Searches Russian construction and real estate companies, house projects, and pricing across major cities.
Do not connect
The assessed surface is high-risk. Remediate the findings before connecting.
Scanned 28 days ago Due for re-check
A server can change after it's graded. Re-run the automated scan to refresh this report.
This grade is deterministic and reproducible: the same server surface always yields the same grade under a given algorithm version. It is a real automated assessment computed by the MCPGrade engine from what the probe actually observed — not a fabricated or opinion score. It is not a manual human pentest, so it can miss context-specific risks.
Every signal below was measured directly by the automated probe. The grade is derived only from evidence like this — nothing is assumed.
The MCP Market Russia MCP server exposes 24 tools, focused primarily on general-purpose capabilities. Its published description reads: "Searches Russian construction and real estate companies, house projects, and pricing across major cities". It communicates over Streamable HTTP using the 2025-06-18 protocol revision, and does not require authorization to connect. MCPGrade currently rates MCP Market Russia D- — the assessed surface is high-risk and should be remediated before use. Its most notable findings include "Cross-tool shadowing" and "Cross-tool shadowing". This report is a deterministic, reproducible automated assessment: the same observed surface always yields the same grade under a given algorithm version, and it is refreshed as new scans arrive and free to read — but it is not a substitute for a manual human security review. Always re-check MCP Market Russia's advertised tools, transport security, and authorization posture before connecting an autonomous agent or sharing sensitive context with it.
Add MCP Market Russia to an MCP client using the endpoint below. Review the grade and findings above before granting an autonomous agent access.
MCP endpoint
https://mcp-market.ru/mcpStreamable HTTP transport. This is the MCP endpoint, not a website — paste it into your MCP client server list rather than a browser.
Captured passively during the read-only scan. Click any value to find servers that match it.
The tools this server advertises via tools/list — names, purposes, and the parameters each accepts, exactly as enumerated read-only.
Search Russian construction companies by category, region, and budget. Returns company name, rating, prices, website, and phone number. Args: query: Free text search query (e.g. 'каркасные дома недоро
Search house building projects by area, floors, material, and price. Returns project specifications, price, direct link, and company contacts. Args: area_min: Minimum house area in square meters. Set
Sorted worst-first. Each finding shows its severity, what it means, its OWASP MCP Top-10 mapping, and a recommended fix — the check id links to the exact methodology row that produced it.
tool: get_company
A tool description tries to alter the model’s use of another tool.
mpany UUID from search_companies resultsRecommendationDescriptions must describe only their own tool.
tool: get_project
A tool description tries to alter the model’s use of another tool.
oject UUID from search_projects resultsRecommendationDescriptions must describe only their own tool.
tool: get_lead_status
A tool description tries to alter the model’s use of another tool.
ead created via request_quote. lead_id: UUID returned by request_quote api_kRecommendationDescriptions must describe only their own tool.
tool: get_lead_status
The input schema declares a parameter that asks the caller to hand over a password, key, token, or other secret — a credential-harvest / token-passthrough risk. (Bare pagination `token` params are excluded.)
parameter "api_key"RecommendationNever pass secrets as tool arguments; authenticate out-of-band and remove credential parameters from the schema.
tool: (server instructions)
A tool description tries to alter the model’s use of another tool.
ilable tools: - search_companies — Find companies by category, region, budget. RRecommendationDescriptions must describe only their own tool.
The server accepts tool enumeration (and likely invocation) with no authentication.
RecommendationRequire OAuth 2.1 authorization for any server exposing non-public tools.
tool: search_companies
The server advertises open-world / broadly-scoped capabilities.
no annotations on write-capable tool "search_companies"RecommendationScope tools to the minimum needed.
tool: search_projects
The server advertises open-world / broadly-scoped capabilities.
no annotations on write-capable tool "search_projects"RecommendationScope tools to the minimum needed.
tool: request_quote
The server advertises open-world / broadly-scoped capabilities.
no annotations on write-capable tool "request_quote"RecommendationScope tools to the minimum needed.
Validates up to 75,000 URLs per job checking status codes, redirects, and response times.
Pay-per-call AI API marketplace with 47 endpoints — OCR, TTS, LLM chat, image generation, weather, and crypto pricing — paid via x402 USDC micropayments on Base.
EPA drinking water quality data in plain English, providing AI agents with tap water quality information for US cities via nine public-data tools.
AI phone answering and appointment booking tools for service businesses.
Aggregates Romanian TV, streaming, cinema, and theater listings for AI agents.
Agent-callable Parallax services — catalog browsing, pricing, project start, and booking.
Compare 2-3 construction companies side by side on prices, ratings, number of projects, and specialization. Args: company_ids: Comma-separated company UUIDs to compare (2-3 IDs). Example: 'uuid1,uuid2
Calculate estimated construction cost based on real market data from the catalog. Uses average price per m² by material and region from actual company prices and projects. Args: area: House area in sq
Get full company profile including contacts, prices, rating, reviews, and list of house projects. Args: company_id: Company UUID from search_companies results
Get detailed house project information including specifications, price, features, and company contacts. Args: project_id: Project UUID from search_projects results
Get all company categories with the number of companies in each category.
Get all available regions with the number of companies in each region.
Get catalog statistics: total companies, projects, regions, categories, agent queries today, and leads generated.
Send a quote request to a construction company on behalf of the user. Returns confirmation with lead ID and company contact details. Args: company_id: Target company UUID (required) project_id: Specif
Get comprehensive market analytics for the Russian construction market. Returns: average prices, top companies by rating, market size, price distribution. Perfect for investors, analysts, and companie
Smart lead generation: find the best construction companies matching your criteria. Perfect for finding contractors, generating leads, or market research. Args: region: Filter by region name (e.g. 'Мо
Compare construction prices across regions and categories. Returns detailed price statistics, percentiles, and regional rankings. Args: regions: Comma-separated regions to compare (e.g. 'Москва,Санкт-
Get FULL company portfolio: details, all projects, prices, reviews, contacts. Comprehensive dossier for due diligence or hiring decisions. Args: company_slug: Company slug identifier (from search resu
Generate a comprehensive market report for a specific region. Includes: market size, price tiers, top players, contact availability, competitive landscape. Perfect for investors, business development,
Reputation summary from the aggregate star rating and review count, benchmarked against the region average. Provide company_slug for one company, or region/category for a market overview. Review texts
AI-powered contractor recommendation. Finds the best matching companies based on budget, region, quality requirements. Returns ranked list with match scores.
Estimate construction project cost based on area, region, category and quality level (economy/standard/premium). Uses real market data from our database.
Current market snapshot by region, category, rating tier and price segment. This is a distribution of the catalogue as it stands now, not a time series: we do not store historical snapshots, so no gro
Get comprehensive company profile with all available data - contacts, projects, pricing, reviews analysis, market position, and comparison with competitors in same region.
Compare construction markets across regions. Provide comma-separated region names. Shows companies count, ratings, prices, contact availability for each region side by side.
Export search results as CSV text (UTF-8 with BOM, Excel-friendly). entity: 'companies' or 'projects' query: free-text search in name/description category, region: filter fields budget_max: for compan
Natural-language contractor search. Pass a free-form Russian brief (e.g. "хочу каркасный дом 180 кв.м в Подмосковье до 15 млн") and get top-N matching contractors plus an explanation of how the brief
Check the status of a lead created via request_quote. lead_id: UUID returned by request_quote api_key: the api_key used when the lead was created Returns JSON with status (new/contacted/won/lost), com