https://project-feldspar.com/mcp ↗
Free deterministic security scan of public git repos: OSV.dev vulnerable deps, secrets, config lint.
Feldspar free repository security scan is a remote MCP server published at project-feldspar.com. It has been probed 6 times since 9/12/2026. It answered in 6 of them (100.0%), a near-uninterrupted record. Median response time is 160 ms, placing it among the faster endpoints. It offers a narrow, focused set of 2 tools. On the protocol side it still runs 2025-11-25 and has not moved to the newer spec.
Can an LLM agent pick the right tool here — names, descriptions and parameter clarity are assessed.
audit_pricing — Tool name lacks specificity about its purpose (pricing information)scan_repository — No explicit error handling documentation for invalid URLsaudit_pricing — Description could be more concise without losing critical detailsRisk: low
tools/list structure, inputSchema validity, and a functional smoke test — the components of the 0-100 score.
Tools the server advertised in the latest measurement — measured, not catalog-claimed.
scan_repositoryClone a public git repository and run feldspar-scan: OSV.dev advisories for pinned dependencies in lockfiles (npm, pnpm, yarn, pip/uv/poetry, Cargo, Go, Gemfile.lock, composer), secret patterns with redacted evidence, and configuration lint. Returns a JSON report with summary counts and per-finding severity, file, line, advisory id and fixed versions. Deterministic, no LLM involved. Takes 2-90 s depending on repository size.
urlstringrequiredaudit_pricingDescribe Project Feldspar's paid code audit (security, correctness, maintainability; three independent review passes plus consolidation and manual verification of every reported file:line), its price, turnaround, and the Stripe checkout URL. No arguments.
Derived by comparing consecutive probes — changes in era, protocol version, build and reachability.
Add this badge to your README — it updates automatically as measurements change.
[](https://mcpmetrics.io/servers/com-project-feldspar-scan)<a href="https://mcpmetrics.io/servers/com-project-feldspar-scan"><img src="https://mcpmetrics.io/badge/com.project-feldspar/scan/era.svg" alt="mcpmetrics"></a>You are seeing the last 7 days. Sign up for the full history. Which check failed and why is in the dashboard.
Sign up free to seeThe catalog entries whose name and description are closest to this one, found with the same index the search box uses.
28 public tools for queues, inboxes, webhooks, approvals and temporary workflows. Two resources.
Dive into the world of open-source with the GitHub Repo Explorer! Utilize the powerful GitHub
Audit and repair any public GitHub repo. Free survey; paid source, unified diffs and a pull request.
Free, read-only access to the UK parliamentary record: Hansard, bills, division votes, MPs and peers, petitions, political donations, the lobbying register, ministerial meetings and gifts, ACOBA appointments, government contracts and committee evidence. 14 tools, no key required. By Emily Politics, the AI public affairs agent.
French public services: tax, property, admin, education, healthcare, security, risks, legal texts
Zero-config MCP security scanner for AI-generated apps. 25K+ vulnerability patterns.
| Run | Era | Modern | ms | Legacy | ms | Versions |
|---|---|---|---|---|---|---|
| 2026-09-13 01:33:33 | Legacy | 200 | 264 | 200 | 267 | 2025-11-25 |
| 2026-09-12 23:31:36 | Legacy | 200 | 207 | 200 | 232 | 2025-11-25 |
| 2026-09-12 21:29:15 | Legacy | 200 | 147 | 200 | 142 | 2025-11-25 |
| 2026-09-12 19:27:29 | Legacy | 200 | 148 | 200 | 146 | 2025-11-25 |
| 2026-09-12 17:24:09 | Legacy | 200 | 93 | 200 | 174 | 2025-11-25 |
| 2026-09-12 15:21:42 | Legacy | 200 | 160 | 200 | 157 | 2025-11-25 |
Each block is one measurement round. Green: working response. Amber: responded but the server was returning errors (5xx). Red: no response at all.
Each cell is one probe run. Faded cells are incomplete probes — one leg did not answer, so the era is inconclusive.
The two probe legs separately: modern server/discover and legacy initialize.
Comments
Sign in to write a comment
No comments yet. Be the first.