A recent analysis of 7,749 public MCP tool manifests revealed significant security concerns, with 33% of manifests containing high-severity rule violations that would be blocked by pre-attachment gates. The study, conducted by BackBond using their Agent Scan tool, found that prompt injection attempts were rare (1.2%), but composition issues were prevalent. Specifically, 27% of manifests included network tools with arbitrary URL destinations, 22% paired fetch tools with destructive or privileged tools, and 21% featured persistent-write tools accepting untrusted input. The analysis also highlighted that larger manifests with more tools were disproportionately more likely to contain problematic patterns. AI
IMPACT Highlights potential security vulnerabilities in AI agent tool composition, urging developers to review manifest security.
RANK_REASON Analysis of public data on AI tool manifests with security findings. [lever_c_demoted from research: ic=1 ai=1.0]
AI-generated summary · Google Gemini · from 1 sources. How we write summaries →