The inspection found no issues.
MCP Security
MCP Security: server risks and adoption checklist
MCP security is the practice of controlling which servers an AI system may use, what permissions they receive, and where their data and actions can go.
The review extends beyond encrypted transport to provenance, description-to-implementation consistency, runtime, credentials, outbound connections, and behavior after updates. Name and popularity are not security evidence.
Abcas MCP Guard is a public-benefit database that continuously collects and inspects public MCP servers and keeps adoption evidence up to date.
Last reviewed: July 22, 2026
Primary risks
How MCP expands the attack surface
MCP extends an AI system from generating responses to operating files, services, and tools. The server, its tools, data, credentials, and update path all become security boundaries.
Pre-adoption review
Six checks before connecting a server
Do not classify a server by name alone. Separate verified evidence from the parts that remain unknown, then decide the permitted boundary.
Public evidence
Inspection evidence published by MCP Guard
MCP Guard publishes the current Public Registry count, total inspection attempts including failures, the restricted-use/prohibited share of inspectable MCP servers, the NEED_REVIEW share of classified public MCP servers, the number of checks in its patent-pending inspection method, and the latest update time. Every figure comes from the same public API and refreshes once per minute.
Public MCP servers
Loading
MCP servers currently published in the Public Registry
Total inspection attempts (including failures)
Loading
Cumulative actual inspection attempts, including failed attempts
Restricted-use / prohibited rate
Loading
(RESTRICT + BLOCK) / (PASS + WARN + RESTRICT + BLOCK). Unable-to-determine rows are excluded
Unable-to-determine rate
Loading
NEED_REVIEW / (PASS + WARN + RESTRICT + BLOCK + NEED_REVIEW). Reported separately from risk
Inspection checks
Loading
Total checks in the patent-pending MCP inspection method
Last updated
Loading
Decision and operation
How to act on review results
A single score should not declare a server safe. Match the intended use to the available evidence and choose an appropriate access boundary.
How to read inspection results
PASS, WARN, RESTRICT, and BLOCK are ordered by how strictly use must be controlled. NEED_REVIEW is separate: the available evidence was insufficient to determine safety.
The inspection found items that require caution.
The inspection found high-risk behavior, permissions, or vulnerabilities. Use only after every required technical control is enforced and verified.
The inspection met high-impact prohibition criteria. Do not use this server.
Separate from the risk scale
The available evidence was insufficient, so safety could not be determined.
Frequently asked questions
MCP security fundamentals
What is MCP security?
MCP security is the practice of reviewing and controlling server provenance, runtime, permissions, credentials, external connections, and post-update behavior when an AI system connects to tools or data through the Model Context Protocol.
Is a popular MCP server automatically safe?
No. Popularity does not verify the publisher, implementation, permission scope, outbound data flow, or future updates. Each server still needs an adoption review.
Do HTTPS and OAuth make an MCP server safe?
They protect parts of transport and authentication, but they do not prevent excessive tool permissions, malicious tool descriptions, compromised dependencies, unexpected data transfer, or behavior changes after an update.
Does a PASS result guarantee that a server is safe?
No. It means no issue was found within the evidence and inspection scope available at that time. Reinspection is needed when the server or its dependencies change.
What is the difference between Free and Pro access?
Signed-in Free users can search simplified information for every MCP server. Pro adds inspection evidence, CSV and JSON exports, update-drift review, and local monitoring tools.
References
Public security guidance
Use MCP Guard inspection evidence alongside public security guidance from the MCP project, OWASP, and the NSA.
Related guides
Checks by environment and risk
Continue with focused checks for stdio, runtime monitoring, Claude, Cursor, Codex, and other adoption contexts.
Technical documentation
MCP Server DB
Research Blog
