Loading connector details…
Loading connector details…
Choose a unique username to continue using AgentHotspot
by slowmist • Security & Privacy
A demonstration tool that showcases malicious plugin attack vectors against Model Context Protocol (MCP) to educate developers and security researchers.
Detect or simulate malicious MCP plugins and evaluate security defenses.
Demonstrate or reproduce attack vectors such as data poisoning, JSON injection, cross-MCP calls, and competitive function overrides.
Example implementations and mitigation guidance for plugin verification, input sanitization, and least-privilege execution.
MasterMCP is an educational repository that implements example malicious plugins to illustrate multiple attack techniques against MCP architectures. It includes demonstrations of data poisoning, JSON injection, competitive function overrides, and cross-MCP call attacks, each with explanatory notes and example code. The project is intended to help developers and security teams understand risks and adopt defensive measures such as plugin verification, input sanitization, and least-privilege execution.
Scores are informational only and provided “as is” without warranty. AgentHotspot assumes no liability for actions taken based on these ratings.