Inject, parse, and strip [N] citation markers in RAG outputs.
Drift inferred · capture-to-capture
- HIGH code analysis flagged hidden prompt content in MukundaKatta/mcp-stack
- HIGH code analysis flagged hidden prompt content in MukundaKatta/mcp-stack
transport stdio · http
verified
reported
listed in the official MCP registry counts 0 tools · 0 res
· 0 prompts
permission surface via code analysis
no tools enumerated yet for this server.
prompt-surface
shipped agent-instruction files + hidden-content / dangerous-code findings —
quoted from the analyzed source
analyzed commit 6fad5bb · analyzer v17 · 3d ago
skills & prompt files 1
- ⚠ hidden: readme: hidden-unicodeMukundaKatta-mcp-stack-6fad5bb/packages/csv-tools-mcp/README.md:11
LLMs ask for "the CSV parsed" and silently miss edge cases: a comma inside a quoted field, an escaped quote, a BOM that turns the first column header into `‹U+FEFF›name`. Routing through this MCP serv
evidence-backed
findings quoted directly from the published source artifact — not inferred
No code evidence — the analyzed source reached for no tracked permissions, tools, or hooks.