kingcaliber · MCP server
Static analysis scanner for MCP server code and multi-tenant SaaS applications. 57 deterministic rules covering tenant isolation, tool visibility, cache key scoping, RLS, IDOR, and credential vault is
Not claimed by its maker. Is this yours? Prove it and answer the findings
Receipt history: every signed receipt for every version of this listing, and what changed between them.
Static analysis scanner for MCP server code and multi-tenant SaaS applications. 57 deterministic rules covering tenant isolation, tool visibility, cache key scoping, RLS, IDOR, and credential vault isolation. MCP server for AI agent integration.
Static scanned
Paste this into your client's MCP configuration.
{
"mcpServers": {
"mti": {
"command": "npx",
"args": [
"-y",
"mcp-tenant-isolation@2.0.0"
]
}
}
}Or run it directly.
npx -y mcp-tenant-isolation@2.0.0Pinned to 2.0.0, which is the version the findings above were found in. Drop the version to take whatever is newest, and the report on this page stops describing what you installed.
23,265 installs last month · build provenance signed · no published advisories · version current · checked 2026-10-02
No build provenance published. The repository above is the one the publisher declared, and nothing links it to the package you would install. That is not a mark against this listing, since most packages are published this way, but it is a check nobody can run.
It renders the current rung (static scanned) and links back here, where what that does and does not establish is one click away. It updates itself as the evidence deepens.
[](https://ooruby.com/market/mcp-tenant-isolation)Verification records what our published tests found on a specific version at a specific date. It is not a warranty, and it does not certify that software is free of defects.
Audit AI applications and agents for security risks before commit, PR, merge, or deployment. Deterministic findings with coverage and evidence receipts.
MCP server for enabling memory for Claude through a knowledge graph
Maintenance
MaintainedLast release 21 Aug 2026 (2.0.0), 45 days before this check on 6 Oct 2026.
Read from the npm registry's publish history, read by the nightly publisher check.
Release activity only: it says nothing about quality or safety, and a finished small package can be fine without releases. How it is measured