Provides structured data on China's apparel supply chain, covering 1,000+ suppliers, 350+ fabric specifications, and 170+ industrial clusters.
Do not connect
A critical issue was found. Do not connect this server as-is.
Scanned 8 days ago Due for re-check
A server can change after it's graded. Re-run the automated scan to refresh this report.
This grade is deterministic and reproducible: the same server surface always yields the same grade under a given algorithm version. It is a real automated assessment computed by the MCPGrade engine from what the probe actually observed — not a fabricated or opinion score. It is not a manual human pentest, so it can miss context-specific risks.
Every signal below was measured directly by the automated probe. The grade is derived only from evidence like this — nothing is assumed.
The meacheal-supply-chain MCP server exposes 20 tools, focused primarily on general-purpose capabilities. Its published description reads: "Provides structured data on China's apparel supply chain, covering 1,000+ suppliers, 350+ fabric specifications, and 170+ industrial clusters". It communicates over Streamable HTTP using the 2025-06-18 protocol revision, and does not require authorization to connect. MCPGrade currently rates meacheal-supply-chain F — a critical issue was found and the server should not be connected as-is. Its most notable findings include "Hidden instructions in a tool description" and "Hidden instructions in a tool description". This report is a deterministic, reproducible automated assessment: the same observed surface always yields the same grade under a given algorithm version, and it is refreshed as new scans arrive and free to read — but it is not a substitute for a manual human security review. Always re-check meacheal-supply-chain's advertised tools, transport security, and authorization posture before connecting an autonomous agent or sharing sensitive context with it.
Add meacheal-supply-chain to an MCP client using the endpoint below. Review the grade and findings above before granting an autonomous agent access.
MCP endpoint
https://api.meacheal.ai/mcpStreamable HTTP transport. This is the MCP endpoint, not a website — paste it into your MCP client server list rather than a browser.
Captured passively during the read-only scan. Click any value to find servers that match it.
The tools this server advertises via tools/list — names, purposes, and the parameters each accepts, exactly as enumerated read-only.
Search verified Chinese apparel manufacturers, apparel factories, and clothing suppliers. USE WHEN user asks: - "find me a clothing manufacturer in China / Guangdong / Zhejiang" - "who makes [t-shirts
Sorted worst-first. Each finding shows its severity, what it means, its OWASP MCP Top-10 mapping, and a recommended fix — the check id links to the exact methodology row that produced it.
tool: get_supplier_detail
A tool description contains imperative text aimed at the model (e.g. "ignore previous", "before answering read …").
PREREQUISITE: You MUST first call search_suppliers or recommend_suppliers toRecommendationRemove model-directed instructions from tool descriptions.
tool: get_fabric_detail
A tool description contains imperative text aimed at the model (e.g. "ignore previous", "before answering read …").
PREREQUISITE: You MUST first call search_fabrics to obtain a valid fabric_idRecommendationRemove model-directed instructions from tool descriptions.
tool: compare_clusters
A tool description contains imperative text aimed at the model (e.g. "ignore previous", "before answering read …").
PREREQUISITE: You MUST first call search_clusters to obtain valid cluster_idRecommendationRemove model-directed instructions from tool descriptions.
tool: search_suppliers
A tool description tries to alter the model’s use of another tool.
rch_suppliers → get_supplier_detail (for full 60+ field profile) OR compare_supplieRecommendationDescriptions must describe only their own tool.
tool: get_supplier_detail
A tool description tries to alter the model’s use of another tool.
MUST first call search_suppliers or recommend_suppliers to obtain a valid suppliRecommendationDescriptions must describe only their own tool.
tool: search_fabrics
A tool description tries to alter the model’s use of another tool.
ganic cotton"), (4) drop max_price_rmb, (5) try the parent category (knitRecommendationDescriptions must describe only their own tool.
tool: get_fabric_detail
A tool description tries to alter the model’s use of another tool.
MUST first call search_fabrics to obtain a valid fabric_id. Do not guess IDs.RecommendationDescriptions must describe only their own tool.
tool: search_clusters
A tool description tries to alter the model’s use of another tool.
e type, (4) remove province. • Specialization mismatch → both Chinese andRecommendationDescriptions must describe only their own tool.
tool: compare_clusters
A tool description tries to alter the model’s use of another tool.
