Iso20022 Evidence Pack MCP runs on your own machine — the client starts it, so there is no endpoint to ping. 209 installs a week from pypi. Last commit 30 Aug 2026.
MCP server: seal & sign ISO 20022 readiness evidence into tamper-evident audit packs.
We read the source, 20 h ago · rules 3dff92dd89df
A value the model can set ends up inside a file or shell call. That is not a flaw by itself — for a terminal server it is the job — but it is where things go wrong when it is not.
proc = subprocess.run( # nosec B603 - resolved absolute path, no shell
What this server is able to do. For an MCP server this is often the job itself — a terminal server runs commands because that is what it is for. Listed so you know what you are plugging in, not as an accusation.
proc = subprocess.run( # nosec B603 - resolved absolute path, no shell
Is this your server and something here is wrong? Tell us — corrections are free and do not require a plan.
That is not a flaw by itself — but it is where things go wrong when it is not the job. We re-read this code on every release. Watch it and you hear from us the day another one appears.
This server runs on your own machine — install it with the package manager and the client starts it for you. Package name taken from the official registry entry.
claude mcp add iso20022-evidence-pack-mcp -- uvx iso20022-evidence-pack-mcp
{
"mcpServers": {
"iso20022-evidence-pack-mcp": {
"args": [
"iso20022-evidence-pack-mcp"
],
"command": "uvx"
}
}
}
[mcp_servers.iso20022-evidence-pack-mcp]
command = "uvx"
args = ["iso20022-evidence-pack-mcp"]
{
"mcpServers": {
"iso20022-evidence-pack-mcp": {
"args": [
"iso20022-evidence-pack-mcp"
],
"command": "uvx"
}
}
}
{
"mcpServers": {
"iso20022-evidence-pack-mcp": {
"args": [
"iso20022-evidence-pack-mcp"
],
"command": "uvx"
}
}
}
Evidence-readiness MCP server: validate, audit, and score briefs, memos, and evidence packs.
Tamper-evident audit trail MCP server for EU AI Act & GDPR compliance.
BYOK Reddit/YouTube research CLI with a tamper-evident audit log and an MCP server.
Read-only MCP server for turva.dev, an agent-readiness audit and advisory service.
Persistent memory MCP server. 28 tools, BM25+MMR+OOD retrieval, tamper-evident audit, code graph.
Orchestration MCP server: ISO 20022 readiness scoring, remediation, bank-response simulation.
Accountable autonomy MCP server: gating, tamper-evident audit for every action
Audits MCP servers for Claude Code mcp_tool hook readiness: idempotency, latency, side-effects.
Answers built from our own checks of this server.