MCP Server

monitor

work.agentexchange.tooldrift/monitor
MCP & Agent Infrastructure Security Public & reachable MCP 2026-07-28

What this MCP does

Monitors MCP tool definitions for changes and detects prompt-injection, concealment and data-exfiltration patterns.

check_mcp_server
Check whether an MCP server's tools have changed since they were first recorded, and whether any tool description contains prompt-injection or data-exfiltration patterns. Call this BEFORE trusting a newly added or recently updated MCP server. Returns a verdict of clean or REVIEW_BEFORE_USE.
Input schema
{'type': 'object', 'properties': {'url': {'type': 'string', 'description': "The MCP server's HTTP endpoint to probe live."}, 'server': {'type': 'string', 'description': 'Registry name of the server, if the URL is unknown.'}}}
get_drift_feed
List MCP tools across the public ecosystem whose definitions recently changed, newest first. Use to see whether a dependency mutated.
Input schema
{'type': 'object', 'properties': {'limit': {'type': 'integer', 'description': 'Max rows, default 25.'}}}
get_findings
List tools whose descriptions contain detected injection, concealment, or exfiltration patterns. Filter by severity: critical, high, medium, low.
Input schema
{'type': 'object', 'properties': {'limit': {'type': 'integer'}, 'severity': {'type': 'string'}}}
Added
get_findings
Sept. 17, 2026, 12:55 p.m.
Added
get_drift_feed
Sept. 17, 2026, 12:55 p.m.
Added
check_mcp_server
Sept. 17, 2026, 12:55 p.m.