A capability-compiler meets ten deliberately-broken MCP servers. The honest scorecard: it cleanly stops one class, contains several, and is useless against another.
I pointed capgate at Damn Vulnerable MCP. Here's what it caught — and what it couldn't.