AgentScore is for sale. View the assets and acquisition details →
high

AGENTSCORE-2026-0070

MCP package: @taprun/spec

Published 6/25/2026 · 1.2.01.6.0

@taprun/spec updated from 1.2.0 to 1.6.0. Score changed 95/100 to 75/100 (-20). Risk: LOW to MODERATE. 2 findings.

9575
Score
LOWMODERATE
Risk
WARN
Verdict

Findings

  • high unsafe_eval: Uses eval() with dynamic input
  • low no_provenance: Package is not published with provenance attestations or trusted publishing. Published by: leonting1010