中文 · English

← Evidence index

ai.smartmemory/smartmemory-mcp

incomplete Threshold medium · generated 2026-09-22T12:17:44.901Z

Packages: smartmemory-mcp@1.4.94 (pypi)
Repository: (no usable repository URL in the registry record)

How this record was produced

The inputs are public: the registry record and the manifest of the package that was actually published. Each finding below includes its file and rule.

Repository source is outside this index’s scan scope. Use the CLI locally for source scanning; source code does not need to leave your machine.

A finding is a matched shape, not a conclusion. It does not by itself prove exploitability or intent. Findings below the configured threshold do not change the verdict. Unmeasured work is listed separately; unmeasured does not mean clean.

registryDocument

status=findings · source=mcp-census

RuleSeverityLocationDescription
package-repository-missingmediumneither the registry entry nor the package metadata names a VCS URL, so the source could not be located
pypi-install-time-unknownunknownPyPI metadata exposes no install/build hook; wheels unpack without executing code, sdist builds do. files: bdist_wheel,sdist
declared-version-not-latestinforegistry declares 1.4.94, PyPI latest is 1.4.100

Unmeasured work

This record has no unmeasured blocks.

Scan coverage

State: complete · required 1, completed 1, failed 0

ScannerRequiredStatusOutputConsistencyReason
registryDocumentRequiredcompletedPresent / parseableok

Machine-readable record

JSON:
https://xn--5kvo87g.com/v1/servers/ai.smartmemory%2Fsmartmemory-mcp

README badge:
https://xn--5kvo87g.com/badge/ai.smartmemory%2Fsmartmemory-mcp.svg