firecrawl / firecrawl/firecrawl-mcp-server

MCPSafe deep scan: 3 high-severity findings, score 62/100 — badge available

Open
#232 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
JavaScript
Stars
7.5k
Forks
884
Avg merge
1d 11h
Merged PRs (30d)
14

Description

Hi team 👋

We ran a free MCPSafe deep scan on **firecrawl-mcp-server** using a 5-LLM consensus engine and wanted to share the results directly.

**Deep Scan Results (AIVSS Score)**
| Severity | Count |
|---|---|
| 🟠 High | **3** |
| 🟡 Medium | 25 |
| **Score** | **62 / 100 (Grade C)** |

> 📋 Full report with evidence, finding details & PDF export:
> **https://mcpsafe.io/registry/github/mendableai/firecrawl-mcp-server**

MCPSafe detects MCP-specific threats that traditional SAST misses: prompt injection via tool descriptions, tool poisoning, secret exfiltration paths, overbroad schemas — scored with AIVSS (AI Vulnerability Severity Score). Uses 5-LLM consensus so only multi-model-confirmed findings are flagged.

**Add the badge to your README:**
```md
[![MCPSafe](https://api.mcpsafe.io/badge/github/mendableai/firecrawl-mcp-server.svg)](https://mcpsafe.io/registry/github/mendableai/firecrawl-mcp-server)
```

The badge auto-updates with each scan. Free, no signup required for public repos. Happy to answer questions about the findings.

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.