MarketNow Registry / Security / @yottameta/yotta-verify-mcp

@yottameta/yotta-verify-mcp

YuanXinMCP (元信MCP) - the pre-install security scanner for Agent skills, exposed as a stdio MCP server: scan_skill (dir/package -> verdict + findings), generate_badge (audited badge), gate_check (CI ga

MarketNow trust score 72/100 Security v0.3.0 by GitHub Actions
Trust score
72/100
Install risk
Runs registry code
Downloads / week
100
Source
npm-registry
Indexed
2026-09-10

Install

$ npx -y @yottameta/yotta-verify-mcp

Installing via npx/uvx/npm install executes arbitrary code from the public registry on your machine. This is the install-risk semantic of the MarketNow catalog — verify the publisher before running it.

Adoption evidence: 100 weekly registry downloads.

How MarketNow scored this

Sentinel Index Heuristics — a security-first estimate from public signals:

Heuristic, not a guarantee. For verified agent credentials and revocation, see the MarketNow Trust API.

What is @yottameta/yotta-verify-mcp?

YuanXinMCP (元信MCP) - the pre-install security scanner for Agent skills, exposed as a stdio MCP server: scan_skill (dir/package -> verdict + findings), generate_badge (audited badge), gate_check (CI ga Indexed by MarketNow with trust 72/100 (Runs registry code).

How do I install it?

Run $ npx -y @yottameta/yotta-verify-mcp Installing via npx/uvx/npm install executes arbitrary code from the public registry on your machine. This is the install-risk semantic of the MarketNow catalog — verify the publisher before running it.

What does the trust score mean?

Security-first heuristic over public signals (age, adoption, typosquat distance, injection markers). It is not a popularity ranking and not a guarantee of safety. @yottameta/yotta-verify-mcp scores 72/100.