MCP servers › com.usefreebox › freebox
MCP server · registry snapshot 2026-10-04 · last tested 2026-10-08
com.usefreebox/freebox
Find free stuff near any US ZIP, priced for resale. Live listings, resale estimates, alerts. — the publisher's description
Summary
com.usefreebox/freebox is a remote MCP server listed in the official MCP registry at version 1.0.0. On 2026-10-08 it required sign-in before listing anything, so we could not read its inventory. We never use a credential its operator did not give us. 1 of the 18 checks that apply to it was exercised. Results of the checks are published only after we have verified them and told the publisher.
Needs the operator's credential
The server requires sign-in. We never use a credential its operator did not give us, so most checks could not run. No security score is given; a check we did not run is never counted as passed.
Key facts
- Runs
- remote (hosted by the publisher)
- Transport
- streamable HTTP
- Sign-in
- required
- Repository
- public
- Topic
- commerce-and-marketingAI-classified
- Last tested
- 2026-10-08
- Inventory: not run · needs the operator's credential
- Hidden instructions: not run · needs the operator's credential
- Real execution: not run · needs the operator's credential
- Secret leak: not run · needs the operator's credential
- Internal addresses: not run · needs the operator's credential
- Unconfirmed changes: not run · needs the operator's credential
- Bad input: not run · needs the operator's credential
- Model requests: not run · needs the operator's credential
- Sensitive questions: not run · needs the operator's credential
- Folder boundary: not run · needs the operator's credential
- Log leaks: not run · needs the operator's credential
- Hidden content: not run · needs the operator's credential
- Fake assistant turns: not run · needs the operator's credential
- Token passthrough: not run · needs the operator's credential
- Token audience: not run · needs the operator's credential
- Sign-in redirect: not run · our policy
- Consent handling: not testable from outside
- Sign-in metadata: exercised
1 exercised17 not run (reason given)0 not applicable
How fresh this is
- Live-tested
- attempted, see below
- Last tested
- 2026-10-08
- Registry data
- snapshot 2026-10-04
- Package and repository
- checked 2026-10-06
- Engine
- mcp-runtime-engine@0.1.0 · sdk@1.32.0
Security testing
What did we test, and what did we leave out?
18 checks · features #1, #2Each check ends in exactly one state: exercised, not run (with the reason), or not applicable (with the reason). 1 of the 18 checks that apply to it was exercised. Results of the checks are published only after we have verified them and told the publisher.
- 18Sign-in metadata
oauth-url-schemeChecks the published sign-in metadata for unsafe URLs.exercised
- 1Inventory
tool-listReads the declared tools, resources and prompts.The server requires sign-in, and we never use a credential its operator did not give us.not run · needs the operator's credential - 2Hidden instructions
description-poisoningLooks for hidden instructions in tool descriptions.The server requires sign-in, and we never use a credential its operator did not give us.not run · needs the operator's credential - 3Real execution
real-executionCalls a tool and checks what really happens.The server requires sign-in, and we never use a credential its operator did not give us.not run · needs the operator's credential - 4Secret leak
canary-leakPlants a fake secret and checks whether it leaks.The server requires sign-in, and we never use a credential its operator did not give us.not run · needs the operator's credential - 5Internal addresses
ssrfChecks whether a tool can be steered to internal addresses.The server requires sign-in, and we never use a credential its operator did not give us.not run · needs the operator's credential - 6Unconfirmed changes
write-without-confirmationChecks whether tools that change data act without asking.The server requires sign-in, and we never use a credential its operator did not give us.not run · needs the operator's credential - 7Bad input
error-handlingSends bad input and watches how the server answers.The server requires sign-in, and we never use a credential its operator did not give us.not run · needs the operator's credential - 8Model requests
samplingChecks whether the server asks the client's model to act for it.The server requires sign-in, and we never use a credential its operator did not give us.not run · needs the operator's credential - 9Sensitive questions
elicitation-sensitive-dataChecks whether the server asks users for sensitive data.The server requires sign-in, and we never use a credential its operator did not give us.not run · needs the operator's credential - 10Folder boundary
