Skip to content

Free security scan offer — MCP server hardening #343

Description

@Correctover

Hi Firecrawl MCP Server maintainers 👋

I'm from the Correctover project — we build an open-source MCP security scanner that checks for sandbox escapes, command injection, SSRF, credential exposure, and 20+ other risk categories.

We'd like to offer a free security scan of Firecrawl MCP Server.

Here's what you'd get:

  • A detailed security report covering sandbox safety, input validation, SSRF exposure, and more
  • No cost, no strings attached — we're building the MCP security baseline and need real-world projects like yours to validate against
  • Full report delivered within 24 hours

Why we're doing this: We recently scanned 24 popular MCP server projects and found a real sandbox command injection vulnerability (CVSS 9.8). The MCP ecosystem is growing fast, but security tooling hasn't caught up. We want to change that.

Our scanner: github.com/Correctover/correctover-scanner-archive

If you're interested, just reply here and we'll get started. If not, no worries at all — keep up the great work on Firecrawl MCP Server! 🙌

— Guigui Wang | Correctover — Runtime Verification for Agent Systems

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions