MCP servers for documentation, knowledge bases, education, research and reference data. Each entry is scanned with the deterministic Capability-Flow Trust Model — grades are computed, never self-reported.
Security scan results for the Docs MCP server.
Security scan results for the Client Mcp Core MCP server.
Security scan results for the Plugin MCP server.
Security scan results for the Jira MCP server.
Security scan results for the Smrt Dev MCP server.
Security scan results for the Mcpvault MCP server.
Security scan results for the Agentmail MCP server.
Security scan results for the Cds MCP server.
Security scan results for the Docs MCP server.
Security scan results for the Baron MCP server.
Security scan results for the Macos Automator MCP server.
Security scan results for the Xsuaa Auth MCP server.
Security scan results for the Shadcn Ui MCP server.
Security scan results for the Redhat Manpage Data MCP server.
Security scan results for the Loupekit MCP server.
Security scan results for the Docs MCP server.
Security scan results for the Vitest Agent MCP server.
Security scan results for the Egypt Research MCP server.
Security scan results for the React MCP server.
Security scan results for the Atlassian Confluence MCP server.
Security scan results for the Opensip Cli MCP server.
Security scan results for the Oilpriceapi MCP server.
Security scan results for the Tencent Rtc MCP server.
Security scan results for the Outline MCP server.
An AI assistant is only as current as its last training run, which is why hallucinated API signatures and stale citations are so common. Servers in this category close that gap: through the Model Context Protocol, a client like Claude or Cursor pulls live reference material — framework and API docs, team knowledge bases, dictionaries and encyclopedias, paper indexes such as arXiv or PubMed — the moment a question needs it. What that enables, and what can go wrong:
Every listing in the MCP Trust Registry is scanned by a deterministic open-source engine — no LLM in the loop, no paid placement, and identical input always produces the identical result. The scan maps a package's actual capabilities into an A-F Trust Score with evidence attached: which hosts it contacts, what it can read or write, how far its blast radius extends. For this category the healthy pattern is narrow — a docs tool should fetch reference data and stop, so shell access or broad filesystem reach is a security finding worth reading closely. Any npm or PyPI package can be checked on demand through the free scan API, and adjacent tooling lives under Cloud & DevOps and Other.
Yes — read-only describes the documents, not the threat model. Whatever text the server returns enters the assistant's context unfiltered, so a compromised source can attempt prompt injection against every other tool you have connected. Check the Trust Score and capability profile before installing, and treat scores as automated opinions about published code, not certifications.