$ timeahead.in
/ servers/github/eslint-plugin-mcp-security
github

eslint-plugin-mcp-security

ESLint security rules for MCP servers — catches SANDWORM_MODE credential harvesting, path traversal, command injection, and CVE patterns at dev time

15critical
5 credentials detected in repository history via Gitleaks
▣ Score BreakdownMCPScore = Σ(raw × weight)
DimensionRawWeighted
Security
35%
0
0.0
Freshness
25%
30
7.5
Adoption
20%
0
0.0
Quality
10%
20
2.0
Trust
10%
50
5.0
Total
14.5
⚿ Capabilities & Risk Explainer
fs readfs writeexecevalsecrets
◆ Risk level: high· 58 tools · auth: API key
fs read + fs write + exec + eval + secrets active — can execute code, access credentials, and make external network calls.
Tool nameDescriptionDestructive?
get-data✓ no
set-data✓ no
ping✓ no
alpha✓ no
beta✓ no
+45 more tools
run⚠ yes
echo✓ no
clean✓ no
shutdown✓ no
kill-proc⚠ yes
remove-dir⚠ yes
nuke✓ no
a✓ no
b✓ no
action✓ no
profile✓ no
admin✓ no
calc✓ no
delete⚠ yes
get-config✓ no
read-file✓ no
write-file⚠ yes
stream-file✓ no
list-dir✓ no
delete-file⚠ yes
file-info✓ no
copy-file✓ no
move-file✓ no
set-perms⚠ yes
get-weather✓ no
check-env✓ no
audit✓ no
index-project✓ no
scan-deps✓ no
lint-check✓ no
get-auth✓ no
deploy✓ no
check-users✓ no
verify-cert✓ no
auth✓ no
check-npm✓ no
k8s-status✓ no
verify-sig✓ no
custom✓ no
ssh-check✓ no
get-result✓ no
parse✓ no
run-code⚠ yes
sandbox✓ no
compile✓ no
⚙ Install config
Source-only — no published npm / pypi package detected.
Clone and follow the build instructions in the repo: github.com/mattschaller/eslint-plugin-mcp-security
📈 Score historylast 8 snapshots
5/31/20266/6/2026 · 8 snapshots
⚙ Maintenance health
82/ 100 · is this project alive?
contributors (1y)2
top contributor share54%
releases (1y)7
last release84d ago
ci✓ passing
⛁ Raw data
weekly downloads0
github stars0
forks0
open issues0
license✗ missing
readme length0 chars
last updated7d ago
owner of this server? claim your listing to get a verified badgeclaim →
🔔 Score drop alerts
get notified by email when this server's score drops 5+ points
eslint-plugin-mcp-security — MCP Score: 15/100 | MCPScore | Timeahead