
Security News
Insecure Agents Podcast: How to Keep AI Agents From Bypassing Security Controls
Socket CTO Ahmad Nassri discusses how to keep AI agents from bypassing package blocks, limit credential access, and monitor their actions.
jsonshim-mcp
Advanced tools
One-file MCP stdio server for JSON recovery in agent loops. 218/300 exact on MALFORMED-300, 0 invented values, 55 false refusals. Standard library only, CC0.
A one-file MCP stdio server that gives an agent two tools — recover_json and
classify_json_failure — for the case where a model was asked for JSON and
returned something else. Standard library only, no install, no network call,
CC0 1.0.
Measured on the same 300 cases as the published leaderboard: 218 of 300 exact, 193 of 275 recoverable, 0 of 25 unrecoverable invented, and 55 false refusals. It never fabricates a value; it pays for that by refusing 55 recoverable documents it could have salvaged.
Full page with category breakdown: https://toolkitlabs.org/tools/jsonshim-mcp/?s=npm-jsonshim-mcp102
npx -y jsonshim-mcp # runs the server on stdio
# or: npm i jsonshim-mcp
The server file lands at node_modules/jsonshim-mcp/jsonshim_mcp.py. Or download
directly (same bytes): https://toolkitlabs.org/tools/jsonshim-mcp/jsonshim_mcp.py
{
"mcpServers": {
"jsonshim": {
"command": "npx",
"args": ["-y", "jsonshim-mcp"]
}
}
}
The jsonshim-mcp binary is a small Node launcher that runs the shipped
jsonshim_mcp.py under python3 -u and pipes stdio straight through. It needs a
Python 3.8+ on PATH (set JSONSHIM_PYTHON to an absolute path if yours is
elsewhere); it exits non-zero with a readable message if there is none. The server
itself installs nothing and imports nothing outside the standard library.
If you would rather point at the file directly, it still lands at
node_modules/jsonshim-mcp/jsonshim_mcp.py and python3 <that path> is an
equivalent command/args pair.
| tool | what it does |
|---|---|
recover_json | best-effort salvage of malformed model JSON |
classify_json_failure | names the failure mode without inventing values |
It is weaker than json-repair (264/275 recoverable) and not the same code
as jsonshim (282/300 exact). If you want the strongest recovery, this is not
it. If you want a conservative MCP tool that refuses rather than invents, it is.
Free leaderboard: https://toolkitlabs.org/leaderboard/?s=npm-jsonshim-mcp102
The open 12 cases per suite are a sample. The full labelled sets — every case with the rationale for its label, and the sealed answers — are EUR 29 each:
Nothing in this package is gated behind them.
FAQs
One-file MCP stdio server for JSON recovery in agent loops. 218/300 exact on MALFORMED-300, 0 invented values, 55 false refusals. Standard library only, CC0.
The npm package jsonshim-mcp receives a total of 57 weekly downloads. As such, jsonshim-mcp popularity was classified as not popular.
We found that jsonshim-mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
Socket CTO Ahmad Nassri discusses how to keep AI agents from bypassing package blocks, limit credential access, and monitor their actions.

Security News
GPT-6 Astra tried to plant malicious code in simulated open source projects using fake GitHub accounts and deceptive PRs during an assigned CTF challenge.

Security News
upm uses Node.js to deliver fast npm installs in about 250 KB, with a JavaScript API and security defaults.