MCP Governance Risk Audit

Audits MCP servers that an organization builds or operates, including implementations and launch roadmaps, against the current MCP specification and provider-side OWASP controls. Use when reviewing a served MCP endpoint, its tools, resources, prompts, transport, authorization, DCR or CIMD registration, deployment, logging, readiness, or launch plan. Do not use for selecting or governing third-party MCP servers an organization consumes.

mattlgroff Updated

File contents

mattlgroff/mcp-governance-risk-audit-skill/tree/main/ commit bda012dd20

Frequently asked questions

npx skillmds@latest add mattlgroff/mcp-governance-risk-audit