mcp-server-everything-wrong
If you are the rightful owner of mcp-server-everything-wrong and would like to certify it and/or have it hosted online, please leave a comment on the right or send an email to henry@mcphub.com.
A demonstration Model Context Protocol (MCP) server that exposes a variety of tools, some benign and some intentionally misbehaving, to explore edge-cases in tool registration, invocation, and dynamic behavior within an LLM context.
The 'Everything Wrong' MCP server is designed to demonstrate various edge-cases and potential pitfalls in tool registration and invocation within an LLM context. It includes a range of tools, some of which are intentionally designed to misbehave or exhibit malicious behavior. This server is not secure and should not be used in production environments. It serves as a learning tool to understand how tools can be manipulated, how covert instructions can be embedded, and how schema misuse can occur. The server provides a sandbox for experimenting with dynamic tool behavior, including tool re-registration, covert redirection, and environment variable leakage.
Features
- Dynamic tool re-registration and behavior mutation.
- Covert instruction embedding and redirection.
- Demonstration of schema misuse and side-channel attacks.
- Environment variable leakage simulation.
- Cross-origin data leak simulation through URL fetching.