arunmm8335/MCP Guard Scanner
Scan MCP servers for tool-poisoning and supply-chain risks; fail CI when approved servers change (rug-pull check).
View on GitHubTrust Signals
- Scorecard Score
- not yet scored
- Maintenance Recency
- Stale
- License
- None
Inputs
| name | description | required | default |
|---|---|---|---|
| mode | scan (grade a target) or verify (check the lockfile for drift) | no | verify |
| target | Server to scan (scan mode): a path, npm:<package>, or owner/repo | no | — |
| fail-on | scan mode: fail at this grade or worse (A/B/C/D/F) | no | D |
| lockfile | verify mode: path to the lockfile | no | mcpguard.lock.json |
Outputs
no outputs