Skip to main content

schemapin

SchemaPin provides cryptographic schema verification to prevent MCP Rug Pull attacks, ensuring tool integrity through signing and verification.

Install this skill

or
97/100

Security score

The schemapin skill was audited on May 25, 2026 and we found 3 security issues across 1 threat category. Review the findings below before installing.

Categories Tested

Security Issues

low line 126

External URL reference

SourceSKILL.md
126Developers publish their public key at `https://example.com/.well-known/schemapin.json`:
low line 135

External URL reference

SourceSKILL.md
135revocation_endpoint="https://example.com/.well-known/schemapin-revocations.json"
low line 148

External URL reference

SourceSKILL.md
148result = workflow.verify_schema(schema, signature, "https://example.com")
Scanned on May 25, 2026
View Security Dashboard
Installation guide →
GitHub Stars 16
Rate this skill
Categorydevelopment
UpdatedJune 15, 2026
ThirdKeyAI/SchemaPin