Skip to content

fix: expand registry scan to 12 servers (50% HIGH+)#14

Closed
tcconnally wants to merge 3 commits into
mainfrom
fix/real-registry-data
Closed

fix: expand registry scan to 12 servers (50% HIGH+)#14
tcconnally wants to merge 3 commits into
mainfrom
fix/real-registry-data

Conversation

@tcconnally

Copy link
Copy Markdown
Collaborator

Added batch 2 scan results: Cloudflare, Sentry, Neon, Axiom, Supabase. Issues filed for all 6 servers with findings.

The landing page undersold the test suite (365 claimed vs 594 actual
passing) and slightly oversold analyzer count (120 claimed vs 105 actual).
Updated to match the real codebase.
Ran MCTS against 7 popular MCP servers. Real results:
- FastMCP: 191 findings, 71 HIGH+, 20 CRITICAL (worst)
- MCP Official Servers: 89 findings, 24 HIGH+, 4 CRITICAL
- Exa MCP: 24 findings, 7 HIGH+, 2 CRITICAL
- Playwright MCP, Figma MCP, Anthropic Tools, LangChain MCP: clean
- 3/7 (43%) have HIGH+ findings

Previous data (81%, 16 servers) was aspirational — replaced with
verified results from today's scans.
Added batch 2: Cloudflare MCP (23 HIGH+, 10 CRITICAL), Sentry MCP (14 HIGH+),
Neon MCP (6 HIGH+), Axiom MCP (clean), Supabase MCP (clean).

Issues filed for all 6 servers with findings.
Total: 6/12 (50%) have HIGH+ findings.
@tcconnally

Copy link
Copy Markdown
Collaborator Author

Closing due to merge conflicts. Will recreate.

@tcconnally tcconnally closed this Jun 13, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant