Marketplace is great, but is it save? #50
Closed
KamilGucik
started this conversation in
General
Replies: 1 comment
-
Marketplace is pretty safe. It only shows verified popular MCP servers. This is done by https://github.com/cline/mcp-marketplace repo. Regarding github MCP servers, the server runs locally. The only thing we should be careful about is not to commit api keys source control. For this purpose you can set null to any env variables in servers.json file which fallback to process.env You can always check the repo of an MCP server to be extra careful. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
As mentioned in the title, the Marketplace is great, but is it safe? How can I determine if an added MCP server is safe to use? For example, I have CodeCompanion with GitHub Copilot, and I’m considering adding a GitHub Enterprise MCP. However, I’m unsure if it’s safe to proceed. Can anyone share some tips on this topic?
Beta Was this translation helpful? Give feedback.
All reactions