Skip to content

Pin MCP package references to make reviewed configs reproducible #37738

Description

@tomelias10

I noticed the committed .mcp.json currently has three mutable npm/npx references:

  • chrome-devtools-mcp@latest
  • bare @primeng/mcp
  • bare @angular/cli

This is not a claim that any of these packages are malicious or vulnerable. The issue is reproducibility/review drift: the config can stay unchanged while a later npx resolution selects different package code than the version originally reviewed.

A simple control would be to pin each external MCP package to an exact reviewed version and update those pins intentionally.

I verified this with a passive static check only; no MCP server was executed and no package was downloaded. Author disclosure: I maintain the small open-source checker I used for this class of config drift: https://github.com/tomelias10/mcp-drift-check

Happy to provide the exact scanner output if useful.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    CVSS : N/ANot a vulnerability: no CVSS v3.1 base scorePriority : 4 LowTeam : SecurityIssues related to security and privacy

    Type

    No type

    Projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions