polygraphso
AI agents plug into third-party tools and load skills that can hijack them or leak your data.
Community: Submitted by a user or imported; check the owner before granting accessOnlineNo sign-inGlobalFreeCan modify data
What it can do
- Check Server: Read a server's published behavioral grade (A–F) from polygraph.so in under a second — no execution. The pre-flight check before recommending or installing an MCP server. On a miss it re
- List Servers: Every MCP server that carries a published polygraph grade, sorted A-first.
- Request Grade: Add an ungraded MCP server to polygraph.so's public grading queue (free, best-effort). Read the result later with check_server. Only real, plausibly-MCP targets are accepted.
What data it sees
Do you need an account
No: the server works without sign-in
AI agents plug into third-party tools and load skills that can hijack them or leak your data. We run those tools through an adversarial test, scan those skills for the same tricks, and publish a letter grade — free to read, public, evidence attached.
Server tool list (3)
Raw names from tools/list. Only developers need these.
| check_server | Read a server's published behavioral grade (A–F) from polygraph.so in under a second — no execution. The pre-flight check before recommending or installing an MCP server. On a miss it returns not_available (unevaluated — neither safe nor unsafe) with next steps. |
| list_servers | Every MCP server that carries a published polygraph grade, sorted A-first. |
| request_grade | Add an ungraded MCP server to polygraph.so's public grading queue (free, best-effort). Read the result later with check_server. Only real, plausibly-MCP targets are accepted. |