External listings

Verification notes for every public listing

Canonical GitHub Release, npm, and Official MCP Registry records define the current release. The remaining pages are dated external observations; stale, misleading, unverified, or unavailable entries are retained for transparency and are not security attestations.

Identity

Confirm the published server ID, package, and canonical repository.

Official MCP Registry

Canonical Registry record for the current published MCP server identity.

Useful for
Confirm the server ID, npm package, and canonical repository before installing.

Confirmed

  • The published server ID is io.github.astandrik/local-ydb-mcp.
  • Version 0.18.2 points to @astandrik/local-ydb-mcp and the canonical GitHub repository.

Limitations

  • Registry publication confirms identity metadata; it does not verify runtime behavior or security.

Installation discovery

Find client-oriented install examples and marketplace entry points.

ModelScope MCP Plaza

Marketplace discovery page for Local YDB MCP installation guidance.

Useful for
Find the marketplace installation entry and its npx stdio configuration.

Confirmed

  • The marketplace entry links the canonical repository and exposes an npx stdio configuration for @astandrik/local-ydb-mcp@latest.

Limitations

  • The Tools section is empty, the release version is absent, and LOCAL_YDB_MCP_CONTENT_FORMAT is missing from the environment configuration.
  • The page reports Verified=false and provides no independent runtime or security validation.

CuratedMCP

Marketplace profile with an npx command and canonical project links.

Useful for
Copy a basic npx command and open the canonical repository.

Confirmed

  • The page exposes the canonical repository and a correct npx command for @astandrik/local-ydb-mcp.

Limitations

  • Verified and Read/write are catalog classifications without an artifact version, scan date, or runtime methodology.

MCP.so

Install configuration and browsable tool descriptions for the npm server.

Useful for
Copy an npx client configuration and browse the current tool surface.

Confirmed

  • The page links the canonical repository, uses @astandrik/local-ydb-mcp@latest, and shows modern tool descriptions.

Limitations

  • Its headline says 38 tools instead of 39, and the client configuration is incomplete.
  • The page is not an independent runtime or security check.

Claude Code Marketplaces

Claude-focused marketplace summary of the local stdio server.

Useful for
Discover the server from a Claude-oriented marketplace and follow its repository link.

Confirmed

  • The mirror uses the official Registry identity, canonical repository, and package pin 0.18.0.

Limitations

  • The generated summary does not independently validate package contents, tools, or runtime behavior.
  • Its relative Security link resolves against the marketplace domain instead of the canonical repository.

LobeHub

Client discovery page with install paths and generated feature summaries.

Useful for
Find repository-based install instructions for Codex and other MCP clients.

Confirmed

  • The page links the canonical repository, uses @astandrik/local-ydb-mcp@latest, and reflects broad current capabilities.

Limitations

  • The displayed 1.0.0 is not an MCP release version, and the content is README-derived without independent runtime evidence.

Awesome MCP Servers

Historical discovery link to the community-maintained Databases category.

Useful for
Retain the former discovery location as transparent history of the removed entry.

Confirmed

  • The upstream repository and its Databases section remain available.

Limitations

  • The Local YDB entry is no longer present; this link is retained only as removal history, not current discovery or validation.

Awesome Skills

Agent-skill discovery page with a short project description.

Useful for
Open a lightweight directory page for the companion local-ydb skill.

Confirmed

  • The page identifies local-ydb-toolkit and its Docker-based local-ydb purpose.

Limitations

  • The main text describes an unrelated writing-style skill and leaves the entry in the wrong category.

MCP Store

Repository discovery page with mirrored project documentation.

Useful for
Find the canonical repository and read its install documentation in the directory.

Confirmed

  • The page identifies the correct repository and mirrors project documentation with a plugin pin at 0.17.0.

Limitations

  • The 0.17.0 pin is stale for release 0.18.0, and the page provides no independent validation.

Unyly

Client-oriented directory page with mirrored installation documentation.

Useful for
Review the repository's MCP and Codex installation paths from a client directory.

Confirmed

  • The page links the canonical repository and mirrors the 39-tool README surface.

Limitations

  • Its plugin pin remains at 0.15.4 and the directory labels the entry Not checked.

Vibehackers

Generated client configuration and prerequisite guide.

Useful for
Use its client-specific npx examples as a starting point, then compare them with primary metadata.

Confirmed

  • The page identifies the correct package, repository, stdio transport, and Node.js prerequisite.

Limitations

  • It remains on version 0.14.0, lists only five tools, and incorrectly marks both environment variables as required.

AgentPluginsDirectory.com

Dated directory record for the repository Agent Plugin manifest.

Useful for
Discover the repository plugin and inspect its declared skill and MCP server.

Confirmed

  • AgentPluginsDirectory.com reports that it checked the manifest against Agent Plugins 1.0.0 on 2026-09-07.
  • The checked manifest declares 1 skill and 1 MCP server.

