Is Latchkey MCP server safe?
Probably. Read the findings first.
Use with care. Some checks failed or could not be verified.
Public scan report
scanner v0.1.5 · 2026-09-19 · same rubric, same numbers if you re-run it
1 low
- –Code scanremote-only server, no package to scann/a
- Live reliabilityremote reachable in 269ms (auth required)20/20
- –Tool poisoningtools not inspected (endpoint requires auth); not countedn/a
- Auth qualityauth enforced (bearer)9/15
- Maintenanceno repository listed3/15
- Maintainer identityno repository or website to verify2/10
Findings (1)
- lowNo source repository listed
maint.no-repo
Overall 57/100. Components that don't apply are left out of the denominator. Any critical finding is an F.RubricAppeal a findingJSON
Other servers that do what Latchkey does
- Github RepoMCP server for GitHub repo health, commit summaries, issue triage, and RAG Q&A.not reviewedGrowingB
- Actions Deprecation Lint 2026Node 20 is removed from GitHub-hosted runners on 2026-09-23 and ubuntu-22.04 deprecation opens 2026not reviewedGrowingA
- gha-doctorDiagnose GitHub Actions CI: lint, flaky tests, wasted minutes, health score. Read-only MCP tools.not reviewedGrowingC