Productivity · Local MCP server
Elicitation Auditor
MCP elicitation anti-patterns: secrets in forms, third-party authorize URLs, credentials in URLs.
What the MCP Registry states
The entry as published to the official MCP Registry (read 2026-10-04), latest version.
- Registry name
io.github.4hmetuyar/elicitation-auditor- Version
- 0.1.1
- Status
- Active
- Category
- productivity
- Transport
- stdio (local process)
- Package
- npm
- Published
- 2026-09-30
- Updated
- 2026-09-30
- Publisher
- 4hmetuyar (GitHub) · 26 servers with pages here
- Repository
- github.com/GuardBee/guardbee-mcp (folder packages/elicitation-auditor)
- Source
- Registry API entry
Packages
| Registry | Package | Version | Transport |
|---|---|---|---|
| npm | @guardbee/mcp-elicitation-auditor | 0.1.1 | stdio |
How to connect Elicitation Auditor
Elicitation Auditor runs locally from a Node.js package published to the npm registry: @guardbee/mcp-elicitation-auditor version 0.1.1. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Node.js; clients usually start it with npx — the usual command is npx -y @guardbee/mcp-elicitation-auditor@0.1.1.
In the mcpServers JSON format that many desktop and editor MCP clients read, the entry looks like this (placeholders in angle brackets):
{
"mcpServers": {
"elicitation-auditor": {
"command": "npx",
"args": [
"-y",
"@guardbee/mcp-elicitation-auditor@0.1.1"
]
}
}
}Derived from the registry entry, not tested here. What the server does, and on what terms, is set by its publisher; check its repository or website before giving it access to your accounts or files. How to add an MCP server to an assistant · Before you connect
More from 4hmetuyar (GitHub)
| Server | Runs |
|---|---|
| Agent Graph AuditorFinds transitive excessive agency across LangGraph/CrewAI/AutoGen orchestration graphs. | Local · stdio |
| Ai Code ScannerScans code for insecure LLM/AI integration: exposed keys, unsafe output, prompt injection. | Local · stdio |
| Compliance CheckerKVKK/GDPR/CCPA compliance checks for codebases. | Local · stdio |
| Db GatewayKVKK/GDPR-compliant LLM-to-database gateway: PII masking, RBAC, rate limiting, audit log. | Local · stdio |
| Dependency AuditorCVE scanning for npm/pip/cargo dependencies via OSV. | Local · stdio |
| Dns IntelligenceDNS record enumeration, misconfiguration and dangling-subdomain detection. | Local · stdio |
| Llm RedteamActive jailbreak/extraction/obfuscation red-teaming for live LLM endpoints. | Local · stdio |
| MCP Config AuditorScans Cursor/Claude/Windsurf/VS Code MCP configs for unpinned versions, secrets, typosquats. | Local · stdio |
| MCP Server AuditorScans MCP server tool definitions for excessive agency, injection sinks, hardcoded secrets. | Local · stdio |
| Memory Poisoning ScannerScans agent code for untrusted input poisoning persistent cross-session memory. | Local · stdio |
| Model ScannerScans ML model files (PyTorch, safetensors, Keras, ONNX) for supply-chain risks. | Local · stdio |
| Oauth AuditorScans MCP server auth code for OAuth 2.1 anti-patterns: token passthrough, missing audience. | Local · stdio |
More productivity servers
| Server | Runs |
|---|---|
| Election IndexNeutral, sourced election calendar: polling days, when provisional and final results are due. | Remote · HTTP |
| Electrik SlateRead-only MCP for Electrik Slate: Blade component docs, blocks gallery, source, and llms.txt. | Remote · HTTP |
| ElesyncPrivate local-first AI workspace for shared context, knowledge, tasks, and memories. | Local · stdio |
| EliAI ops team for founders: approvals queue, inbox triage, briefing, follow-up drafting. | Remote · HTTP |
| Eliu243 Oura MCP Server 2Connect your Oura Ring account to enable secure, authenticated access in your workflows. Generate… | Remote · HTTP |
| em[ai]lRead and draft email you forward to a private alias. Agents cannot send or delete mail. | Remote · HTTP |
| EmailEmail infrastructure for AI agents — send, receive, search, and reply to email over MCP. | Remote · HTTP |
| EmailSend email through your own Amazon SES account, and check domains, suppressions and sandbox status. | Local · stdio |