GitHub Action: Scan MCP tool-call messages for unsigned receipt injection, nested field tampering, and response integrity vulnerabilities
MCPpedia last refreshed this data
Ccs Lint Action is an MCP server that GitHub Action: Scan MCP tool-call messages for unsigned receipt injection, nested field tampering, and response integrity vulnerabilities. Its tool list has not been published yet over stdio and http, requires no API key, and scores 56/100 on MCPpedia's security, maintenance and efficiency rubric.
Config is the same across clients — only the file and path differ.
{
"mcpServers": {
"ccs-lint-action": {
"args": [
"-y",
"ccs-lint"
],
"command": "npx"
}
}
}Are you the author?
Add this badge to your README to show your security score and help users find safe servers.
A zero-dependency GitHub Action that scans MCP (Model Context Protocol) tool-call messages for security vulnerabilities. Catches unsigned receipt injection, trust indicator forgery, nested receipts, and error-path injection — before they reach production.
Run this in your terminal to verify the server starts. Then let us know if it worked — your result helps other developers.
npx -y 'ccs-lint' 2>&1 | head -1 && echo "✓ Server started successfully"
After testing, let us know if it worked:
Five weighted categories — click any category to see the underlying evidence.
No known CVEs.
Checked ccs-lint against OSV.dev.
Be the first to review
Have you used this server?
Share your experience — it helps other developers decide.
Sign in to write a review.
Others in other
Compress tool outputs, logs, files, and RAG chunks before they reach the LLM. 60-95% fewer tokens, same answers. Library, proxy, MCP server.
Transport for TMCP using STDIO
The graph based agentic IDE
Buddhist canon tools: search, passages, cross-canon parallels, dictionaries — all URN-cited.
MCP Security Weekly
Get CVE alerts and security updates for Ccs Lint Action and similar servers.
Start a conversation
Ask a question, share a tip, or report an issue.
Sign in to join the discussion.