# agentscore-mcp-server

> Use this tool when you need to enhance security and trust in your MCP packages, as it continuously monitors for potential threats such as command injection and hardcoded secrets. It solves problems related to package security and vulnerability, providing a GitHub Action policy gate for automated decision-making. This tool is ideal for use cases where MCP package security is a concern, with a simple interface that requires no API key and integrates with existing workflows.

Canonical page: https://skillsregistry.net/skills/thezenmonster-agentscore-mcp-server  
JSON: https://api.skillsregistry.net/v1/skills/thezenmonster-agentscore-mcp-server

## Description

MCP security trust layer. Continuously monitors 800+ MCP packages on npm for install scripts, command injection, hardcoded secrets, capability drift, and publisher posture. Ships a GitHub Action policy gate for PR-level allow/warn/block decisions. 5 MCP tools, no API key required.

## Trust

- **Trust score (0–1):** 0.69
- **Verification tier:** scanned
- **Last scanned:** 2026-09-02

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** version-control
- **Updated:** 2026-09-02

## Source

- **Source listing:** [Glama](https://glama.ai/mcp/servers/np804x7uvs)
- **Repository:** <https://github.com/Thezenmonster/agentscore-mcp-server>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "thezenmonster-agentscore-mcp-server"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/thezenmonster-agentscore-mcp-server` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/thezenmonster-agentscore-mcp-server/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