root-boundaryChecks whether the server reaches outside the folders it was given.The server requires sign-in, and we never use a credential its operator did not give us.not run · needs the operator's credential - 11Log leaks
logging-side-channelChecks whether log messages carry data they should not.The server requires sign-in, and we never use a credential its operator did not give us.not run · needs the operator's credential - 12Hidden content
audience-hidingChecks resources that hide content from the user.The server requires sign-in, and we never use a credential its operator did not give us.not run · needs the operator's credential - 13Fake assistant turns
fake-assistant-turnChecks prompts that pose as the assistant's own words.The server requires sign-in, and we never use a credential its operator did not give us.not run · needs the operator's credential - 14Token passthrough
token-passthroughChecks whether the server forwards a user's token to other services.Needs a real token issued by the server's own sign-in service, which only its operator can give us.not run · needs the operator's credential - 15Token audience
token-audience-validationChecks whether tokens meant for another service are accepted.Needs a real token issued by the server's own sign-in service, which only its operator can give us.not run · needs the operator's credential - 16Sign-in redirect
open-redirectChecks the sign-in redirect for abuse.Testing the sign-in redirect means sending probes to the operator's sign-in service, which we do not do without their authorization.not run · our policy - 17Consent handling
confused-deputyChecks consent handling when one service acts for another.Depends on the operator's own consent screen, which differs per server and cannot be tested from outside.not testable from outside
Source: our own test, 2026-10-08, mcp-runtime-engine@0.1.0. Which checks count and why follows our published scoring model.
What happened during the test?
Feature #8The steps in order, as the test record holds them.
- 0 msStarted a session with the server's remote endpoint
- The server asked for sign-in before listing anything.
- 2,758 msFinished: 1 check exercised.
What it is
Does the registry listing match what we found?
Feature #6The registry verifies a package once, when it is published, and does not re-check it. A difference below is about the listing, not a judgement of the publisher.
| Registry says | We found | Result | Source · date |
|---|---|---|---|
| Remote endpoint usefreebox.com/api/mcp | Endpoint answered and asked for sign-in | matches | our test · 2026-10-08 |
| No credential declared as required | Required sign-in | differs | our test · 2026-10-08 |
| Repository github.com/howdamain/freebox-mcp | Opens publicly | matches | api.github.com · 2026-10-06 |
Who made it?
Feature #7 · lineage
Facts about the publisher. We do not turn them into a trust score.
- Namespace
- com.usefreebox
- GitHub owner
- a personal account (howdamain)
- Repository
- github.com/howdamain/freebox-mcp
- Stars
- 0
- Repository age
- 31–90 days
- Last push
- 31–90 days ago
- Archived
- no
Source: the registry entry and api.github.com · 2026-10-06.
Choosing
Common questions about com.usefreebox/freebox
Answered from the data aboveDoes com.usefreebox/freebox need an API key or sign-in?
It required sign-in on 2026-10-08. The registry entry declares no required credential; no declaration is not a guarantee.
Has com.usefreebox/freebox been security tested?
Partly. 1 of the 18 checks that apply to it was exercised. The server requires sign-in. We never use a credential its operator did not give us, so most checks could not run. No security verdict is published before verification.
Where is the source code of com.usefreebox/freebox?
In github.com/howdamain/freebox-mcp, which opens publicly.
Reference
How is it classified?
18 fields
One value per field, each with its source. Fields written by AI models are marked. A field with no value says why.
“Not stated” means the source did not state it; “does not apply” means it does not apply to this kind of server; “our limit” means our own lookup failed.
Cite or correct this page
Sources and corrections
Suggested citation
ProtocolProbe. “com.usefreebox/freebox: MCP server record.” Data checked 2026-10-08. https://protocolprobe.com/mcp/servers/com.usefreebox/freebox
Figures are valid for the date shown. Our facts on this page are CC BY 4.0: reuse them with a link and the check date. Quoted text (the publisher’s descriptions, website quotes, tool names) is not ours to license.
As JSON: this record in the API · API documentation.
Something wrong, or is this yours?
If a fact here is wrong, tell us and we will re-check it. If you operate this server, you can authorize a full test.
Write to hello@protocolprobe.com · corrections log · methodology