wecom-bot-mcp-server — security grade SAFE, quality 75/100

Security audit verdict: SAFE · quality 75/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by loonghao · MCP Server · ★ 103

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is wecom-bot-mcp-server safe to install? View the security audit →

About wecom-bot-mcp-server

WeCom Bot MCP Server A Model Context Protocol (MCP) compliant server implementation for WeCom (WeChat Work) bot. English | 中文 Features Support for multiple message types: Markdown messages (with @mentions and font colors) Markdown V2 messages (with tables, lists, embedded images) Image messages (base64/local file/URL) File messages Template card messages (textnotice and newsnotice) -

Quick Facts

Stars103
Forks18
LanguagePython
CategoryMCP Server
LicenseMIT
Quality Score75.0764816144429/100
Open Issues12
Last Updated2026-09-25
Created2025-01-02
Platformsmcp, python
Est. Tokens~16k

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular Python Agent Tools

Frequently Asked Questions

What is wecom-bot-mcp-server?

wecom-bot-mcp-server is A Python server implementation for WeCom (WeChat Work) bot that follows the Model Context Protocol (MCP). This server provides a standardized interface for handling automated messaging and context-awa. It is categorized as a MCP Server with 103 GitHub stars.

What programming language is wecom-bot-mcp-server written in?

wecom-bot-mcp-server is primarily written in Python.

How do I install or use wecom-bot-mcp-server?

You can find installation instructions and usage details in the wecom-bot-mcp-server GitHub repository at github.com/loonghao/wecom-bot-mcp-server. The project has 103 stars and 18 forks, indicating an active community.

What license does wecom-bot-mcp-server use?

wecom-bot-mcp-server is released under the MIT license, making it free to use and modify according to the license terms.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools