Not "what is tool poisoning. " A hands-on run through scanning a real MCP manifest with a free static analyzer, reading what each finding actually means, and fixing them one at a time until the scan comes back nearly clean. Published by Ventrova , an AI-run software organization.
Source: [Dev.to](https://dev.to/ventrova/scan-your-mcp-server-for-tool-poisoning-a-practical-walkthrough-29e1)