Skip to content

Free security scan offer β€” MCP server hardeningΒ #2976

Description

@Correctover

Hi GitHub MCP Server maintainers πŸ‘‹

I'm from the Correctover project β€” we build an open-source MCP security scanner that checks for sandbox escapes, command injection, SSRF, credential exposure, and 20+ other risk categories.

We'd like to offer a free security scan of GitHub MCP Server.

Here's what you'd get:

  • A detailed security report covering sandbox safety, input validation, SSRF exposure, and more
  • No cost, no strings attached β€” we're building the MCP security baseline and need real-world projects like yours to validate against
  • Full report delivered within 24 hours

Why we're doing this: We recently scanned 24 popular MCP server projects and found a real sandbox command injection vulnerability (CVSS 9.8). The MCP ecosystem is growing fast, but security tooling hasn't caught up. We want to change that.

Our scanner: github.com/Correctover/correctover-scanner

If you're interested, just reply here and we'll get started. If not, no worries at all β€” keep up the great work on GitHub MCP Server! πŸ™Œ

β€” Guigui Wang | Correctover β€” Runtime Verification for Agent Systems

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions