PoC: Open Registry supply chain — unvetted server listing (security research)
npx -y @nottiboy1337/mcp-open-registry-pocAdd this server entry to the mcpServers object in your Claude Desktop config, then restart the app.
{
"mcpServers": {
"io-github-nottiboy137-open-registry-poc": {
"command": "npx",
"args": [
"-y",
"@nottiboy1337/mcp-open-registry-poc"
]
}
}
}~/Library/Application Support/Claude/claude_desktop_config.json%APPDATA%\Claude\claude_desktop_config.jsonNo remote HTTP endpoint is advertised. Use the package or stdio setup shown in Install.
open-registry-poc is an MCP server for PoC: Open Registry supply chain — unvetted server listing (security research). It supports STDIO transport.
Use the generated config in Install. This server runs with npx -y @nottiboy1337/mcp-open-registry-poc; add any required environment variables before starting your client.
Choose the Claude Desktop tab in Install and copy the config for npx -y @nottiboy1337/mcp-open-registry-poc. Add required environment variables before starting Claude Desktop.
Choose the Claude Code tab in Install and copy the config for npx -y @nottiboy1337/mcp-open-registry-poc. Add required environment variables before starting Claude Code.
Choose the Codex tab in Install and copy the config for npx -y @nottiboy1337/mcp-open-registry-poc. Add required environment variables before starting Codex.
Choose the Cursor or VS Code tab in Install and copy the config for npx -y @nottiboy1337/mcp-open-registry-poc. Add required environment variables before starting Cursor or VS Code.
open-registry-poc uses STDIO transport. Use the package or command config in Install.
open-registry-poc inventory is listed when the MCP endpoint exposes tools, resources, or prompts. Some servers require auth first.
open-registry-poc does not advertise a verified auth requirement. If discovery fails, it may still need provider login, an API key, a bearer token, or a session header.
| Package | Registry | Version | Inputs |
|---|---|---|---|
@nottiboy1337/mcp-open-registry-pocstdio | npm | 1.0.0 | None advertised |