Server data from the Official MCP Registry
22 federal data tools. Signed responses with provenance.
22 federal data tools. Signed responses with provenance.
Unverified package source
We couldn't verify that the installable package matches the reviewed source code. Proceed with caution.
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-writesdavid-open-primitive": {
"args": [
"-y",
"opp-check"
],
"command": "npx"
}
}
}This Open Primitive Protocol MCP server has several concerning issues: it requires a private signing key without clear documentation, has commented code execution functionality (even if non-functional), and executes cryptographic operations that could potentially expose sensitive data. While the server provides legitimate federal data access, these security concerns require user awareness. Supply chain analysis found 3 known vulnerabilities in dependencies. Package verification found 1 issue (1 critical, 0 high severity).
Scanned 5 files · 8 findings
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Be the first to review this server!