MCP Customs runs on your own machine — the client starts it, so there is no endpoint to ping. 162 installs a week from npm. Last commit 31 Jul 2026.
Inspect an MCP server for common security risks before you install it. Offline, zero telemetry.
This server runs on your own machine — install it with the package manager and the client starts it for you. Package name taken from the official registry entry.
claude mcp add mcp-customs -- npx -y mcp-customs
{
"mcpServers": {
"mcp-customs": {
"args": [
"-y",
"mcp-customs"
],
"command": "npx"
}
}
}
[mcp_servers.mcp-customs]
command = "npx"
args = ["-y", "mcp-customs"]
{
"mcpServers": {
"mcp-customs": {
"args": [
"-y",
"mcp-customs"
],
"command": "npx"
}
}
}
{
"mcpServers": {
"mcp-customs": {
"args": [
"-y",
"mcp-customs"
],
"command": "npx"
}
}
}
Security grades (A-F) for MCP servers. Check one before you install or trust it. mcpgrade.dev
Check the trust/security score of MCP servers, agents, skills & CLIs before you install them.
Zero-install security baseline for AI coding agents — OWASP/CWE-cited rules over MCP.
Scan for prompt injection, secrets, PII, and vet MCP servers before installation
MCP security trust-check for agents before installing MCPs, Skills or tools.
Scan an MCP server for EU AI Act Art. 50, tool quality, OAuth hygiene & security before shipping.
Security firewall for AI agents — scans MCP calls for injection, secrets, and risks.
Audits other MCP servers for security risks. Returns safe / caution / unsafe / inconclusive.
Answers built from our own checks of this server.