Alpic

B
7.5

Manage your projects, debug deployment, and check analytics for any MCP server you host with Alpic

Installation

Claude Desktop config (remote)

{
  "mcpServers": {
    "ai-alpic-mcp-alpic-mcp": {
      "type": "streamable-http",
      "url": "https://mcp.alpic.ai"
    }
  }
}

Cursor config

{
  "mcpServers": {
    "ai-alpic-mcp-alpic-mcp": {
      "url": "https://mcp.alpic.ai"
    }
  }
}

Security Report

Score Breakdown

Description10
Permissions10
Behavior5
Stability--

Findings (6)

medium
vague-description

Unclear Server Capabilities

The server description is vague about what 'manage projects', 'debug deployment', and 'check analytics' actually entail. Without tool definitions, it's impossible to verify the claimed capabilities or assess their security implications.

medium
network-access

Remote HTTP Endpoint Without Visible Authentication

The server operates as a remote HTTP/SSE endpoint (https://mcp.alpic.ai), meaning it accepts connections from the internet. No authentication mechanism is documented in the provided metadata.

medium
excessive-scope

Broad Scope Claims for Hosted MCP Servers

The server claims to manage, debug, and provide analytics for 'any MCP server you host'. This suggests broad access to other servers' operations and data, which is a significant capability that warrants scrutiny.

low
vague-description

No Source Code Repository

No repository URL is provided, making it impossible to audit the server's implementation or verify its claims independently.

info
vague-description

Tool Definitions Not Available

Tools could not be fetched from the server, preventing detailed security analysis of specific capabilities and input validation.

info
vague-description

Semantic Analysis Summary

Alpic is a remote HTTP-based server with vague capability descriptions and no accessible source code for independent verification. The claimed ability to manage, debug, and monitor 'any MCP server' suggests broad cross-server access that requires careful authentication and authorization controls. Without tool definitions or a public repository, the actual security posture cannot be fully assessed.

Last scanned 59m ago

Details

Version
0.0.1
Transport
streamable-http, sse
Capabilities
Website
alpic.ai