Assay MCP Server runs on your own machine — the client starts it, so there is no endpoint to ping. Last commit 18 Sep 2026.
Policy-enforcing MCP proxy with portable evidence output.
We read the source, 21 h ago · rules 3dff92dd89df
A value the model can set ends up inside a file or shell call. That is not a flaw by itself — for a terminal server it is the job — but it is where things go wrong when it is not.
const contents = fs.readFileSync(input.path, 'utf8');
What this server is able to do. For an MCP server this is often the job itself — a terminal server runs commands because that is what it is for. Listed so you know what you are plugging in, not as an accusation.
entry = subprocess.run(
request_binding: RequestBindingReport,
Found in continuous integration, deployment or infrastructure files, or in a neighbouring package of the same monorepo. None of this is installed when you add the server: it describes how the project is built and released. We list it because a leaked key in a build pipeline is still a real problem, but it is not something this server does on your machine.
crontab_output=$(LC_ALL=C crontab -l 2>&1) || crontab_status=$?
- name: Update architecture diagrams
run: |
chmod +x scripts/docs/update-architecture-docs.sh
Is this your server and something here is wrong? Tell us — corrections are free and do not require a plan.
That is not a flaw by itself — but it is where things go wrong when it is not the job. We re-read this code on every release. Watch it and you hear from us the day another one appears.
AuthzX MCP Gateway — policy-enforcing proxy between AI agents and MCP servers
Security proxy that wraps MCP servers with real-time monitoring and policy enforcement
Three-layer firewall for MCP: content, egress and action policy. Proxy or server.
MCP server for Dev Proxy that enables AI assistants to interact with Dev Proxy.
Security proxy that automatically wraps MCP servers with real-time monitoring and policy enforcement
Professional MCP server for video editing automation with OpenCut.
Stdio MCP auth proxy: wrap any MCP server with per-tool permission enforcement.
MCP proxy that checks every tools/call against Agent Trust policy, with evidence, before it runs.
Answers built from our own checks of this server.