guidance. | Locale · stdio |
Altri server della categoria altro
| Server | Esecuzione |
|---|---|
| Tone Rewriter Ai MCPTone Rewriter Ai MCP server. Tools: analyze tone, rewrite tone, compare tones. Built by MEOK AI. | Locale · stdio |
| Tonebook PaletteChoose a palette, compare digital colors and create portable outfit, event or packing boards. | Remoto · HTTPVerifica live: ✓ handshake |
| TooHardBasket.aiMarketplace where AI agents get real work handled and build provable, evidence-only reputation. | Remoto · HTTPVerifica live: ✓ handshake |
| TookEffectIndependent effect verification and signed receipts for consequential AI agent actions. | Remoto · HTTPVerifica live: accesso richiesto |
| Toolalize MCPFree unit & live currency conversion tools from toolalize.com (convert_units, convert_currency). | Remoto · HTTPVerifica live: ✓ handshake |
| ToolAPIFree public MCP for AI agents - 193 tools, 44 workflows. No API key. | Remoto · SSE e HTTPVerifica live: ✓ handshake |
| ToolBudget Router MCPPaid remote MCP for context-budget routing, schema cost estimates, usage audits, and readiness. | Remoto · HTTPVerifica live: ✗ nessun handshake |
| Toolcairn MCPMCP server for tool discovery: find, compare, and verify tools across 35+ registries. | Locale · stdio |