Other · Local MCP server
Tool Poisoning Scanner
Scans MCP tool definitions for hidden instructions and confused-deputy sinks.
What the MCP Registry states
The entry as published to the official MCP Registry (read 2026-10-04), latest version.
- Registry name
io.github.4hmetuyar/tool-poisoning-scanner- Version
- 0.2.1
- Status
- Active
- Category
- other
- Transport
- stdio (local process)
- Package
- npm
- Published
- 2026-09-28
- Updated
- 2026-09-28
- Publisher
- 4hmetuyar (GitHub) · 26 servers with pages here
- Repository
- github.com/GuardBee/guardbee-mcp (folder packages/tool-poisoning-scanner)
- Source
- Registry API entry
Packages
| Registry | Package | Version | Transport |
|---|---|---|---|
| npm | @guardbee/mcp-tool-poisoning-scanner | 0.2.1 | stdio |
How to connect Tool Poisoning Scanner
Tool Poisoning Scanner runs locally from a Node.js package published to the npm registry: @guardbee/mcp-tool-poisoning-scanner version 0.2.1. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Node.js; clients usually start it with npx — the usual command is npx -y @guardbee/mcp-tool-poisoning-scanner@0.2.1.
In the mcpServers JSON format that many desktop and editor MCP clients read, the entry looks like this (placeholders in angle brackets):
{
"mcpServers": {
"tool-poisoning-scanner": {
"command": "npx",
"args": [
"-y",
"@guardbee/mcp-tool-poisoning-scanner@0.2.1"
]
}
}
}Derived from the registry entry, not tested here. What the server does, and on what terms, is set by its publisher; check its repository or website before giving it access to your accounts or files. How to add an MCP server to an assistant · Before you connect
More from 4hmetuyar (GitHub)
| Server | Runs |
|---|---|
| Oauth AuditorScans MCP server auth code for OAuth 2.1 anti-patterns: token passthrough, missing audience. | Local · stdio |
| Prompt Injection ScannerScans RAG content/scraped pages for indirect prompt injection. | Local · stdio |
| Prompt Leak ScannerCatches leaked credentials and PII in outbound LLM prompts. | Local · stdio |
| Rug Pull DetectorBaselines an MCP server's tools and detects tool-definition changes after approval. | Local · stdio |
| Secret ScannerScans files for leaked secrets and API keys. | Local · stdio |
| Security ProxyMCP gateway: many servers, one policy, lethal-trifecta blocking, PII masking, audit log. | Local · stdio |
| Security SuiteBundle of secret-scanner, dependency-auditor, ssl-inspector, and dns-intelligence. | Local · stdio |
| Slopsquat ScannerChecks declared npm/PyPI dependencies against real registries to catch slopsquatting. | Local · stdio |
| Toxic Flow AuditorFinds lethal-trifecta toxic flows in MCP tool catalogs: untrusted input, sensitive data, egress. | Local · stdio |
| Unbounded Consumption AuditorScans LLM/agent code for Unbounded Consumption / denial-of-wallet risks (OWASP LLM Top 10 2026 #6) | Local · stdio |
| Vector Store ScannerProbes vector-database endpoints for unauthenticated exposure of embeddings/RAG data. | Local · stdio |
| Vulnerability ScannerTriggers GuardBee scans, queries findings, AI-assisted remediation guidance. | Local · stdio |
More other servers
| Server | Runs |
|---|---|
| Toml Yaml Json MCPParse, format, and convert configs across TOML, YAML, and JSON. | Local · stdio |
| Tonebook PaletteChoose a palette, compare digital colors and create portable outfit, event or packing boards. | Remote · HTTP |
| TooHardBasket.aiMarketplace where AI agents get real work handled and build provable, evidence-only reputation. | Remote · HTTP |
| TookEffectIndependent effect verification and signed receipts for consequential AI agent actions. | Remote · HTTP |
| Toolalize MCPFree unit & live currency conversion tools from toolalize.com (convert_units, convert_currency). | Remote · HTTP |
| ToolarsLocal-first dev utilities: hash, base64, JWT, UUID, cron, URL codec. No network or telemetry. | Local · stdio |
| Toolchain Lens MCPLocal explanation of reproducibility signals and toolchain contradictions without exact versions... | Local · stdio |
| ToolmeshSelf-hosted MCP gateway. Turn any REST API into MCP tools via YAML (DADL). Authz, audit, policies. | Remote · HTTP |