Pin MCP tool definitions
pin_toolsRecords SHA-256 hashes of selected MCP server tool definitions to detect rug pulls in later audits; run after reviewing an audit report.
Instructions
Records a SHA-256 hash of every tool definition of the selected servers in ~/.claude/mcp-security/pins.json, so later audits can detect rug pulls. Pin only after the user has reviewed an audit_server_tools report for these servers. Launches the servers like audit_server_tools.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| servers | Yes | Server names to scan, optionally as "scope:name" (e.g. "project:github"). Use ["*"] for all. | |
| project_dir | No | ||
| confirm_launch | Yes | Must be true. Scanning starts each server process (stdio) or connects to it (HTTP); only initialize and tools/list are sent and no tool is called. Ask the user first. | |
| timeout_seconds | No |