Close Open Privacy Scan

bolt Snapshot: commit da4e16d
science engine v1.23
schedule 2026-07-27T10:12:50.547181+00:00

verified_user No application data leak found

No high-confidence exfiltration was found in application code.

smart_toy MCP server detected: mcp — detected in dependencies, not a safety judgment.

App Privacy Score

82 /100
Low privacy risk

Low risk · 88 finding(s)

Based on: 1 first-party package(s) · 2/2 deps analyzed

Dependency score: 82 (Low risk)

bar_chart Score Breakdown

egress −15
env_fs −3

list Scan Summary

0 high 0 medium 88 low
First-party packages: 1
Dependency packages: 2
Ecosystem: python

swap_horiz External domains

::ffff:192.168.0.1api.polyhaven.comapi.sketchfab.combrotlipy.readthedocs.iodatatracker.ietf.orgdeveloper.mozilla.orgdocs.python.orggithub.comhttpbin.orghyperhuman.deemos.commodelcontextprotocol.iomüller.deother.comqueue.fal.runstackoverflow.comtools.ietf.orgwww.rfc-editor.orgxn--fiqs8s.icom.museum

</> First-Party Code

</> Dependencies

mcp

python dependency
expand_more 39 low-confidence finding(s)
low env_fs Environment-variable access. 16 locations
low egress Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 6 locations
low env_fs Filesystem access. 15 locations
low egress Hardcoded external endpoint. Review what data is sent to this destination. 2 locations