Server data from the Official MCP Registry
MCP injection / prompt-poisoning / SSRF scanner. 30+ canonical rules covering the April 2026
About
MCP injection / prompt-poisoning / SSRF scanner. 30+ canonical rules covering the April 2026
Security Report
This MCP server implements security scanning for injection attacks in other MCP servers. While the core scanning logic is sound and permissions are appropriate for its purpose (network HTTP for fetching remote MCP endpoints, environment variables for API keys), several moderate security concerns exist: (1) the authentication system relies on an external shared module with weak key validation, (2) API key validation is bypassable through the fallback check_access function, (3) SSRF protection has a parsing vulnerability in the attestation API URL validation, and (4) the server makes external attestation API calls that could leak scan metadata. These issues don't constitute critical vulnerabilities but require fixing before production use. Supply chain analysis found 5 known vulnerabilities in dependencies (0 critical, 5 high severity). Package verification found 1 issue.
5 files analyzed ยท 16 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
Permissions Required
This plugin requests these system permissions. Most are normal for its category.
How to Install
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-csoai-org-meok-mcp-injection-scan-mcp": {
"args": [
"meok-mcp-injection-scan-mcp"
],
"command": "uvx"
}
}
}Documentation
View on GitHubFrom the project's GitHub README.
Meok MCP Injection Scan MCP
MCP injection-scanner โ 30+ canonical detection rules across 5 severity tiers for the April 2026 ...
MCP injection-scanner โ 30+ canonical detection rules across 5 severity tiers for the April 2026 Anthropic MCP RCE class. By MEOK AI Labs.
๐ Quick Start
# Install via pip
pip install meok_mcp_injection_scan_mcp
# Or install via Smithery
npx -y @smithery/cli@latest install meok-mcp-injection-scan-mcp --client claude
โจ Features
- MCP protocol compliant
- Easy installation
- Well-documented API
- Production-ready
- Active maintenance
๐ Documentation
๐ก๏ธ Compliance
This MCP server is built with EU AI Act compliance built-in:
- โ Article 9 โ Risk Management System
- โ Article 13 โ Transparency & Instructions for Use
- โ Article 15 โ Bias Detection & Testing
- โ Article 26 โ FRIA Support (where applicable)
- โ Article 50 โ AI Content Watermarking (where applicable)
Need help getting compliant? Book a free 15-min diagnostic โ
๐ข Enterprise
Need custom development, SLA guarantees, or white-label deployment?
- Pro: $99/mo โ Full MCP suite + EU AI Act tracking
- Enterprise: $499/mo โ Custom dev + SLA + Dedicated support
View Pricing โ | Contact Sales โ
๐ค Part of the MEOK Ecosystem
This server is part of the MEOK AI Labs ecosystem โ 300+ MCP servers for sovereign AI governance.
| Domain | Purpose |
|---|---|
| councilof.ai | EU AI Act compliance marketplace |
| safetyof.ai | AI safety & monitoring |
| meok.ai | Sovereign AI platform |
| cobolbridge.ai | Legacy modernization |
๐ License
MIT ยฉ CSOAI-ORG
Reviews
No reviews yet
Be the first to review this server!
More Developer Tools MCP Servers
Fetch
Freeby Modelcontextprotocol ยท Developer Tools
Web content fetching and conversion for efficient LLM usage
Git
Freeby Modelcontextprotocol ยท Developer Tools
Read, search, and manipulate Git repositories programmatically
Toleno
Freeby Toleno ยท Developer Tools
Toleno Network MCP Server โ Manage your Toleno mining account with Claude AI using natural language.
mcp-creator-python
Freeby mcp-marketplace ยท Developer Tools
Create, build, and publish Python MCP servers to PyPI โ conversationally.
MCP Marketplace
Freeby mcp-marketplace ยท Developer Tools
Search and install MCP servers from inside your AI client.
MarkItDown
Freeby Microsoft ยท Content & Media
Convert files (PDF, Word, Excel, images, audio) to Markdown for LLM consumption
