MarketNow Registry / Security / mcp-defense-bench
mcp-defense-bench
Vendor-neutral benchmark measuring how MCP security proxies/gateways DEFEND against 22+ attack vectors — crosswalked to NIST AI RMF & OWASP LLM/Agentic Top 10. CI-gated, reproducible, DOI-cited. Submi
Install
$ git clone https://github.com/Gowthaman90/mcp-defense-benchHeuristic signals advise review before installing: young package, low adoption, stale repository, or name similarity to a popular package.
Adoption evidence: 1 GitHub stars.
How MarketNow scored this
Sentinel Index Heuristics — a security-first estimate from public signals:
- Package age and release activity (stale repositories lose points)
- Verified adoption: registry downloads or GitHub stars, not follower counts
- Typosquat distance against the 150 most-installed MCP packages
- Injection markers scanned in the package description
Heuristic, not a guarantee. For verified agent credentials and revocation, see the MarketNow Trust API.
What is mcp-defense-bench?
Vendor-neutral benchmark measuring how MCP security proxies/gateways DEFEND against 22+ attack vectors — crosswalked to NIST AI RMF & OWASP LLM/Agentic Top 10. CI-gated, reproducible, DOI-cited. Submi Indexed by MarketNow with trust 70/100 (Review advised).
How do I install it?
Run $ git clone https://github.com/Gowthaman90/mcp-defense-bench Heuristic signals advise review before installing: young package, low adoption, stale repository, or name similarity to a popular package.
What does the trust score mean?
Security-first heuristic over public signals (age, adoption, typosquat distance, injection markers). It is not a popularity ranking and not a guarantee of safety. mcp-defense-bench scores 70/100.