First Seen
Feb 18, 2026
Last Scanned
Feb 22, 2026
Findings
3
Score
76/100
Findings (3)
Detects dangerous URI schemes or path traversal in resource fields
Url": "file:/// Implement strict input validation on the MCP tool's parameters. Block tool calls that attempt to modify the agent's system prompt, configuration, or tool definitions.
Likely FP if the match is a tool that legitimately updates configuration (e.g., a settings manager) and mentions prompt editing only for user-facing customization.
Detects dangerous URI schemes or path traversal in resource fields
Url": "file:/// Implement strict input validation on the MCP tool's parameters. Block tool calls that attempt to modify the agent's system prompt, configuration, or tool definitions.
Likely FP if the match is a tool that legitimately updates configuration (e.g., a settings manager) and mentions prompt editing only for user-facing customization.
Detects dangerous URI schemes or path traversal in resource fields
Url": "file:/// Implement strict input validation on the MCP tool's parameters. Block tool calls that attempt to modify the agent's system prompt, configuration, or tool definitions.
Likely FP if the match is a tool that legitimately updates configuration (e.g., a settings manager) and mentions prompt editing only for user-facing customization.