中文 · English

← Evidence index

ai.dinglebear/gotify-rmcp

incomplete Threshold medium · generated 2026-09-22T12:17:44.895Z

Publisher: jmagar

Packages: gotify-rmcp@0.1.3 (npm)
Repository: https://github.com/jmagar/gotify-rmcp

How this record was produced

The inputs are public: the registry record and the manifest of the package that was actually published. Each finding below includes its file and rule.

Repository source is outside this index’s scan scope. Use the CLI locally for source scanning; source code does not need to leave your machine.

A finding is a matched shape, not a conclusion. It does not by itself prove exploitability or intent. Findings below the configured threshold do not change the verdict. Unmeasured work is listed separately; unmeasured does not mean clean.

registryDocument

status=findings · source=mcp-census

RuleSeverityLocationDescription
stdio-transportinfopackages[].transport.type=stdio (runs locally as a child process)
declared-version-not-foundunknownexact declared npm version "0.1.3" has no matching manifest; no latest fallback was scanned

Unmeasured work

packageManifest

status=unmeasured · source=guard-scan · reason=metadata-unavailable

This block produced no findings.

Scan coverage

State: incomplete · required 2, completed 1, failed 1

ScannerRequiredStatusOutputConsistencyReason
registryDocumentRequiredcompletedPresent / parseableok
packageManifestRequiredfailedPresent / not parseableunverifiedmetadata-unavailable

Machine-readable record

JSON:
https://xn--5kvo87g.com/v1/servers/ai.dinglebear%2Fgotify-rmcp

README badge:
https://xn--5kvo87g.com/badge/ai.dinglebear%2Fgotify-rmcp.svg