High risk. Don't ship without significant remediation.
Scanned 5/1/2026, 8:59:23 AM·Cached result·Deep Scan·88 rules·View source ↗·How we decide ↗
AIVSS Score
High
Severity Breakdown
0
critical
6
high
3
medium
0
low
MCP Server Information
Findings
This package earns a B grade with an 88/100 safety score but carries a moderate AIVSS risk rating of 3.9/10 due to two medium-severity issues: one vulnerable dependency and one server configuration weakness. While no critical or high-severity flaws were found, you should address the dependency vulnerability before deployment and review the configuration issue to ensure it doesn't expose the MCP server to unnecessary risk.
AIPer-finding remediation generated by bedrock-claude-haiku-4-5 — 8 of 9 findings. Click any finding to read.
Scan Details
Done
Sign in to save scan history and re-scan automatically on new commits.
Building your own MCP server?
Same rules, same LLM judges, same grade. Private scans stay isolated to your account and never appear in the public registry. Required for code your team hasn’t shipped yet.
9 of 9 findings
9 findings