Agent Tool Risk Report
mcp.wix.com
Generated by the Conformant public-subset battery and anchored to the Sigstore/Rekor transparency log. The grade below is tamper-evident: recompute the report’s canonical hash and compare it with the Rekor entry.
https://mcp.wix.com/sse
public-subset battery v2.0.0 · Fri, 14 Aug 2026 07:38:31 GMT · report 2d4d49d7f80d8b24
A
Overall A (100/100). Cleared for connection review: no material findings on the public battery. Public-subset battery: several checks require vendor credentials; full coverage via Cleared-to-Connect.
Second axis · not part of the grade
Spec 2026-07-28 readiness
NOT OBSERVABLE
Not determinable from the public probe. Credential-gated endpoints do not complete an unauthenticated handshake, so the negotiated revision cannot be read. This is a coverage limit, not a finding.
3 of 6 signals evaluable on the public probe · deprecation windows close 2027-07-28
RDY-01Transport generationcurrent
Streamable HTTP: the transport the 2026-07-28 stateless core is built on.
RDY-02Protocol revisionn/a
Revision negotiation could not be observed.
RDY-03Stateless corecurrent
Operates without a session header, matching the 2026-07-28 stateless core.
RDY-04Client registrationpartial
Exposes a Dynamic Client Registration endpoint and does not advertise CIMD support. DCR is deprecated with a window closing 2027-07-28, but CIMD advertisement is not yet consistently published, so this is reported as a migration item rather than a removal finding.
RDY-05Cacheable tool catalogn/a
Tool catalog cache posture not observable.
RDY-06Deprecated capabilitiesn/a
Capability set not observable.
CFM-01AuthenticationPASS
Endpoint refuses unauthenticated MCP initialize.
CFM-02Authorization (OAuth)PASS
401 challenge with WWW-Authenticate and RFC 9728 protected-resource metadata: spec-conformant OAuth discovery.
CFM-03Tool poisoningN/A
Tool surface is behind authentication: requires the authenticated battery (Cleared-to-Connect).
CFM-04Scopes & least privilegeN/A
Tool surface is behind authentication: requires the authenticated battery (Cleared-to-Connect).
CFM-05Secrets exposureN/A
Server metadata is behind authentication: requires the authenticated battery (Cleared-to-Connect).
CFM-06Destructive-tool guardrailsN/A
Tool surface is behind authentication: requires the authenticated battery (Cleared-to-Connect).
CFM-08Transport securityPASS
TLS transport.
CFM-10Exposed configuration surfacePASS
No configuration or credential documents served at well-known paths.
CFM-09Command-injection exposure (advisory)INFO
Tool surface is behind authentication: the command-execution sink surface is not publicly visible. STDIO config-injection hardening (OX Security, 2026-04-15) is attested via Cleared-to-Connect, not remotely tested.
✔ anchoredsha256:2d4d49d7f80d…94385a→ Sigstore/Rekor logIndex 2463223795verify ↗tamper-evident · independently checkable Embed this grade
The badge URL is stable per server: weekly re-verification updates the grade and date in place. It links to this live anchored report.

<a href="https://conformant.io/report/2d4d49d7f80d8b24" target="_blank" rel="noopener">
<img src="https://conformant.io/api/badge?server=https%3A%2F%2Fmcp.wix.com%2Fsse" alt="Conformant security grade" width="232" height="44" />
</a>