Limitations

  • Manifest validation is not runtime testing or proof of client marketplace availability.

SkillFoxx

Curated catalog card with install commands, fit guidance, and a heuristic risk rating.

Useful for
Find Codex plugin and Gemini CLI install commands, fit guidance, and the comparison with the official ydb-mcp server.

Confirmed

  • SkillFoxx lists the plugin since 2026-09-23 with Codex plugin and Gemini CLI install commands that match the README.
  • Its medium risk level cites Docker container control and DDL or restore mutations that run only after confirm: true.

Limitations

  • The risk level is a heuristic category for tools that run code, make network calls, or read project files, not a code audit.
  • The card shows no package version and notes that Claude Community and Gemini gallery publication were not complete at review time.

MCPNav

Registry-derived directory card with the npm install command and a generic client configuration.

Useful for
Copy the npx install command and a starting client configuration for the current npm package.

Confirmed

  • MCPNav shows version 0.18.2, the npx -y @astandrik/local-ydb-mcp command, and links to the canonical repository and website.
  • The page states that its server data comes from the public MCP Registry and community sources.

Limitations

  • The generic client configuration omits LOCAL_YDB_TOOLKIT_CONFIG, so profile-based tools still need the README configuration step.
  • The card shows no crawl date or tool list and provides no independent runtime or security audit.

Version metadata

Compare release, package, and indexed tool-surface snapshots.

Gilde

Versioned community manifest imported from the Official MCP Registry.

Useful for
Inspect a versioned manifest with package integrity and runtime metadata.

Confirmed

  • The catalog added a 0.18.2 manifest on 2026-09-16 next to the retained 0.16.1 record.
  • Its 0.18.2 tarball SHA-256 matches the npm 0.18.2 artifact.

Limitations

  • Both version manifests expose an empty tools array.
  • Versions 0.17.0, 0.18.0, and 0.18.1 are absent, and the page provides no independent runtime or security audit.

wmcp.sh

Static package analysis with a published grading rubric.

Useful for
See which package version a third-party static analysis actually inspected.

Confirmed

  • The page analyzes @astandrik/local-ydb-mcp version 0.14.1 and detects one tool.

Limitations

  • Its grade and download count do not describe the current 0.18.2 artifact.

Enterprise DNA

Directory snapshot with a package command and partial tool list.

Useful for
Compare an older indexed snapshot with the current server surface.

Confirmed

  • The page links the canonical repository and names the npm package.

Limitations

  • Its 2026-05-28 source snapshot lists only 20 tools and includes stale adoption metadata.

MCP Toplist

Tracked release history and install metadata for the official server ID.

Useful for
Review the older indexed release sequence for the official server ID.

Confirmed

  • The page links the canonical repository and records 11 versions through 0.16.1.

Limitations

  • Version 0.18.0 is absent; rankings, stars, and counts are volatile directory snapshots.

CodeGuilds

Developer directory page that mirrors the project README.

Useful for
Compare the directory's package snapshot with the canonical project.

Confirmed

  • The page identifies the canonical repository and project scope.

Limitations

  • Its Versions section reports 0 and the page lists 38 tools, so it does not reflect the current release contract.

Skiln

Official Registry-derived profile with community availability feedback.

Useful for
Confirm that Skiln indexed the official server identity and source repository.

Confirmed

  • The mirror names the exact server ID, repository, Official Registry source, and version 0.18.0.

Limitations

  • Its install path proposes a repository clone and skills command rather than the canonical npm stdio configuration.
  • The 100% working claim is based on one community vote and is not runtime or security validation.

Timeahead MCPScore

Former repository activity and package-discovery snapshot.

Useful for
Retain the former listing URL and its current availability state for transparency.

Confirmed

  • The listing URL currently redirects to an empty /lander page.

Limitations

  • Earlier score and package claims cannot be confirmed from the currently available page.

PulseMCP

Community directory record linking the maintainer, repository, and server.json metadata.

Useful for
Open the indexed server.json identity and canonical repository from one page.

Confirmed

  • The page shows the exact server ID, maintainer, repository, and a server.json view.

Limitations

  • The release version is not shown; traffic, popularity, download, and star figures are estimates or volatile snapshots.

Change monitoring

Review observations about metadata changes between crawls.

mcpindex.ai

Older Registry metadata and description-drift observation for Local YDB MCP.

Useful for
Check install metadata and whether the public description changed between crawls.

Confirmed

  • The page shows version 0.17.0 and both LOCAL_YDB_TOOLKIT_CONFIG and LOCAL_YDB_MCP_CONTENT_FORMAT.
  • Its semantic screen is dated 2026-07-08.

Limitations

  • The semantic screen does not cover version 0.18.0 or validate runtime behavior.
  • Quality and drift labels describe directory observations, not security findings.

Independent analysis

Inspect third-party capability, policy, and static-analysis reports with their limitations.

