ai.smithery/BigVik193-reddit-ads-mcp-test

B
7.0

Manage Reddit advertising end-to-end: browse ad accounts and payment methods, and organize campaig…

Installation

Claude Desktop config (remote)

{
  "mcpServers": {
    "ai-smithery-bigvik193-reddit-ads-mcp-test": {
      "type": "streamable-http",
      "url": "https://server.smithery.ai/@BigVik193/reddit-ads-mcp-test/mcp"
    }
  }
}

Cursor config

{
  "mcpServers": {
    "ai-smithery-bigvik193-reddit-ads-mcp-test": {
      "url": "https://server.smithery.ai/@BigVik193/reddit-ads-mcp-test/mcp"
    }
  }
}

Security Report

Score Breakdown

Description10
Permissions10
Behavior4
Stability--

Findings (7)

high
vague-description

Incomplete and Truncated Description

The server description is cut off mid-sentence ('organize campaig…'), making it impossible to fully understand the intended scope and capabilities. This incomplete information prevents proper security assessment.

high
network-access

Remote HTTP Endpoint Without Visible Authentication

Server operates via remote HTTP endpoint (streamable-http) at https://server.smithery.ai/@BigVik193/reddit-ads-mcp-test/mcp. Remote servers are higher risk than local stdio servers and require authentication mechanisms to prevent unauthorized access.

high
excessive-scope

Broad Financial and Account Access Claims

Server claims to manage Reddit advertising 'end-to-end' including 'ad accounts and payment methods'. This represents access to sensitive financial data and advertising accounts, which is a broad and high-risk capability scope.

medium
credential-input

Likely Requires Reddit API Credentials

A Reddit advertising management server would require API credentials or authentication tokens to function. The security of credential handling is not documented in available metadata.

medium
excessive-tools

Tool Definitions Unavailable for Review

Tool definitions could not be fetched from the server, preventing assessment of input validation, prompt injection risks, and actual capability scope. Zero tools reported may indicate fetch failure or incomplete implementation.

low
info

Positive: Source Code Available

Repository URL is provided (https://github.com/BigVik193/reddit-ads-mcp), allowing for code review and transparency.

info
vague-description

Semantic Analysis Summary

This Reddit advertising management server presents moderate-to-high risk due to its remote HTTP endpoint, broad financial/account access claims, and incomplete description. The inability to fetch and review tool definitions prevents full security assessment. While the public repository is a positive trust signal, the combination of remote exposure, sensitive capability scope, and missing documentation warrants caution.

Last scanned 1h ago

Details

Version
1.0.0
Transport
streamable-http
Capabilities