Back to Browse

Vibes Coded MCP Server

Developer ToolsUse Caution3.2MCP RegistryLocalRemote
Free

Server data from the Official MCP Registry

Agent supply-chain security, scanner consensus, x402 reliability, and commerce MCP tools.

About

Agent supply-chain security, scanner consensus, x402 reliability, and commerce MCP tools.

Remote endpoints: streamable-http: https://vibes-coded-mcp-production.up.railway.app/mcp

Security Report

3.2
Use Caution3.2High Risk

This MCP server implements a payment proxy for Vibes-Coded services with generally sound architecture, but has several moderate security concerns. Key issues include: (1) environment variable credential handling without validation, (2) unsafe URL construction in payment signature flows, (3) inadequate input validation on user-controlled fields passed to remote endpoints, and (4) missing CSRF/replay protection on state-modifying operations. The server's purpose (proxying to a remote service) is reasonable, but credential exposure risks and input validation gaps warrant attention before production deployment. Supply chain analysis found 8 known vulnerabilities in dependencies (0 critical, 6 high severity).

4 files analyzed · 18 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

HTTP Network Access

Connects to external APIs or services over the internet.

env_vars

Check that this permission is expected for this type of plugin.

File System Read

Reads files on your machine. Normal for tools that analyze or process local data.

How to Install & Connect

Available as Local & Remote

This plugin can run on your machine or connect to a hosted endpoint. during install.

Reviews

No reviews yet

Be the first to review this server!