MarketNow Registry / Security / pentesting-mcp-servers-checklist

pentesting-mcp-servers-checklist

A practical, community-driven checklist for pentesting MCP servers. Covers traffic analysis, tool-call behavior, namespace abuse, auth flows, and remote server risks. Maintained by Appsecco and licens

MarketNow trust score 90/100 Security v0.0.0 by appsecco
Trust score
90/100
Install risk
Review advised
GitHub stars
40
Source
github
Indexed
2026-09-10

Install

$ git clone https://github.com/appsecco/pentesting-mcp-servers-checklist

Heuristic signals advise review before installing: young package, low adoption, stale repository, or name similarity to a popular package.

Adoption evidence: 40 GitHub stars.

How MarketNow scored this

Sentinel Index Heuristics — a security-first estimate from public signals:

Heuristic, not a guarantee. For verified agent credentials and revocation, see the MarketNow Trust API.

What is pentesting-mcp-servers-checklist?

A practical, community-driven checklist for pentesting MCP servers. Covers traffic analysis, tool-call behavior, namespace abuse, auth flows, and remote server risks. Maintained by Appsecco and licens Indexed by MarketNow with trust 90/100 (Review advised).

How do I install it?

Run $ git clone https://github.com/appsecco/pentesting-mcp-servers-checklist Heuristic signals advise review before installing: young package, low adoption, stale repository, or name similarity to a popular package.

What does the trust score mean?

Security-first heuristic over public signals (age, adoption, typosquat distance, injection markers). It is not a popularity ranking and not a guarantee of safety. pentesting-mcp-servers-checklist scores 90/100.