Skip to content

Add Xquik MCP server for security review - #364

Open
kriptoburak wants to merge 1 commit into
fuzzylabs:mainfrom
kriptoburak:codex/add-xquik-secure-mcp
Open

Add Xquik MCP server for security review#364
kriptoburak wants to merge 1 commit into
fuzzylabs:mainfrom
kriptoburak:codex/add-xquik-secure-mcp

Conversation

@kriptoburak

@kriptoburak kriptoburak commented Jun 14, 2026

Copy link
Copy Markdown

Summary\n\n- Add Xquik MCP Server to Under Review without claiming a verified score\n- Track the current public v2.6.4 release and MCP protocol 2026-07-28\n- Fix scanner reporting so failed scans cannot appear as a clean full pass\n- Add 2 regression tests and run them when scanner files change\n\n## Server\n\nRepository: https://github.com/Xquik-dev/x-twitter-scraper\nRelease: https://github.com/Xquik-dev/x-twitter-scraper/releases/tag/v2.6.4\nDocs: https://docs.xquik.com/mcp/overview\nTransport: remote Streamable HTTP\n\n## Security State\n\nThe entry remains under-review and not recommended pending this repository's own automated and manual assessment.\n\n## Validation\n\n- 2 scanner regression tests pass\n- Data and schema validation passes\n- Python compilation passes\n- JSON parsing passes\n- Git whitespace validation passes\n- Public repository, release, and docs links resolve\n- Signed the commit

@kriptoburak
kriptoburak force-pushed the codex/add-xquik-secure-mcp branch from 6489fc0 to b36ea63 Compare June 15, 2026 11:15
@kriptoburak

Copy link
Copy Markdown
Author

Resolved the current upstream conflict in da852be. The Xquik entry now tracks public release v2.5.3, and the branch includes a separate scanner correctness fix with 2 regression tests: complete MCP scan failures now fall back with warning status, while partial failures can no longer report a clean full pass. Data validation, both tests, Python compilation, JSON parsing, diff checks, and all public link checks pass.

@kriptoburak
kriptoburak force-pushed the codex/add-xquik-secure-mcp branch from da852be to cef6b57 Compare August 12, 2026 19:11
@kriptoburak

kriptoburak commented Aug 12, 2026

Copy link
Copy Markdown
Author

Rebuilt from current main and refreshed the listing to public release v2.6.4 and protocol 2026-07-28. It remains under-review and not recommended pending project assessment. The scanner guard prevents complete or partial tool failures from reporting a clean pass; 2 regression tests, schema validation, Python compilation, JSON parsing, and public link checks pass. The commit has a valid local GPG signature; GitHub reports no_user because the support@xquik.com author email is not linked to a GitHub user.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant