Add MseeP.ai badge - #284
Open
mseep-ai wants to merge 1 commit into
Open
Conversation
There was a problem hiding this comment.
Review mode: initial
Findings
No issues found. The change adds a single image badge link to the README. This is a minor, non-functional change with no impact on correctness, security, performance, or maintainability.
- [Minor] The badge image is loaded from an external domain (
https://mseep.net/). If that domain is compromised, the image could be replaced with malicious content (e.g., a phishing image or tracking pixel). However, this is common practice for open-source badges and the risk is low. Consider hosting the badge image within the repository or using a trusted badge service to eliminate this dependency.
Summary
Review mode: initial. The PR adds a security badge to the README. No code or logic changes. Residual risks: the badge image is externally hosted, which could be a vector for content replacement or tracking. Suggested improvement: host the badge internally or use a well-known badge service. Otherwise, the change is acceptable.
Testing
Not run (no code changes to test).
Open Cowork Bot
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Hi there,
This pull request shares a security update on open-cowork.
We also have an entry for open-cowork in our directory, MseeP.ai, where we provide regular security and trust updates on your app.
We invite you to add our badge for your MCP server to your README to help your users learn from a third party that provides ongoing validation of open-cowork.
You can easily take control over your listing for free: visit it at https://mseep.ai/app/opencoworkai-open-cowork.
Thanks,
The MseeP Team
MCP servers you can trust
Here are our latest evaluation results of open-cowork
Security Scan Results
Security Score: 78/100
Risk Level: moderate
Scan Date: 2026-07-06
Score starts at 100, deducts points for security issues, and adds points for security best practices
Detected Vulnerabilities
High Severity
Medium Severity
@aws-sdk/xml-builder
@hono/node-server
@protobufjs/utf8
... and 28 more medium severity vulnerabilities
Security Findings
Medium Severity Issues
This security assessment was conducted by MseeP.ai, an independent security validation service for MCP servers. Visit our website to learn more about our security reviews.