github Python analyzed 1589aec

AuthPlane/python-sdk

v0.4.0
github

Python SDK for protecting MCP servers and OAuth 2.1 resource servers with tokens issued by the Authplane authorization server. Includes framework adapters (e.g. MCP, FastMCP).

maintainer
AuthPlane
licence
Apache-2.0
first seen
2026-06-16
last seen
2026-08-31
releases · 30d
2
short id
risk 30/100 · heuristic grade
B low inferred analyzer v33 (current)
  • capability exposure inferred + 24
  • inherited (deps) attested + 15
  • trust mitigators mixed − 9

attested inferred mixed

The A–E grade is our heuristic synthesis — a "review this" prompt, not a verdict. Each factor is tagged by what backs it: attested (a verifiable record), reported (a third party's claim), or inferred (our own heuristic, e.g. permissions). See methodology.

grade last moved 1w ago · see ecosystem CVEs →

risk trajectory 3 movements
  • B · 21 B · 30
  • B · 25 B · 21
  • A · 0 B · 25
capability exposure grade factor +24
Inferred surface — each links to servers holding it:
vulnerabilities 0 CVEs

No known CVEs for this server.

inherited (deps) · grade factor +15

inherited via dependencies 8
HIGH
SSRF & Path Traversal Vulnerability in FastMCP OpenAPI Provider via PrefectHQ/fastmcp · 1 hop CVE-2026-32871
HIGH
Missing Consent Verification in OAuth Proxy Callback Facilitates Confused Deputy Vulnerabilities via PrefectHQ/fastmcp · 1 hop CVE-2026-27124
HIGH
FastMCP Auth Integration Allows for Confused Deputy Account Takeover via PrefectHQ/fastmcp · 1 hop
MEDIUM
Improper Resource Handling in FastMCP OAuth Proxy Enables Token Reuse Across MCP Servers via PrefectHQ/fastmcp · 1 hop CVE-2025-69196
MEDIUM
Command injection via server name in subprocess-backed install commands via PrefectHQ/fastmcp · 1 hop CVE-2025-64340
MEDIUM
Reflected XSS in client's callback page via PrefectHQ/fastmcp · 1 hop CVE-2025-62800
MEDIUM
Windows command injection in FastMCP Cursor installer via server_name via PrefectHQ/fastmcp · 1 hop CVE-2025-62801
LOW
tool safety all quiet

No tool-safety findings — heuristic detectors run on the compute-risk cadence; a finding appears when a tool trips a rule.

skills & danger signals github-tarball
prompt-surface shipped agent-instruction files + hidden-content / dangerous-code findings — quoted from the analyzed source

analyzed commit 1589aec · analyzer v33 · 19h ago

danger signals2

embed badge readme-ready
live risk-grade badge preview [![MCP Observatory risk grade](https://mcpobservatory.com/servers/github:AuthPlane/python-sdk/badge.svg)](https://mcpobservatory.com/servers/github:AuthPlane/python-sdk/security)

Heuristic, inferred signals — false positives (legitimately powerful tools, forks, language ports) are expected. Treat each as "review this", not a verdict. See the ecosystem-wide picture on the security hub, or the fleet security of AuthPlane.