← Runtime Guard
Runtime Guard Probe

Trust the MCP
servers you connect.

Probe goes beyond tool discovery. It tests MCP servers against real inputs, verifies tools do what they claim, and flags unexpected behaviour — before you let them near your agents.

probe · scan report · filesystem-mcp-v2 Risk: Medium
Tool discovery
read_file — declared, behaves as expected
write_file — declared, behaves as expected
execute_command — declared, spawns child process
_internal_sync — undeclared tool detected
Behaviour analysis
Unexpected network call on second invocation
File access outside declared workspace scope
Process isolation — contained to session
Consistency
Deterministic across 3 runs
How it works

Submit. Test. Report.

1

Submit

Provide the MCP server definition — package name, URL, or config block

2

Discover

Probe loads the server in an isolated cloud sandbox and enumerates all exposed tools

3

Test

Each tool is invoked with controlled inputs across multiple runs to observe actual behaviour

4

Report

A full report is generated with risk score, findings, and a reproducibility rating

What Probe checks

Beyond what the server says it does

Tool declaration vs reality

Compares what the server says its tools do against what they actually do when invoked. Undeclared tools and mismatched behaviour are flagged.

Unexpected side effects

Detects process spawns, network calls, and file access that occur outside the declared scope of a tool call. Anything unexpected is surfaced with context.

Consistency across runs

MCP servers that behave differently on first run vs subsequent runs are a red flag. Probe runs each server multiple times and scores consistency explicitly.

Sensitive path access

Flags any file access attempts targeting sensitive system paths — credential files, SSH keys, environment files — regardless of whether they succeed.

Why Probe

Tool discovery isn't enough

Most MCP registries tell you what tools a server exposes. Probe tells you what those tools actually do — and what else the server does that it didn't mention.

The MCP ecosystem is growing fast. Not every server is well-intentioned, well-tested, or well-maintained. Probe gives you independent verification before you trust a server with your agent's actions.

Capability Registry listing Probe
Tool enumeration
Behavioural testing
Side effect detection
Multi-run consistency
Risk score
Downloadable report
In development

Probe is being built

Join the waitlist to be first to test MCP servers with Probe when it launches. Early access will include a limited number of free scans.

No spam. One email when Probe launches.