Skip to content
Dustin's AI Lab
Go back

Have Claude scan an MCP before you install it—it found 7 vulnerabilities and still said it's safe to install

This week AgentCrew Academy shipped a video about why you should run /security-scan before installing any MCP / npm / pip package. Tested a third-party MCP, Claude flagged 7 findings, then said "install is fine." This is the written companion to the video.

This post has been merged into Your AI Tools Are Now the Attack Vector. All of the original content lives there now, and that’s the only copy that gets updated.


15-Minute AI Adoption Diagnosis

Fill in a short form to book your free 1-on-1 diagnosis, and find out how you can work with AI without the pain and get a real productivity lift.

Book my free diagnosis
Share this post on:
Previous Post
Gemini 3.5 Flash on Reddit: 3x the Price, Worse Vision, Tool Calling Broken
Next Post
Scope Discipline: five rules—client small talk ≠ scope expansion authorization, must go into every future contract