Do not connect
A critical issue was found. Do not connect this server as-is.
Scanned 8 days ago Due for re-check
A server can change after it's graded. Re-run the automated scan to refresh this report.
This grade is deterministic and reproducible: the same server surface always yields the same grade under a given algorithm version. It is a real automated assessment computed by the MCPGrade engine from what the probe actually observed — not a fabricated or opinion score. It is not a manual human pentest, so it can miss context-specific risks.
Every signal below was measured directly by the automated probe. The grade is derived only from evidence like this — nothing is assumed.
The StatelessServer MCP server exposes 29 tools, focused primarily on filesystem and developer capabilities. It communicates over Streamable HTTP using the 2025-06-18 protocol revision, and does not require authorization to connect. MCPGrade currently rates StatelessServer F — a critical issue was found and the server should not be connected as-is. Its most notable findings include "Cross-tool shadowing" and "Cross-tool shadowing". This report is a deterministic, reproducible automated assessment: the same observed surface always yields the same grade under a given algorithm version, and it is refreshed as new scans arrive and free to read — but it is not a substitute for a manual human security review. Always re-check StatelessServer's advertised tools, transport security, and authorization posture before connecting an autonomous agent or sharing sensitive context with it.
Add StatelessServer to an MCP client using the endpoint below. Review the grade and findings above before granting an autonomous agent access.
MCP endpoint
https://compute.googleapis.com/mcpStreamable HTTP transport. This is the MCP endpoint, not a website — paste it into your MCP client server list rather than a browser.
Captured passively during the read-only scan. Click any value to find servers that match it.
The tools this server advertises via tools/list — names, purposes, and the parameters each accepts, exactly as enumerated read-only.
Create a new Google Compute Engine virtual machine (VM) instance. Requires project, zone, and instance name as input. If machine_type is not provided, it defaults to `e2-medium`. If image_project and
Delete a Google Compute Engine virtual machine (VM) instance. Requires project, zone, and instance name as input. Proceed only if there is no error in response and the status of the operation is `DONE
Starts a Google Compute Engine virtual machine (VM) instance. Requires project, zone, and instance name as input. Proceed only if there is no error in response and the status of the operation is `DONE
Stops a Google Compute Engine virtual machine (VM) instance. Requires project, zone, and instance name as input. Proceed only if there is no error in response and the status of the operation is `DONE`
Resets a Google Compute Engine virtual machine (VM) instance. Requires project, zone, and instance name as input. Proceed only if there is no error in response and the status of the operation is `DONE
Get basic information about a Compute Engine VM instance, including its name, ID, status, machine type, creation timestamp, and attached guest accelerators. Requires project, zone, and instance name a
Sets the machine type for a stopped Google Compute Engine instance to the specified machine type. Requires project, zone, instance name and machine type as input. Proceed only if there is no error in
Lists the disks attached to a Compute Engine virtual machine (VM) instance. For each attached disk, the response includes details such as kind, type, mode, saved state, source, device name, index, boo
Lists Compute Engine virtual machine (VM) instances. Details for each instance include name, ID, status, machine type, creation timestamp, and attached guest accelerators. Use other tools to get more
Get basic information about a Compute Engine managed instance group (MIG), including its name, ID, instance template, base instance name, target size, target stopped size, target suspended size, statu
Lists Compute Engine managed instance groups (MIGs). Details for each MIG include name, ID, instance template, base instance name, target size, target stopped size, target suspended size, status and c
Lists managed instances for a given managed instance group (MIG). For each instance, details include id, instance URL, instance status, and current action. Requires project, zone, and MIG name as inpu
Lists Compute Engine instance templates. Details for each instance template include name, ID, description, machine type, region, and creation timestamp. Requires project as input.
Get basic information about a Compute Engine instance template, including its name, ID, description, machine type, region, and creation timestamp. Requires project and instance template name as input.
Get instance properties of a Compute Engine instance template. This includes properties such as description, tags, machine type, network interfaces, disks, metadata, service accounts, scheduling optio
Get basic information about a Compute Engine disk, including its name, ID, description, creation timestamp, size, type, status, last attach timestamp, and last detach timestamp. Requires project, zone
Get performance configuration of a Compute Engine disk, including its type, size, provisioned IOPS, provisioned throughput, physical block size, storage pool and access mode. Requires project, zone, a
Lists Compute Engine disks. Details for each disk include name, ID, description, creation timestamp, size, type, status, last attach timestamp, and last detach timestamp. Requires project and zone as
Lists the available Google Compute Engine accelerator types. Requires project and zone as input. Returns accelerator types, including id, creation timestamp, name, description, deprecated, zone, and m
Lists the available Google Compute Engine machine types. Requires project and zone as input. Returns machine types, including id, creationTimestamp, name, description, guest cpus, memory, image space,
Lists Compute Engine Images. Details for each image include name, ID, status, family, and creation timestamp. Requires project as input.
Get details of a zone operation, including its id, name, status, creation timestamp, error, warning, HTTP error message and HTTP error status code. Requires project, zone, and operation name as input.
