Server data from the Official MCP Registry
EU Cyber Resilience Act (Regulation 2024/2847) compliance for AI agents. Product classification...
EU Cyber Resilience Act (Regulation 2024/2847) compliance for AI agents. Product classification...
This CRA compliance MCP server is functionally sound and read-only with proper rate-limiting and API key authentication. However, it has a critical authentication bypass vulnerability (environment variable leak) and a non-standard auth import pattern that creates a path traversal risk. The server's permissions are well-scoped to its purpose, and there are no data exfiltration or malicious patterns. The authentication design needs hardening before production use. Supply chain analysis found 3 known vulnerabilities in dependencies (0 critical, 3 high severity). Package verification found 1 issue (1 critical, 0 high severity).
4 files analyzed · 14 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Unverified package source
We couldn't verify that the installable package matches the reviewed source code. Proceed with caution.
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-csoai-org-cra-compliance-mcp": {
"args": [
"cra-compliance-mcp"
],
"command": "uvx"
}
}
}Be the first to review this server!
by Toleno · Developer Tools
Toleno Network MCP Server — Manage your Toleno mining account with Claude AI using natural language.
by mcp-marketplace · Developer Tools
Create, build, and publish Python MCP servers to PyPI — conversationally.
by Microsoft · Content & Media
Convert files (PDF, Word, Excel, images, audio) to Markdown for LLM consumption