of our catalog has a current-version test
63,163 catalog implementations still lack a publicly eligible current-version result from our scanner.
A transparent measurement of our catalog and verification pipeline: what our scanner tested, where it reproduced findings, and how much of the catalog still lacks current-version evidence.
Our catalog currently resolves 71,565 canonical MCP implementations from 71,584 active source records. Our scanner has completed publicly eligible tests for 8,402 selected current versions—11.7% of our catalog.
63,163 catalog implementations still lack a publicly eligible current-version result from our scanner.
Our scanner reproduced one or more findings in 508 of the 8,402 current versions it tested.
Our retained test profile did not prove a finding for these exact versions. This is not certification of the server or every deployment configuration.
Our remote observation records endpoint and transport evidence; it does not substitute for authenticated application-layer testing.
A raw finding count is not an MCP-wide prevalence estimate. Our tested cohort is shaped by what our pipeline can discover, acquire, launch, isolate, and publish.
Coverage is calculated against canonical implementations in our catalog, not all MCP implementations that may exist. One implementation may appear in multiple source listings or distribution channels.
That is 6.0% of the current versions our scanner tested—not 6.0% of MCP as a whole. Findings are attached to exact package versions and should not be generalized to untested releases.
Percentages use 75 retained proven technique observations for selected current versions. One affected implementation can contribute multiple observations.
This is a distribution of proven observations produced by our current test profile, not a prevalence estimate for all MCP vulnerabilities. “Affected current versions” is deduplicated within each technique. Severity is our engine’s technique classification, not a CVSS score. Techniques our scanner does not test cannot appear here.
The catalog links 5,032 remote endpoints and has observed 4,445 of them (88.3%). Observation records transport reachability and endpoint state; authentication boundaries may limit further inspection.
The endpoint completed the supported initialization flow during its latest observation.
The endpoint was reachable but correctly demanded credentials before protected interaction.
The latest observation reached a terminal unhealthy state; this is operational evidence, not automatically a security finding.
Policy or safety controls prevented deeper observation. Blocked is not equivalent to safe or vulnerable.
Rows link to canonical profiles and exact-version evidence. Ordering follows the catalog’s adoption ranking; it is not a severity ranking.
Use these crawlable catalog paths to compare retained identity, distribution, and exact-version evidence without treating category membership as a safety claim.
Browse Chrome DevTools, Playwright, and related browser-automation identities in the published cohort.
Browse PostgreSQL, MySQL, MongoDB, and other explicitly identified database integrations.
Browse coding, repository, and development-tool profiles grounded in retained catalog identity.
Understand the evidence boundary between verified official attribution and community publication.
Individual profile pages remain authoritative for selected version, package, publisher, tool, and verification details.
Reproducible profile and version pages are the authoritative public evidence surfaces. This report describes our continuously regenerated scanner and catalog records.