MarketCore

B
7.5

Create on-brand marketing deliverables and GTM docs with AI-powered blueprints and brand guidelines.

streamable-httpsseai-mldeveloper-toolsfinance

Installation

Claude Desktop config (remote)

{
  "mcpServers": {
    "ai-marketcore-mcp": {
      "type": "streamable-http",
      "url": "https://mcp.marketcore.ai/"
    }
  }
}

Cursor config

{
  "mcpServers": {
    "ai-marketcore-mcp": {
      "url": "https://mcp.marketcore.ai/"
    }
  }
}

Security Report

Score Breakdown

Description10
Permissions10
Behavior5
Stability--

Findings (6)

high
excessive-scope

No Tool Definitions Available for Audit

Tool definitions could not be fetched from the server. This prevents verification of what the server actually does, what inputs it accepts, what outputs it produces, and whether there are prompt injection or data exfiltration risks.

medium
vague-description

Unclear Capability Scope

The description uses marketing jargon ('on-brand deliverables', 'GTM docs', 'AI-powered blueprints') without specifying what the server actually does. It's unclear what data it processes, what systems it integrates with, or what 'brand guidelines' means in practice.

medium
network-access

Remote HTTP Endpoint Without Visible Authentication

The server operates as a remote HTTP/SSE endpoint (https://mcp.marketcore.ai/). Remote servers are higher risk than local stdio servers. No authentication mechanism is documented.

medium
vague-description

No Source Code Repository

No public repository is listed. This prevents independent verification of the server's code, security practices, or actual capabilities. Users must trust the vendor entirely.

low
info

Website Exists

The server has an associated website (https://marketcore.ai), which provides some legitimacy signal, though it doesn't guarantee security.

info
vague-description

Semantic Analysis Summary

MarketCore is a remote HTTP-based marketing automation server with vague capability descriptions and no accessible tool definitions for security review. The lack of source code, unclear scope, and inability to audit actual tool behavior create moderate security concerns. The remote endpoint and missing authentication documentation add additional risk.

Last scanned 59m ago

Details

Version
1.0.2
Transport
streamable-http, sse
Capabilities