An educational project that deliberately implements vulnerable MCP servers to demonstrate various security risks like prompt injection, tool poisoning, and code execution for training security researchers and AI safety professionals.
A deliberately insecure note management server designed to test security scanners and train developers by demonstrating common MCP vulnerabilities. It provides tools for creating, searching, and exporting notes while featuring intentional flaws like prompt injection and data leakage.
A compact MCP server demonstrating explicit tool boundaries, least-privilege discovery, execution-time authorization, destructive-action confirmation, and metadata-only audit logs using a local note store.
An intentionally vulnerable MCP server for security training, enabling users to practice attacking and defending AI agents through realistic scenarios.