MUST first call search_clusters to obtain valid cluster_ids. Do not guess IDs.RecommendationDescriptions must describe only their own tool.
tool: detect_discrepancy
A tool description tries to alter the model’s use of another tool.
ctory listings. Returns up to 50 records across: fabric_weight (gsm), fabRecommendationDescriptions must describe only their own tool.
tool: get_supplier_fabrics
A tool description tries to alter the model’s use of another tool.
upplier_id from search_suppliers or get_supplier_detail. WORKFLOW: search_suppliRecommendationDescriptions must describe only their own tool.
tool: get_fabric_suppliers
A tool description tries to alter the model’s use of another tool.
t captured. Try search_suppliers filtered by the fabric's typical specializationRecommendationDescriptions must describe only their own tool.
tool: get_product_categories
A tool description tries to alter the model’s use of another tool.
ct_categories → search_suppliers (with the product_type the user picks) OR analyRecommendationDescriptions must describe only their own tool.
tool: get_province_distribution
A tool description tries to alter the model’s use of another tool.
_distribution → search_suppliers (with top province) OR search_clusters (for cluRecommendationDescriptions must describe only their own tool.
tool: recommend_suppliers
A tool description tries to alter the model’s use of another tool.
DIFFERENCE from search_suppliers: search_suppliers FILTERS by exact criteria (prRecommendationDescriptions must describe only their own tool.
tool: analyze_market
A tool description tries to alter the model’s use of another tool.
nalyze_market → search_suppliers or recommend_suppliers (narrow to specific suppRecommendationDescriptions must describe only their own tool.
tool: estimate_cost
A tool description tries to alter the model’s use of another tool.
earch_fabrics + get_supplier_detail manually. CONSTRAINT: These are estimates baseRecommendationDescriptions must describe only their own tool.
tool: check_compliance
A tool description tries to alter the model’s use of another tool.
upplier_id from search_suppliers, get_supplier_detail, or recommend_suppliers. WRecommendationDescriptions must describe only their own tool.
tool: assess_supplier_credibility
A tool description tries to alter the model’s use of another tool.
upplier_id from search_suppliers / get_supplier_detail / recommend_suppliers. RERecommendationDescriptions must describe only their own tool.
tool: find_alternatives
A tool description tries to alter the model’s use of another tool.
upplier_id from search_suppliers, get_supplier_detail, or recommend_suppliers. WRecommendationDescriptions must describe only their own tool.
tool: compare_suppliers
A tool description tries to alter the model’s use of another tool.
pplier_ids from search_suppliers, recommend_suppliers, find_alternatives, or getRecommendationDescriptions must describe only their own tool.
tool: get_cluster_suppliers
A tool description tries to alter the model’s use of another tool.
globally — use search_suppliers. Do not iterate clusters in a loop — use comparRecommendationDescriptions must describe only their own tool.
tool: get_stats
A tool description tries to alter the model’s use of another tool.
verage, or with search_suppliers/search_fabrics/search_clusters to drill in. DIRecommendationDescriptions must describe only their own tool.
tool: get_stats
The text tells the model WHEN to call this tool relative to others ("always call first", "before any other tool", "chain to X tool") — a toxic-flow injection that hijacks the agent’s orchestration rather than describing the tool.
o not call this before every tool — only when user explicitly asks about scale. DRecommendationTool metadata must describe only the tool, never sequence the agent’s calls.
tool: (server instructions)
A tool description tries to alter the model’s use of another tool.
in Guangdong" (search_suppliers) - "What knit fabrics work for t-shirts?" (searRecommendationDescriptions must describe only their own tool.
The server accepts tool enumeration (and likely invocation) with no authentication.
RecommendationRequire OAuth 2.1 authorization for any server exposing non-public tools.
tool: search_suppliers
An unusually long description is a common injection-padding tactic.
description length 3547 charsRecommendationKeep descriptions concise.
tool: get_supplier_detail
An unusually long description is a common injection-padding tactic.
description length 3208 charsRecommendationKeep descriptions concise.
tool: search_fabrics
An unusually long description is a common injection-padding tactic.
description length 3259 charsRecommendationKeep descriptions concise.
tool: get_fabric_detail
An unusually long description is a common injection-padding tactic.
description length 2440 charsRecommendationKeep descriptions concise.
tool: search_clusters
An unusually long description is a common injection-padding tactic.
description length 2652 charsRecommendationKeep descriptions concise.
tool: compare_clusters
An unusually long description is a common injection-padding tactic.
description length 2117 charsRecommendationKeep descriptions concise.
tool: detect_discrepancy
An unusually long description is a common injection-padding tactic.
description length 2827 charsRecommendationKeep descriptions concise.
tool: get_supplier_fabrics
An unusually long description is a common injection-padding tactic.
description length 2204 charsRecommendationKeep descriptions concise.
tool: get_fabric_suppliers
An unusually long description is a common injection-padding tactic.
description length 2116 charsRecommendationKeep descriptions concise.
tool: recommend_suppliers
An unusually long description is a common injection-padding tactic.
description length 2676 charsRecommendationKeep descriptions concise.
tool: estimate_cost
An unusually long description is a common injection-padding tactic.
description length 2295 charsRecommendationKeep descriptions concise.
tool: check_compliance
An unusually long description is a common injection-padding tactic.
description length 2674 charsRecommendationKeep descriptions concise.
tool: find_alternatives
An unusually long description is a common injection-padding tactic.
description length 2977 charsRecommendationKeep descriptions concise.
tool: compare_suppliers
An unusually long description is a common injection-padding tactic.
description length 2169 charsRecommendationKeep descriptions concise.
