MCP Observatory

Independent safety audit of the MCP server ecosystem · by PulseFeed

Thousands of MCP servers ship with almost no vetting — and a bad one can run arbitrary code on your machine or exfiltrate data. Before you connect your AI agent to an MCP server, check it. We audit maintenance, install-script risk, provenance, abandonment and liveness.

2901servers audited
2355safe
238caution
303avoid

Verdicts

safe
2355
caution
238
avoid
303
unknown
5

npm servers get deep signals; remote servers get liveness + HTTPS only (can't fully verify a black-box remote).

Top safety flags

downloads_unknown
1067
no_repo
306
install_script
292
unpopular
116
abandoned
115
no_license
42
heavy_deps
18
unreachable
11

install_script = arbitrary code on npm i; abandoned = stale; unreachable = dead remote.

Top trusted MCP servers

ServerTypenpm dl/wkTrust
@modelcontextprotocol/sdknpm43,663,810100
ainpm18,291,200100
@ai-sdk/mcpnpm2,562,576100
@storybook/mcpnpm2,015,189100
@storybook/addon-mcpnpm1,654,618100
@assistant-ui/reactnpm1,375,126100
mcp-handlernpm730,990100
@copilotkit/aimocknpm653,410100
fallownpm749,098100
@langchain/mcp-adaptersnpm218,932100
add-mcpnpm100,011100
evenpm572,287100
@modelcontextprotocol/servernpm3,204,865100
n8n-mcpnpm134,918100
@raishin/vanguard-frontier-agenticnpm165,207100
Check any MCP server: GET /mcp/verify?package=<npm-name> — free. Returns a safety verdict, score and flags (install scripts, abandonment, provenance, license, repo).
📊 Read the State of MCP Security report — how much of the ecosystem runs arbitrary code on install, updated daily. Building on MCP and want an API + CI check? Get early access →

Methodology: PulseFeed discovers servers from the official MCP registry, audits each via npm metadata (install scripts, provenance, license, downloads, freshness) and liveness for remotes. Same independent-audit approach as our x402 trust oracle. Machine-readable: /mcp.json. Updated daily.