Look twice.Find the gem.

AI agents and MCP servers, each published with its source and what the checks found.

Marketplace

  • Everything
  • AI agents
  • Apps
  • MCP servers
  • Templates
  • What people want
  • What changed this week
  • The verification standard
  • The ooruby Index
  • Servers that publish no source
  • Reliability guides
  • What the catalogue holds
  • Sell here

Our library

  • Everything, in one place
  • Guides
  • Glossary
  • Calculators
  • Checklists and cheat sheets
  • Community

ooruby

  • Home
  • For teams
  • Site status
  • Company projects
  • RSS feed

Verification records what our published tests found on a specific version at a specific date. It is not a warranty, and it does not certify that software is free of defects.

Rubricv1.0
AI agentsAppsMCP serversTemplatesWantedCommunityOur library
Sign inSell
Glossary
Security findings

Shipped credential

A working key, token or password included in the files a package publishes.

Credentials end up in packages the ordinary way: a key pasted into a config file for a test, a debugging certificate kept beside the code, an environment file that was never excluded. Once published, a package is copied to mirrors and caches, so a leaked key has to be revoked, not deleted.

Most strings that look like credentials in packages are not: test values, documentation examples and the patterns of secret scanners themselves. Telling the two apart takes reading each one, which is why this site withholds where a match is and reads it by hand before calling it a leak.

Why it matters

Anybody who installs the package holds the credential, with whatever it can reach.

The mistake everyone makes

Removing the key from the next version and calling it fixed. Earlier versions stay published and mirrored, and the only fix is to revoke the key.

Related terms

Scoped credential
A key issued for one job, with only the access that job needs, that can be revoked on its own.
False positive
A finding that is not real: the check matched something that is not the problem it looks for.
Finding
One issue raised by verification, with a severity and a mapping to a standard weakness class.
Supply chain attack
Compromising something you already trust rather than attacking you directly.
Previous
Seller health
Next
SSRF

See Shipped credential on a real listing

Every term here shows up in the catalogue next to a real result, with the findings published and the limits stated. Free to browse, no account needed.

Open the catalogue