Get Compute Engine reservation basic info including name, ID, creation timestamp, zone, status, specific reservation required, commitment, and linked commitments. Requires project, zone, and reservati
Get Compute Engine reservation details. Returns reservation details including name, ID, status, creation timestamp, specific reservation properties like machine type, guest accelerators and local SSDs
Lists Compute Engine reservations. Details for each reservation include name, ID, creation timestamp, zone, status, specific reservation required, commitment, and linked commitments. Requires project
Lists Compute Engine Commitments in a region. Details for each commitment include name, ID, status, plan, type, resources, and creation, start and end timestamps. Requires project and region as input.
Get basic information about a Compute Engine Commitment, including its name, ID, status, plan, type, resources, and creation, start and end timestamps. Requires project, region, and commitment name as
Lists reservations for a Compute Engine Commitment. Returns reservation details including name, ID, status, creation timestamp, specific reservation properties like machine type, guest accelerators an
Lists snapshots in a project providing basic information per snapshot including name, id, status, creation time, disk size, storage bytes, source disk, and source disk id. Requires project as input.
Sorted worst-first. Each finding shows its severity, what it means, its OWASP MCP Top-10 mapping, and a recommended fix — the check id links to the exact methodology row that produced it.
tool: create_instance
A tool description tries to alter the model’s use of another tool.
ation, use the `get_zone_operation` tool.RecommendationDescriptions must describe only their own tool.
tool: delete_instance
A tool description tries to alter the model’s use of another tool.
ation, use the `get_zone_operation` tool.RecommendationDescriptions must describe only their own tool.
tool: start_instance
A tool description tries to alter the model’s use of another tool.
ation, use the `get_zone_operation` tool.RecommendationDescriptions must describe only their own tool.
tool: stop_instance
A tool description tries to alter the model’s use of another tool.
ation, use the `get_zone_operation` tool.RecommendationDescriptions must describe only their own tool.
tool: reset_instance
A tool description tries to alter the model’s use of another tool.
ation, use the `get_zone_operation` tool.RecommendationDescriptions must describe only their own tool.
tool: set_instance_machine_type
A tool description tries to alter the model’s use of another tool.
ation, use the `get_zone_operation` tool.RecommendationDescriptions must describe only their own tool.
tool: list_instances
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
ptional. A page token received from a previous call to list instancesRecommendationRemove side-channel parameters; constrain tool inputs.
tool: list_instance_group_managers
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
ptional. A page token received from a previous call to list instanceRecommendationRemove side-channel parameters; constrain tool inputs.
tool: list_managed_instances
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
ptional. A page token received from a previous call to list managed iRecommendationRemove side-channel parameters; constrain tool inputs.
tool: list_instance_templates
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
ptional. A page token received from a previous call to list instanceRecommendationRemove side-channel parameters; constrain tool inputs.
tool: list_disks
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
ional. The page token received from the previous call.","type":"strinRecommendationRemove side-channel parameters; constrain tool inputs.
tool: list_images
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
ptional. A page token received from a previous call to list images.",RecommendationRemove side-channel parameters; constrain tool inputs.
tool: list_reservations
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
ptional. A page token received from a previous call to list reservatiRecommendationRemove side-channel parameters; constrain tool inputs.
tool: list_commitments
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
ptional. A page token received from a previous call to list commitmenRecommendationRemove side-channel parameters; constrain tool inputs.
The server accepts tool enumeration (and likely invocation) with no authentication.
RecommendationRequire OAuth 2.1 authorization for any server exposing non-public tools.
tool: create_instance
The server advertises open-world / broadly-scoped capabilities.
annotations.destructiveHint = trueRecommendationScope tools to the minimum needed.
tool: delete_instance
The server advertises open-world / broadly-scoped capabilities.
annotations.destructiveHint = trueRecommendationScope tools to the minimum needed.
tool: start_instance
The server advertises open-world / broadly-scoped capabilities.
annotations.destructiveHint = trueRecommendationScope tools to the minimum needed.
tool: stop_instance
The server advertises open-world / broadly-scoped capabilities.
annotations.destructiveHint = trueRecommendationScope tools to the minimum needed.
tool: reset_instance
The server advertises open-world / broadly-scoped capabilities.
annotations.destructiveHint = trueRecommendationScope tools to the minimum needed.
tool: set_instance_machine_type
The server advertises open-world / broadly-scoped capabilities.
annotations.destructiveHint = trueRecommendationScope tools to the minimum needed.
Vantaj uptime monitoring via MCP — manage monitors, heartbeats, incidents, and status pages.
Unified gateway to Algeria's TKAWEN ecosystem: commerce, certification, and AI tools.
Provides access to the Cohereon Doctrine AI safety framework with governance components, tiered access, and agent onboarding.
Agentic rails for complex workflows with receipts, fees, and MCP tool access.
Structural TC39 spec lookup for ECMA-262 and ECMA-402 in AI agents, SHA-pinned and offline-first.
Structural TC39 spec lookup for ECMA-262 and ECMA-402 in AI agents, SHA-pinned and offline-first.