Zmcptools
ZachHandley/ZMCPToolsโญ 41๐ง 153 tools
F1.8SpiderScore (registry)
โ Hard constraint applied: critical vulnerability
Decision
Not Recommended
Confidence
90%
Zmcptools is not recommended โ low score (1.82/10) with 11 critical issues.
Recommended Actions
- highRun In Container11 critical vulnerabilities require isolation
- highLimit PermissionsRestrict tool access to minimum required scope
Do Not
- โrunning in production without container isolation
- โexposing this tool to untrusted input
- โusing for security-sensitive tasks
Risk Flags (3)
- criticalchild_process_injectionร9Command injection รขโฌโ execSync() with template literal interpolation
- criticalts_unsafe_evalร2Dynamic code execution via new Function() รขโฌโ user input may run arbitrary code
- mediuminput_reflectionUser input reflected directly in tool output -- may enable prompt injection via reflection
How This Was Decided
- negativew=0.5Overall quality score = 1.82/10 (grade F)
- negativew=0.811 critical security issue(s) detected
- negativew=0.3Tool description clarity score = 1.6/10
Source: SpiderRating automated security scanUpdated: 2026-03-21Protocol: v1.1
Description Quality
Composite: 1.6 / 10
3-Layer Breakdown
Description (38%)
1.6
Security (34%)
5.6
Metadata (28%)
4.7
Description Dimensions
Intent Clarity
1.3
Permission Scope
0.0
Side Effects
2.0
Capability Disclosure
3.5
Operational Boundaries
1.7
Security Analysis
5.6
Score
11
Critical
0
High
1
Medium
0
Low
Findings Redacted
Detailed security findings are hidden during the 90-day responsible disclosure window. Maintainers have been notified.
11 CRITICAL1 MEDIUM
Metadata Health
Provenance (40%)
7.0
Maintenance (35%)
2.0
Popularity (25%)
4.6
Badge
Add this badge to your README:
[](https://spiderrating.com/servers/ZachHandley/ZMCPTools)๐ก๏ธ
Protect Your Agents
Get a free API key. Every MCP tool call checked against 15,923 rated servers in real-time.
Get Free API Key โ๐
Monitor All Your Servers
Dashboard for your entire MCP portfolio. Score tracking, alerts, and compliance reports.
Start Free Trial โโญ
Scan Locally (Open Source)
Run SpiderShield on your own machine. 46+ security rules, zero data leaves your system.
Star on GitHub โ