Index · litmus-v10
The Polygraph Index
Every grade we publish — MCP servers tested for behavior and ordered by adoption, Agent Skills scanned for safety. What each one does, not what its README claims.
33 MCP servers graded, ranked by adoption · 13 live endpoints (hosted, egress unverified) · 3 skills scanned · adoption data as of 2026-06-26. A grade is a measurement, not a guarantee; you can re-run the open harness yourself.
| # | Server | Grade | Checks | Adoption |
|---|---|---|---|---|
| 1 | npm/@playwright/mcp | A | 01✓02✓03✓04✓ | 100/10023.2M npm/mo |
| 2 | npm/@modelcontextprotocol/server-filesystem | A | 01✓02✓03✓04✓ | 81/1001.17M npm/mo |
| 3 | npm/@upstash/context7-mcp | A | 01✓02✓03✓04✓ | 80/1004.51M npm/mo |
| 4 | npm/@modelcontextprotocol/server-github | A | 01✓02✓03✓04✓ | 73/100621K npm/mo |
| 5 | npm/@modelcontextprotocol/server-memory | A | 01✓02✓03✓04✓ | 71/100292K npm/mo |
| 6 | npm/@notionhq/notion-mcp-server | A | 01✓02✓03✓04✓ | 70/100483K npm/mo |
| 7 | npm/@modelcontextprotocol/server-puppeteer | A | 01✓02✓03✓04✓ | 67/100126K npm/mo |
| 8 | npm/@adeu/mcp-server | A | 01✓02✓03✓04✓ | 45/1003.29K npm/mo |
| 9 | npm/@polygraphso/litmus | A | 01✓02✓03✓04✓ | 43/1003.21K npm/mo |
| 10 | npm/mcp-server-scf | A | 01✓02✓03✓04✓ | 39/1003.9K npm/mo |
| 11 | npm/raven-mcp | A | 01✓02✓03✓04✓ | 37/1002.06K npm/mo |
| 12 | npm/@printr/mcp | A | 01✓02✓03✓04✓ | 37/1002.45K npm/mo |
| 13 | npm/@kawacode/mcp | A | 01✓02✓03✓04✓ | 36/100996 npm/mo |
| 14 | npm/defillama-mcp | A | 01✓02✓03✓04✓ | 36/100518 npm/mo |
| 15 | npm/@scope-bid/scope-mcp | A | 01✓02✓03✓04✓ | 35/1001.14K npm/mo |
| 16 | npm/@scope-bid/scope-aec-mcp | A | 01✓02✓03✓04✓ | 35/1001.13K npm/mo |
| 17 | npm/@tensorfeed/mcp-server | A | 01✓02✓03✓04✓ | 34/1002.42K npm/mo |
| 18 | npm/@scope-bid/scope-claims-mcp | A | 01✓02✓03✓04✓ | 34/100999 npm/mo |
| 19 | npm/@mcpdotdirect/evm-mcp-server | A | 01✓02✓03✓04✓ | 31/100428 npm/mo |
| 20 | npm/@hovecapital/read-only-mysql-mcp-server | A | 01✓02✓03✓04✓ | 31/1001.63K npm/mo |
✓ pass✕ fail– not runC-01 tool-output injection · C-02 egress overreach · C-03 sensitive-data handling · C-04 adversarial-input handling
Ranked by the adoption score (0–100, shown at right above monthly downloads) — a composite of downloads (npm / PyPI), GitHub stars, dependents and release velocity. It measures reach, not safety: the litmus grade is the only safety verdict. Grades come from the open litmus harness; you can request a grade for a server, or read the methodology.