Glama

Source-derived overview of the server's operational capabilities.

Useful for
Review a categorized overview of what the server can operate.

Confirmed

  • The page reflects the 39-tool capability surface and links the canonical Security policy.

Limitations

  • This is a README-derived mirror without independent runtime or release-version evidence.

MCP Sentinel

Security-oriented rules report with per-rule methodology text.

Useful for
Inspect which security rule families the service attempts to evaluate.

Confirmed

  • The visible page exposes named rule families, with most rules marked Not assessed.

Limitations

  • No attestation is present, and the attestation API returns 404.
  • The visible rule placeholders do not establish a current package security verdict.

PolicyLayer

Tool authority classification and suggested policy controls.

Useful for
Review which tools can read, write, execute, or delete before setting agent policy.

Confirmed

  • The page enumerates 39 tools classified as 4 destructive, 9 execute, 8 write, and 18 read.

Limitations

  • The record is explicitly Unverified and no remote endpoint was probed.
  • Grade F describes potential authority and blast radius; it does not prove a vulnerability and does not capture every plan-first confirmation guard.

MCP Conformance Census

Sandboxed execution probe of the published npm MCP server.

Useful for
Inspect an independently executed MCP handshake and protocol checks.

Confirmed

  • The census launched @astandrik/local-ydb-mcp@0.14.1, completed the MCP handshake, and enumerated 38 tools.
  • Initialize, ping, tool-list, schema validation, invalid-argument rejection, malformed-JSON survival, and stdout-purity checks passed.

Limitations

  • The immutable snapshot covers version 0.14.1 rather than current version 0.18.2; its protocol checks do not exercise operational tools against a configured local YDB target.
  • Its error-as-result outcome for an unknown tool is measured SDK behavior that the study explicitly does not classify as a failure.

Manifold Manifest

Static manifest, lineage, and tool-surface analysis for an older server version.

Useful for
Inspect which source files and tools a third-party scanner analyzed.

Confirmed

  • The scan covers version 0.16.0, is dated 2026-08-16, and enumerates 39 tools.

Limitations

  • High Risk and other scanner flags are policy signals, not confirmed vulnerabilities in current version 0.18.2.

Forge Registry

Former supply-chain metadata and static-check profile.

Useful for
Retain the former listing URL and its current availability state for transparency.

Confirmed

  • The listing URL currently returns 404.

Limitations

  • Earlier supply-chain claims can no longer be confirmed from the unavailable page.

VerifyMCP

Dated third-party analysis of the published npm artifact and MCP schema.

Useful for
Inspect independent provenance and MCP schema checks for the current published package.

Confirmed

  • VerifyMCP reports that it analyzed version 0.18.2 on 2026-09-07 and verified the published npm artifact and source provenance.
  • VerifyMCP reports that its bounded automatic MCP schema checks completed for that artifact.

Limitations

  • VerifyMCP is beta and its findings are bounded automatic checks.
  • The scan does not verify operational safety on a configured Docker/YDB deployment.

Tashan

Third-party package, provenance, and documentation observations.

Useful for
Inspect the package scan, documentation assessment, and published scoring methodology.

Confirmed

  • Tashan reports no known OSV advisories for version 0.18.2 in its 2026-09-12 scan and signed build provenance.
  • Its documentation assessment covers tool descriptions, worked examples, setup, authentication, and stated limitations.

Limitations

  • The OSV lookup covers this package, not its dependency tree; dependency-based access analysis does not see built-in APIs.
  • Tashan does not test runtime behavior or operational safety on a configured Docker/YDB deployment; its score measures adoption and upkeep, not security.
  • Release-history dates can differ from npm publication dates: Tashan lists 0.18.2 on 2026-09-13, while npm records publication on 2026-08-26.

RoninForge / State of MCP

Third-party registry, manifest, and package availability checks.

Useful for
Inspect dated registry and package checks with the individual probe results.

Confirmed

  • RoninForge reports an active registry entry, a schema-valid server.json, and published npm package version 0.18.2 in its 2026-09-13 census.

Limitations

  • The repository probe reports an HTTP/2 error: response body closed. This probe error does not establish a defect in the package.
  • RoninForge provides no runtime readiness verdict for this package-only server with no declared remote endpoint; metadata checks do not verify Docker/YDB operations.

AgentRank

Automated score built from GitHub stars, commit freshness, issue health, contributors, and dependents.

Useful for
Inspect the repository activity signals behind the score and the published scoring methodology.

Confirmed

  • AgentRank scored the canonical repository on 2026-09-28 from GitHub stars, commit freshness, issue health, contributors, and dependents, and it links the repository and methodology pages.
  • The page reports no npm download data for the package.

Limitations

  • The score measures repository metadata, not security, provenance, or runtime behavior, and the page files the project under Agent Framework rather than MCP server or skill.
  • The score is recomputed daily and the page shows two different weight sets for it, so no numeric value is recorded here.