ZV-2026-1015 · 2026-09-13 · mcp.scanmalware.com
mcp.scanmalware.com: classification on search_ai_classification narrowed to a closed enum (LEGITIMATE, LOW_RISK, MODERATE_RISK, HIGH_RISK, CONFIRMED_SCAM); previously valid values may now be rejected.
breaking
What changed
classification on search_ai_classification narrowed to a closed enum (LEGITIMATE, LOW_RISK, MODERATE_RISK, HIGH_RISK, CONFIRMED_SCAM); previously valid values may now be rejected. hash_type on search_by_favicon narrowed to a closed enum (mmh3, md5); previously valid values may now be rejected. hash_type on search_by_fuzzy_hash narrowed to a closed enum (tlsh, ssdeep, sdhash); previously valid values may now be rejected. hash_type on search_by_screenshot_hash narrowed to a closed enum (ahash, phash, dhash, whash, color_hash, crop_resistant); previously valid values may now be rejected.
What to do
If your agents call mcp.scanmalware.com, pin the new snapshot, patch the affected call sites, and let a green contract check confirm the fix. If you don't use the changed tools, nothing is required, but the rest of the ecosystem just learned about it at the same moment you did.
The redline
− open + enum[LEGITIMATE,LOW_RISK,MODERATE_RISK,HIGH_RISK,CONFIRMED_SCAM] search_ai_classification − open + enum[mmh3,md5] search_by_favicon − open + enum[tlsh,ssdeep,sdhash] search_by_fuzzy_hash − open + enum[ahash,phash,dhash,whash,color_hash,crop_resistant] search_by_screenshot_hash − Get favicon metadata for a scan_id. + Get the favicon for a scan_id: size, hashes, and the image itself base64-encoded. Use the … get_favicon − Get network log for a scan_id. + Describe the network log (Chrome NetLog) for a scan_id: whether one exists, its size, and … get_netlog