Vantaj uptime monitoring via MCP — manage monitors, heartbeats, incidents, and status pages.
Unified gateway to Algeria's TKAWEN ecosystem: commerce, certification, and AI tools.
Provides access to the Cohereon Doctrine AI safety framework with governance components, tiered access, and agent onboarding.
Agentic rails for complex workflows with receipts, fees, and MCP tool access.
Structural TC39 spec lookup for ECMA-262 and ECMA-402 in AI agents, SHA-pinned and offline-first.
Structural TC39 spec lookup for ECMA-262 and ECMA-402 in AI agents, SHA-pinned and offline-first.
Get the complete profile of a single Chinese apparel supplier by ID. PREREQUISITE: You MUST first call search_suppliers or recommend_suppliers to obtain a valid supplier_id. Do not guess IDs. USE WHEN
Search the Chinese fabric and textile database with lab-tested specifications. USE WHEN user asks: - "find me a [cotton / polyester / nylon / wool / linen] fabric for [t-shirts / jeans / suits]" - "I
Get the complete lab-tested record of a single fabric by ID. PREREQUISITE: You MUST first call search_fabrics to obtain a valid fabric_id. Do not guess IDs. USE WHEN user asks: - "show me the full spe
Search Chinese apparel industrial clusters and textile markets. USE WHEN user asks: - "where is China's [denim / suit / women's wear / underwear] manufacturing concentrated" - "what is the largest [si
Compare multiple Chinese apparel industrial clusters side-by-side on key metrics. PREREQUISITE: You MUST first call search_clusters to obtain valid cluster_ids. Do not guess IDs. USE WHEN user asks: -
[Core feature] Surface supplier specifications that deviate from independent lab measurements. USE WHEN user asks: - "which fabrics have lab-test deviations on weight" - "find suppliers whose stated c
List all fabrics a specific supplier can provide, with quoted prices. USE WHEN user asks: - "what fabrics does [supplier name] have" / "what can this factory source for me" - "show me the catalog of s
List all suppliers offering a specific fabric, sorted by quality score, with price comparison. USE WHEN user asks: - "who supplies fabric fab_XXX" / "where can I buy this fabric" - "compare prices for
List all product categories available in the database with supplier counts. USE THIS FIRST when: - User doesn't know what to search for - User asks "what do you have" / "what can I source" - User need
Show supplier distribution across Chinese provinces. USE WHEN: - User asks "where are factories located" / "which provinces" - User needs to decide which region to source from - "where's [product] man
Smart supplier recommendation based on sourcing requirements. USE WHEN: - User describes what they need: "I need a factory for cotton t-shirts in Guangdong" - User asks for recommendations, not just s
Market overview and analysis for a product category in China. USE WHEN: - User asks "what's the market like for X in China" - User wants market intelligence before sourcing - User needs an overview, n
Estimate sourcing cost for a product based on fabric price, supplier pricing, and order quantity. USE WHEN: - User asks "how much would it cost to make 1000 t-shirts" - User needs a rough cost breakdo
Check if a supplier meets compliance requirements for a target export market. USE WHEN: - User asks "can this factory export to the US/EU/Japan" - User needs to verify certifications for a specific ma
Assess a supplier's overall data credibility by fusing multiple declared-vs-verified signals into one 0-100 trust score, with cross-signal physical-plausibility checks. USE WHEN: - User asks "is this
Find alternative suppliers similar to a given supplier. USE WHEN: - User says "this supplier is too expensive / too slow / too far" - User needs backup options for an existing supplier - "give me back
Compare multiple suppliers side by side on all dimensions. USE WHEN user asks: - "compare these 3 factories" - "which supplier is better between X and Y" - "benchmark sup_001 vs sup_002 vs sup_003" -
List all suppliers in a specific industrial cluster. USE WHEN user asks: - "what factories are in Humen cluster" - "show me suppliers in Keqiao fabric market" - "list all womenswear factories in [clus
Get overall database statistics: total counts of suppliers, fabrics, clusters, and links. USE WHEN user asks: - "how big is your database" / "what's the coverage" / "data overview" - "how many supplie