Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
git clone --depth 1 https://github.com/varvararatta/botfactory-mcpWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/mcp/varvararatta/botfactory-mcp/submissions-ecommerce_mcp)<a href="https://agentmods.dev/mcp/varvararatta/botfactory-mcp/submissions-ecommerce_mcp"><img src="https://agentmods.dev/badge/mcp/varvararatta/botfactory-mcp/submissions-ecommerce_mcp/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/mcp/varvararatta/botfactory-mcp/submissions-ecommerce_mcp"><img src="https://agentmods.dev/badge/mcp/varvararatta/botfactory-mcp/submissions-ecommerce_mcp.svg" alt="Reviewed on agentmods" width="80" height="20"></a>Grade A, and why
ecommerce_mcp scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 9d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
The source is not reproduced here
No licence file
A repository with no LICENSE is all rights reserved by default, so the body is not copied here. The metadata, the measurements and the link are.
What else server.json configures
This page is one entry in a file that holds 45. Installing the file brings all of them; each is measured and scanned on its own page.
- MCP server air_quality_mcp A not measured
- MCP server country_data_mcp A not measured
- MCP server crypto_prices_mcp A not measured
- MCP server currency_converter_mcp A not measured
- MCP server data_compute_stats_mcp A not measured
- MCP server dictionary_lexicon_mcp A not measured
- MCP server dns_lookup_mcp A not measured
- MCP server earthquake_monitor_mcp A not measured
- MCP server education_mcp A not measured
- MCP server environment_nature_mcp A not measured
- MCP server finance_fintech_mcp A not measured
- MCP server git_diff_mcp A not measured
- MCP server github_public_repos_mcp A not measured
- MCP server hacker_news_mcp A not measured
- MCP server home_automation_mcp A not measured
- MCP server htmlpdf_transform_mcp A not measured
- MCP server ip_geolocation_mcp A not measured
- MCP server legal_mcp A not measured
- MCP server marketing_mcp A not measured
- MCP server met_museum_mcp A not measured
- MCP server name_demographics_mcp A not measured
- MCP server npm_package_info_mcp A not measured
- MCP server open_food_facts_mcp A not measured
- MCP server os_automation_mcp A not measured
- MCP server product_management_mcp A not measured
- MCP server prozorro_tender_monitor_mcp A not measured
- MCP server public_data_ukraine_mcp A not measured
- MCP server public_holidays_mcp A not measured
- MCP server real_estate_mcp A not measured
- MCP server research_mcp A not measured
- MCP server security_mcp A not measured
- MCP server speechtotext_mcp A not measured
- MCP server sunrise_sunset_mcp A not measured
- MCP server support_service_management_mcp A not measured
- MCP server text_intelligence_mcp A not measured
- MCP server texttospeech_mcp A not measured
- MCP server translation_services_mcp A not measured
- MCP server travel_transportation_mcp A not measured
- MCP server tv_maze_mcp A not measured
- MCP server ua_e_commerce_price_tracker_mcp A not measured
- MCP server ua_postal_tracking_mcp A not measured
- MCP server uk_postcodes_mcp A not measured
- MCP server web_content_extract_mcp A not measured
- MCP server world_bank_indicators_mcp A not measured
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 9d ago First seen · 6 lines scan A dfcff5f82f6e
ecommerce_mcp is an MCP server published in the GitHub repository varvararatta/botfactory-mcp (0 stars, last pushed 1mo ago), with no licence file. Its token cost is not measured: an MCP server costs its tool schemas, not its config file. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other mcp servers, from other repositories
mcp-shopify-admin
MCP server for the Shopify Admin API: products, orders, customers, inventory, discounts. Runs locally from the mcp-shopify-admin npm package. Needs 9 environment variables to run.
gunbroker
GunBroker MCP Pack — wraps the GunBroker firearms-marketplace API. Remote server at gateway.pipeworx.io.
amzscout-skill-mcp
Amazon research from AMZScout data: analyze products & niches, keywords/PPC, and brand catalogs. Remote server at chatbot.amzscout.net.
agentbank-merchant-mcp
Merchant-side MCP server for agentbank — read your orders + live Curless wallet balance from Claude, authenticated by your Curless API key via env (no OAuth). Runs locally from the @curless/agentbank-merchant-mcp npm package.
ecommerce-intel-mcp
Product intel: Amazon, AliExpress, Shopify, TikTok Shop, ads and search interest. Remote server at themineworks--ecommerce-intel-mcp.apify.actor.
macfax
Used-Mac market: quality-gated listings with deep links, asking-price stats, trust checks, alerts. Remote server at macfax.com.