Security Report
Verified by MCPForge

Appwrite API MCP Security Report

Independent security and governance assessment · Assessed July 12, 2026

90

Security

82

Compliance

88

MCPForge Score

Security Findings

Security

+Server reachable and responding
1 destructive operation detected
Credentials Vault not configured — API keys may be exposed through direct agent access if tools require authentication

Compliance

User/contact data handling detected (GDPR/CCPA obligations)
Deletion operations detected (GDPR Art. 17 audit trail required)
Credentials Vault not configured — configure to ensure proper server-side key management

Risk Analysis

258 tools analyzed
High Risk64
Medium Risk92
Low Risk102

By Category

Delete26
Auth32
Admin6
Write92
Read102
No approval workflows configured

Governance Assessment

Formal Security Review
Not Started
Credentials Vault✗ Not Configured
Endpoint ProtectionNot Enabled
Audit Logging✓ Active — All tool invocations logged

Agent Reliability Assessment

Description Quality

195/195 tools have descriptions · avg 111 chars

100/100

Excellent

Output SanitizationPASS
Agent Reliability Score
99/100 · Excellent

Governance Maturity

Basic2/5 controls enabled

Not recommended for production. Configure governance controls before deployment.

View full governance assessment →

Production Readiness

Verified — Production Ready

88

MCPForge Score

Configure the Credentials Vault to protect API keys from direct agent exposure.
Enable endpoint protection to require API key authentication on direct MCP calls.
Start a formal Security Review to qualify for the "✓ Security Reviewed" badge.
Review the 64 high-risk tools and configure approval workflows where appropriate.
View full profile and installation instructions →