← Back to search Server uses filesystem capabilities via: fs, path Server uses shell capabilities via: child_process, spawn(), spawnSync() Server uses env_vars capabilities via: process.env
@yawlabs/mcp-compliance
CLI tool and MCP server that tests MCP servers for spec compliance
B
76.5 / 100
Versions
0.16.4latestJul 21, 2026
0.16.3Jun 19, 2026
0.16.1Jun 11, 2026
0.15.1Jun 7, 2026
0.15.0Jun 7, 2026
+ show 31 moreshow less
0.14.4Jun 3, 2026
0.14.3May 28, 2026
0.14.2May 15, 2026
0.14.1Apr 19, 2026
0.14.0Apr 19, 2026
0.13.5Apr 17, 2026
0.13.4Apr 17, 2026
0.13.3Apr 16, 2026
0.13.2Apr 16, 2026
0.13.1Apr 16, 2026
0.13.0Apr 14, 2026
0.12.2Apr 13, 2026
0.12.1Apr 13, 2026
0.12.0Apr 13, 2026
0.11.0Apr 13, 2026
0.10.1Apr 13, 2026
0.9.2Apr 13, 2026
0.9.1Apr 13, 2026
0.9.0Apr 13, 2026
0.8.1Apr 11, 2026
0.8.0Apr 10, 2026
0.7.0Apr 10, 2026
0.6.0Apr 9, 2026
0.5.0Apr 8, 2026
0.4.0Apr 8, 2026
0.3.0Apr 7, 2026
0.2.1Apr 7, 2026
0.2.0Apr 7, 2026
0.1.2Apr 6, 2026
0.1.1Apr 6, 2026
0.1.0Apr 6, 2026
Tools 3
mcp_compliance_test annotations: none low
Run the full MCP compliance test suite against a server URL. Returns grade (A-F), score, and detailed results for all 88 tests covering transport, lifecycle, tools, resources, prompts, errors, schema validation, and security.
url string auth string
mcp_compliance_explain annotations: none low
Explain what a specific compliance test ID checks and why it matters.
testId string
echo annotations: none low
Echoes back the input
message string
Permissions 3
filesystem low shell high env_vars low Scan Findings 22
low
Tool 'mcp_compliance_test' has no annotations
low
Tool 'mcp_compliance_explain' has no annotations
low
Tool 'echo' has no annotations
info
Sandbox failed to start for behavioral verification
medium
Vulnerable dependency: undici@8.7.0 (GHSA-4cwx-7wf7-3272)
medium
Vulnerable dependency: undici@8.7.0 (GHSA-8xcm-r25x-g524)
medium
Vulnerable dependency: undici@8.7.0 (GHSA-jr45-8vmc-qm54)
medium
Vulnerable dependency: undici@8.7.0 (GHSA-m8rv-5g2x-5cg5)
medium
Vulnerable dependency: undici@8.7.0 (GHSA-v3r7-h72x-cjcm)
medium
Vulnerable dependency: vitest@4.1.8 (GHSA-82fw-gwwq-j7x9)
info
package.json metadata
info
Tool: mcp_compliance_test
info
Tool: mcp_compliance_explain
info
Tool: echo
info
Transport: stdio
info
Required env vars (12)
info
Sandbox failed to start for output poisoning scan
low
Permission: filesystem access detected
high
Permission: shell access detected
low
Permission: env_vars access detected
info
SBOM generated: 270 components
medium
No build provenance detected (SLSA L0)