Summary
shulan-mcp v1.0.0 passed all eight phases of Sigil's automated security scan with no findings detected. The scan analyzed 13 files for install hooks, dangerous code patterns, network exfiltration, credential access, obfuscation, provenance, prompt injection, and skill security signals.
Package description: 商业数据调研与报告生成。当用户需要行业数据、达人清单、招标汇总、企业洞察、招聘信号、舆情趋势,或需要把问题拆解为可执行的数据任务时使用。通过数懒(ShuLan)MCP 工具调用 AI 数据中台。
v1.0.0
30 August 2026, 06:58 UTC
by Sigil Bot
Risk Score
0
Findings
0
Files Scanned
13
Provenance
No findings detected. This package passed all 13 file scans with a verdict of LOW RISK.
Badge
Markdown
[](https://sigilsec.ai/scans/53D31D24-9881-4C2D-9F81-AC4035B62CC6)HTML
<a href="https://sigilsec.ai/scans/53D31D24-9881-4C2D-9F81-AC4035B62CC6"><img src="https://sigilsec.ai/badge/clawhub/shulan-mcp" alt="Sigil Scan"></a>Run This Scan Yourself
Scan your own packages
Run Sigil locally to audit any package before it touches your codebase.
Sigil Pro
Cloud scanning, AI investigation, web dashboard, and CI/CD integration. 14-day free trial.
Start free trial →Get threat intelligence and product updates
Security research, new threat signatures, and product updates. No spam.
Other clawhub scans
Believe this result is incorrect? Request a review or see our Terms of Service and Methodology.