Repository navigation
Enable security scans for nine MCP servers - #1094
Merged
Merged
Conversation
Replace startup scan bypasses with mock credentials where needed. Document Sentry's issue-status false positive and Perplexity's expected API data flow in the security allowlists. Signed-off-by: Dan Barr <6922515+danbarr@users.noreply.github.com>
Contributor
🔒 MCP Security Scan Results✅ chrome-devtools-mcp
✅ clarity-mcp-server
✅ graphlit-mcp-server
✅ heroku-mcp-server
✅ mcp-neo4j-aura-manager
✅ mcp-neo4j-cypher
✅ perplexity-ask
✅ phoenix-mcp
✅ sentry-mcp-server
Summary: Scanned 9 MCP server(s), all passed security checks. ✅ |
Contributor
Dependency Override Checknpm ✅ sentry-mcp-server
|
JAORMX
approved these changes
Oct 9, 2026
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Nine MCP servers currently bypass security scanning even though they can expose tools without live service credentials. Remove their
insecure_ignoresettings and add scanner-onlymock_envcredentials for Sentry, Perplexity, Neo4j Aura Manager, and Neo4j Cypher. Heroku, Phoenix, Clarity, Graphlit, and Chrome DevTools expose tools without credentials.Triage the newly exposed HIGH findings with documented allowlist reasons:
update_issue: false positive from instructions for the ignored issue status and ignore-mode transitions.perplexity_ask,perplexity_research, andperplexity_reason: expected transmission of caller-supplied conversation messages to the authenticated Perplexity Agent API.The existing result processor matches allowances by taxonomy code across each server; it does not enforce tool-level scope. Bright Data is handled separately in #1086. Stripe, Okta, and Neo4j Memory retain their startup bypasses.
Validation: all nine local YARA scans and repository result-processing checks passed with scanner 4.8.2, covering 192 tools with zero blocking findings. Sentry's SDK override was preserved during scanning.
git diff --checkpassed. LLM analysis and container builds were not run.CI validation: MCP security scans passed for all nine servers. Three container builds fail on pre-existing Grype vulnerability findings, unrelated to these scan-configuration changes.