Cloakcheck MCP server
Scan a page for content planted to hijack an AI browsing/shopping agent before it acts on the page.
Little public usage data yet
Reviews
Write oneNobody has reviewed Cloakcheck yet.
If you have run it, two minutes of your experience saves the next person an afternoon.
Cloakcheck tools (1)
write = sends, deletes, buys or postscheck_page_for_agent_hijackingFreeFetch a URL and scan it for content planted to hijack an AI agent visiting it rather than to inform a human: invisible unicode (zero-width joiners, steganographic tag-block characters), CSS-hidden text (display:none, opacity:0, off-screen) paired with instruction-shaped language ('ignore previous instructions', 'add to cart and checkout', fake system-role text), and instruction-shaped phrases in alt/title/aria-label attributes or meta tags. Call this before an autonomous browsing or checkout flow acts on instructions found on a page. A clean result means no known hijack pattern found, not a full content-safety guarantee.
Public scan report
scanner v0.1.4 · 2026-09-19 · same rubric, same numbers if you re-run it
- –Code scanremote-only server, no package to scann/a
- Live reliabilityremote reachable in 790ms20/20
- Tool poisoning1 tool descriptions checked15/15
- Auth qualityopen endpoint, read-only tools10/15
- Maintenanceno repository listed3/15
- Maintainer identityverified namespace with website, no repo4/10
Findings (1)
- lowNo source repository listed
maint.no-repo
Grade history
- 2026-09-19restoreF → Cscore 69: No source repository listed
Install directly
claude mcp add --transport http cloakcheck https://www.edgethirteen.com/api/mcp/cloakcheck
Cloakcheck: common questions
- Is Cloakcheck MCP server safe?
- With care: it is graded C, so read the findings first (69/100). Read the Cloakcheck safety report
- How do I install Cloakcheck?
- It runs remotely at www.edgethirteen.com. Add it to Claude Code, Claude Desktop or Cursor with the snippets above, or call it through the mcp.market gateway without installing anything.
- Does Cloakcheck need an API key?
- Not as far as the registry entry and our scan can tell: no credentials are declared or required.
- Is Cloakcheck maintained?
- The latest release is v1.0.0.
- Is Cloakcheck up?
- 100% of our last 1 checks got an answer. We check remote servers about four times a day.
- What can I use instead of Cloakcheck?
- Servers from other publishers that do the same job: Lockstep MCP server, Ratchet MCP server and MCP server. Compare all Cloakcheck alternatives.
Alternatives to Cloakcheck
Same job from other publishers: the closest match first, then the best rated.
- LockstepDecision memory for AI coding agents: captures decisions once, briefs every agent before it acts.not reviewedGrowingA
- RatchetYour agent asks before it acts, so the same real-world action is attempted at most once.not reviewedGrowingB
- MCPAuthorize consequential AI agent actions before executionnot reviewedEstablishedA
- PDFAgentic RAG over one PDF or a whole folder: hybrid search, selective page reads, tables, OCR.not reviewedEstablishedA
- ProjectmemCoding agent memory — one local MCP server for every project. Warns before repeating failed fixes.not reviewedGrowingA