Nitrostack
nitrocloudofficial/nitrostackApache-2.0โญ 24๐ง 45 tools
F1.9SpiderScore (registry)
โ Hard constraint applied: critical vulnerability
Decision
Not Recommended
Confidence
90%
Nitrostack is not recommended โ low score (1.85/10) with 7 critical issues.
Recommended Actions
- highRun In Container7 critical vulnerabilities require isolation
- highLimit PermissionsRestrict tool access to minimum required scope
Do Not
- โrunning in production without container isolation
- โexposing this tool to untrusted input
- โusing for security-sensitive tasks
Risk Flags (10)
- criticalchild_process_injectionร5Command injection รขโฌโ execSync() with non-literal command
- criticalts_unsafe_evalDynamic code execution via eval() with non-literal argument
- criticalts_async_injectionAsync process spawn with user-controlled command -- injection risk
- hightoken_leakageSecret or token may be leaked through error messages, logs, or return values
- highprototype_pollutionPotential prototype pollution -- user-controlled keys may modify Object.prototype
- hights_path_traversalร3Potential path traversal -- user input used in file system operations
- hights_token_leakageSecret or token may be leaked through error messages, logs, or return values
- highhardcoded_credentialHardcoded credential -- secret value embedded in source code
- mediumts_input_reflectionร2User input reflected directly in tool output -- may enable prompt injection via reflection
- mediuminput_reflectionUser input reflected directly in tool output -- may enable prompt injection via reflection
How This Was Decided
- negativew=0.5Overall quality score = 1.85/10 (grade F)
- negativew=0.87 critical security issue(s) detected
- negativew=0.57 high-severity issue(s) detected
- negativew=0.3Tool description clarity score = 1.7/10
Source: SpiderRating automated security scanUpdated: 2026-03-22Protocol: v1.1
Description Quality
Composite: 1.7 / 10
3-Layer Breakdown
Description (38%)
1.7
Security (34%)
5.9
Metadata (28%)
6.1
Description Dimensions
Intent Clarity
1.3
Permission Scope
0.2
Side Effects
2.0
Capability Disclosure
3.4
Operational Boundaries
1.7
Security Analysis
5.9
Score
7
Critical
7
High
3
Medium
0
Low
Findings Redacted
Detailed security findings are hidden during the 90-day responsible disclosure window. Maintainers have been notified.
7 CRITICAL7 HIGH3 MEDIUM
Metadata Health
Provenance (40%)
8.0
Maintenance (35%)
5.0
Popularity (25%)
4.6
Badge
Add this badge to your README:
[](https://spiderrating.com/servers/nitrocloudofficial/nitrostack)๐ก๏ธ
Protect Your Agents
Get a free API key. Every MCP tool call checked against 15,923 rated servers in real-time.
Get Free API Key โ๐
Monitor All Your Servers
Dashboard for your entire MCP portfolio. Score tracking, alerts, and compliance reports.
Start Free Trial โโญ
Scan Locally (Open Source)
Run SpiderShield on your own machine. 46+ security rules, zero data leaves your system.
Star on GitHub โ