M

mcp-pin

Pins the MCP tool descriptions and schemas your client approved and stops the session when a server changes them, with a signed public log of 400+ servers

gautamtalksdev/mcp-pin · v0.2.3 · Tools & Integrations

GautamTalksDevcaution

Trust Score

72

Security

64

Surfaces

2

What is mcp-pin?

mcp-pin is a published tools & integrations plugin for AI coding agents in the gemini-cli ecosystem, developed by GautamTalksDev and distributed through the HOL AI plugin registry. Pins the MCP tool descriptions and schemas your client approved and stops the session when a server changes them, with a signed public log of 400+ servers

Canonical slug
gautamtalksdev/mcp-pin
Version
v0.2.3 · updated Oct 9, 2026

Trust & Reputation

HOL Trust Score
72

Factor Analysis

Per-metric points (0–100 each) combined via a weighted average into the overall score.

Installability
64pts
Maintenance
100pts
MCP Posture
100pts
Plugin Security
64pts
Provenance
70pts
Publisher Quality
75pts

Registry Snapshot

Publisher verification
No
Marketplace source
Unknown
Scanner
Broker fallback
Safety label
caution
Digest verified
Yes
1 bundled skill — copy or download SKILL.mdOpen skills

Trust & reputation

Trust & Reputation

HOL Trust Score
72

Factor Analysis

Per-metric points (0–100 each) combined via a weighted average into the overall score.

Installability
64pts
Maintenance
100pts
MCP Posture
100pts
Plugin Security
64pts
Provenance
70pts
Publisher Quality
75pts

Provenance

Plugin root
.
Source repo
https://github.com/GautamTalksDev/mcp-pin
Source commit
dc7279320e44…
Publisher verified
No
Owner verified
Not owner verified

Continuous scanner CI detected

No action is required. This plugin receives the full trust score.

Verified badge not detected

Add the HOL verified badge to the repository README to score +2% trust. Plugin owners can open that pull request from Guard Plugins.

Security Posture

caution
Safety label
64
Security score
0
High findings
Provider
registry-broker-fallback
Grade
D · caution
Version
Unknown
cisco-skill-scanner: unknown

Findings

mediumpublishabilitypublishability.link.missing.websiteURL

websiteURL should be present for marketplace readiness.

mediumpublishabilitypublishability.link.missing.privacyPolicyURL

privacyPolicyURL should be present for marketplace readiness.

mediumpublishabilitypublishability.link.missing.termsOfServiceURL

termsOfServiceURL should be present for marketplace readiness.

infoskill-securityskill-scan.unavailable

Cisco skill scanner timed out after 60000 ms

mcp-pin — Frequently asked questions

What is mcp-pin?
mcp-pin is an AI plugin in the HOL registry. Pins the MCP tool descriptions and schemas your client approved and stops the session when a server changes them, with a signed public log of 400+ servers
How do I install mcp-pin?
Install mcp-pin in your harness: Cursor — npx skills add GautamTalksDev/mcp-pin; Antigravity CLI — npx skills add GautamTalksDev/mcp-pin; MCP — git clone https://github.com/GautamTalksDev/mcp-pin. Full step-by-step guidance is on the HOL plugin page.
How do I install mcp-pin in Cursor?
To install mcp-pin in Cursor, start with npx skills add GautamTalksDev/mcp-pin. The complete step-by-step install guide for Cursor is on the HOL plugin page.
How do I install mcp-pin in Antigravity CLI?
To install mcp-pin in Antigravity CLI, start with npx skills add GautamTalksDev/mcp-pin. The complete step-by-step install guide for Antigravity CLI is on the HOL plugin page.
How do I install mcp-pin in MCP?
To install mcp-pin in MCP, start with git clone https://github.com/GautamTalksDev/mcp-pin. The complete step-by-step install guide for MCP is on the HOL plugin page.
Is mcp-pin free?
Pricing for mcp-pin is published on its HOL plugin page when the maker schedules a launch.
Who publishes mcp-pin?
mcp-pin is published by GautamTalksDev and listed on HOL.
Is mcp-pin available now?
mcp-pin availability is listed on its HOL plugin page.

Install Guidance

Install in Cursor

Install the bundled skills into Cursor with the open Skills CLI.

Skills CLI docs
  1. 1

    Install with the Skills CLI

    The open Skills CLI detects installed agents and installs this plugin's skills for Cursor.

    shell
  2. 2

    Restart and verify

    Start a new Cursor session and confirm the skill is listed before relying on it.

Plugin Manifest

{
  "name": "mcp-pin",
  "version": "0.2.3",
  "description": "Know when an MCP server's tools change after you approved them: check public servers against mcp-pin's signed log, and see what your pinned servers changed.",
  "mcpServers": "./.registry/mcp.json",
  "contextFileName": "GEMINI.md",
  "repository": "https://github.com/GautamTalksDev/mcp-pin",
  "interface": {
    "displayName": "mcp-pin",
    "developerName": "GautamTalksDev"
  },
  "skills": "./",
  "holManifestOrigin": "repository",
  "registryIndexVersion": 5
}

Marketplace Source

Repo URL
https://github.com/GautamTalksDev/mcp-pin
Marketplace path
Unknown
Source path
.
Install policy
Unspecified

Skills

1 SKILL.md file ship with this plugin. Preview, copy, or download each one, then install them with the Skills CLI.

Share
skills-cli
  • mcp-pin

    plugins/mcp-pin/skills/mcp-pin/SKILL.md

    Check an MCP server before trusting it, protect MCP servers with mcp-pin, and explain a block when mcp-pin stops a server whose tool definitions changed after approval. Use when the user adds, installs or approves an MCP server, asks whether a server's tools changed, asks how to protect their MCP servers, or when an MCP server fails with an "mcp-pin blocked" error.

    Raw SKILL.md

File Inventory

.codex-plugin/plugin.json

plugin-manifest

475 bytes

645961cc5b54e2c3…

.cursor-plugin/marketplace.json

file

330 bytes

08f7803e149a5a7d…

.registry/mcp.json

mcp-config

83 bytes

1f1a3b9042a23e0b…

gemini-extension.json

file

375 bytes

087c6f09b0f9bc88…

GEMINI.md

file

1,151 bytes

be77f52ce9355340…

package-lock.json

file

311 bytes

c770ffde298b62bd…

package.json

file

1,360 bytes

eb06aa61ed799a79…

plugins/mcp-pin/skills/mcp-pin/SKILL.md

skill

2,166 bytes

35313a062d785392…

README.md

file

32,341 bytes

36723613674e7a53…

SECURITY.md

file

3,553 bytes

3bb162b0836356fc…