Risk Analysis Database of Every MCP Server
Details
- External ID
- 46900771
- Source
- HN
- Company
- —
- Product
- Risk Analysis Database of Every MCP Server
- Website domain
- armor1.ai
- Launched
- Feb. 5, 2026
- Cohort
- —
- Upvotes
- 22
- Upvotes percentile
- 0.704177897574124
- Tags
- —
- Fetched at
- Sept. 7, 2026, 9:26 p.m.
- Updated at
- Sept. 7, 2026, 9:26 p.m.
Description
Hi HN, We’re building security tooling around agentic AI systems.Today, we're releasing our public MCP catalog with detailed risk analysis for every MCP server we've found on the internet: https://mcp.armor1.ai/mcp-directoryWe all love agents and the power that MCPs unlock: suddenly your AI assistant can query databases, manage files, call APIs, and interact with the real world. But when we started adopting MCPs ourselves, we kept running into the same nagging questions:Is this MCP safe? Where is my data actually going? Could it execute destructive actions? Is it susceptible to prompt injection? Can the LLM be tricked into calling something it shouldn't? And perhaps most concerning, can one MCP server influence the model and exfiltrate data meant for another?We looked for answers and found... not much. No comprehensive catalog or standardized risk assessment. Nothing that gave us confidence before connecting an MCP to our agents.So we built an MCP threat catalog and what we found was eye-opening.We built what we believe is the deepest risk analysis pipeline for MCP servers:• Provenance tracking: from an official source or community-contributed• MCP spec conformance: does it follow the protocol correctly, or are there deviations that could cause unexpected behavior• OWASP Top 10 for Agentic Apps: evaluate tool descriptions against the emerging threat categories specific to AI agents• Static source analysis: analyze source code for AI-specific vulnerabilities, not just traditional ones• CVE correlation: check dependencies against known vulnerabilities.• Behavioral risk patterns: tool definitions that could enable prompt injection, privilege escalation, or cross-server data theftWhat we found:• Hundreds of credential leaks: API keys, tokens, and secrets exposed in server configurations and code.• Dozens of MCP servers using known malicious packages: Not just vulnerable dependencies, but actually malicious ones.• Tools attempting context poisoning: MCP servers designed to subvert the LLM and steal information via memory manipulation, potentially exfiltrating data meant for other connected servers.We want everyone to realize the benefits of agentic AI, but not at the cost of security being an afterthought. So we're making this catalog free with no login, and we're committed to keeping it that way.This is still a WIP. Looking forward to your feedback on what we need to improve, what we got right, and what we should prioritize next.
Enrichment
- Theme
- Model Context Protocol developer tools
- Vertical
- Security
- Function
- Analytics & BI
- Audience
- B2B
- AI stance
- Not AI
- Project type
- Commercial product
- Normalized one-liner
- security risk assessment for mcp servers
- Manually corrected
- False
Could you build this?
Partial Building the directory and UI is straightforward CRUD, but generating high-quality risk and vulnerability analysis across arbitrary third-party MCP servers requires specialized static analysis and security auditing pipelines.
What it would actually take: The system requires a web crawler/indexer targeting GitHub and package registries to discover MCP servers, combined with an automated static analysis (AST parsing, permission auditing) and dynamic sandboxing engine that monitors tool capabilities and potential prompt injection/privilege escalation vectors. The challenge lies in accurately detecting malicious agent tool definitions, secret leakage, and unsafe shell/network execution paths automatically. This demands dedicated security research expertise in AI agent protocols and automated vulnerability triage.
Discussion
7 comments analyzed.
Competitors mentioned: mcp-scan
Concerns raised: MCPs lack standardization and protocols, Need visibility into what tools are doing on system, Unclear how many MCP servers have actually been analyzed, High false positives from risk analysis tools
Feature requests: MCP server interface to analyze installed MCP servers, Armor1 MCP server support
Competitors
Other products that read as similar to this one — 281 launches clear the similarity bar, closest 8 shown.
Attention rank: #86 of 282 (itself plus its competitors, highest first — normalized so YC and Product Hunt are compared fairly).
Launched 92 days after the earliest competitor.
- CyberCage · hn · 2025-12-11 · 6 upvotes · similarity 0.57
- GuardiAgent · hn · 2025-11-21 · 9 upvotes · similarity 0.52
- MCP Mesh · hn · 2025-12-30 · 8 upvotes · similarity 0.52
- I built a database for AI agents · hn · 2026-04-07 · 12 upvotes · similarity 0.50
- Mwe-MCP · hn · 2026-07-23 · 5 upvotes · similarity 0.50
- MCPJam · hn · 2026-09-17 · 12 upvotes · similarity 0.49
- mcp-audit-tool · github · 2026-09-26 · 120 upvotes · similarity 0.49
- MCPfinder · hn · 2026-04-20 · 9 upvotes · similarity 0.49
Other launches for this product
- No other launches for this product.
Same idea, different domain
Nobody's really built a analytics & bi tool for Legal yet.