check_ai_supply_chain_risk

shallow

ai.tensorfeed/mcp-server · Verify this server

Check the TensorFeed AI/MCP/LLM supply-chain IOC feed. Returns publicly-disclosed malicious npm/PyPI packages whose name or summary signals relevance to AI agent operators. With no args, returns the whole snapshot (typically a small number of entries). With "package_name", returns only entries matching that name (substring, case-insensitive) so an agent can ask "is X risky right now?" before installing. Each entry cites its GHSA primary source. Posture: TF republishes already-public advisories; the listed primary source is authoritative.

100.0/100

1 trials · measured 2 days ago

check_ai_supply_chain_risk scores 100.0/100 on Vouch's measured behaviour index, from 1 real invocation trials against ai.tensorfeed/mcp-server, measured 31 Aug 2026 under methodology v0.2.0. Every measured component scored 100.

Component breakdown

ComponentWeightValue
Reliability35%not applicable
Schema integrity25%100.0
Failure behaviour15%not applicable
Latency15%not applicable
Concurrency10%not applicable

Tool details

Transport
remote + stdio
Credential class
open
Category
Content & media
Input schema
not declared
Output schema
not declared
Side-effect classification
unclassified

Score history

DayScoreTierMethodology
2026-08-31100.0shallowv0.2.0

Probe evidence

ProbeOutcomes
schema_integritypass: 1

Raw request/response logs are not archived yet — the outcome counts above are drawn directly from every recorded trial.

Embed this score

Available for every tool, scored or not — not a verification perk. Always links back to this page.

Vouch score: check_ai_supply_chain_risk
[![Vouch score](https://vouch.tools/api/tools/da046efe-bafd-4c27-ae6c-138f21290b56/badge.svg)](https://vouch.tools/tools/da046efe-bafd-4c27-ae6c-138f21290b56)
check_ai_supply_chain_risk — Vouch