FindWeedNY
REMOTE · MCP.FINDWEEDNY.COM · SCANNED SEP 25
Licensed NY cannabis dispensaries, brands, deals, license checks and lab-anchored reviews. No auth.
Available components
How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score → Why this is hard to score →
Endpoint Security66
- The endpoint's TLS certificate is valid, in date, and uses a strong key. View diagnostics → Pass
- Authorisation not fully verified: no authorisation is required to call this server, and 10 tool(s) never declared a destructiveHint. The MCP spec treats an absent hint as destructive by default, so we cannot call this surface safe. See how to fix → View diagnostics → Unverified
- HTTPS is enforced; there's no plaintext access path. View diagnostics → Pass
- The HSTS (Strict-Transport-Security) header is present. View diagnostics → Pass
- DNSSEC is configured correctly; the domain's records validate against the full chain to the root. View diagnostics → Pass
Transport & Reachability100
- Verified streamable-http transport via a live MCP handshake. View diagnostics → Pass
Schema Quality & AI Usability82
- 100% of prompts and resources have a non-trivial description (not blank, and not just the item's name).Pass
- AI-judged instruction clarity (excellent).Pass
- Context-footprint check failed: tool/resource definitions use about 2464 tokens (~144/item across 17 items; 10 tools + 7 resources), over budget; trim descriptions and params. See how to fix → Fail
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management53
- Stability observed for 16 of 30 days with no destabilising changes; credit accrues until the full window elapses.Partial
Tool Coverage100
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 100% of tool parameters carry a description.Pass
- Structured output schemas are declared (100% of tools); any adoption earns full credit.Pass
Tool Safety100
- No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
- We read all 10 captured tool definition(s), and no name or description among them implies an irreversible operation.Pass
- An AI judge read all 12 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities60
- Spec-recency check failed: implements MCP spec 2025-06-18; the latest is 2026-07-28. See how to fix → Fail
How do I install the FindWeedNY MCP server?
FindWeedNY is a hosted endpoint at https://mcp.findweedny.com/mcp, so there is nothing to install locally. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.
remote · mcp.findweedny.com
claude mcp add --transport http com-findweedny-findweedny 'https://mcp.findweedny.com/mcp'
{
"mcpServers": {
"com-findweedny-findweedny": {
"url": "https://mcp.findweedny.com/mcp"
}
}
} {
"servers": {
"com-findweedny-findweedny": {
"type": "http",
"url": "https://mcp.findweedny.com/mcp"
}
}
} [mcp_servers.com-findweedny-findweedny] url = "https://mcp.findweedny.com/mcp"
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"com-findweedny-findweedny": {
"type": "remote",
"url": "https://mcp.findweedny.com/mcp",
"enabled": true
}
}
} openclaw mcp add com-findweedny-findweedny --url 'https://mcp.findweedny.com/mcp' --transport streamable-http
mcp_servers:
com-findweedny-findweedny:
url: "https://mcp.findweedny.com/mcp" {
"McpServers": {
"com-findweedny-findweedny": {
"Transport": "http",
"Url": "https://mcp.findweedny.com/mcp"
}
}
} assistant mcp add com-findweedny-findweedny -t streamable-http -u 'https://mcp.findweedny.com/mcp'
{
"mcpServers": {
"com-findweedny-findweedny": {
"type": "http",
"url": "https://mcp.findweedny.com/mcp"
}
}
} The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.
Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 25 Sept 26 0
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- 24 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 47 to 50. That category is still filling its 30-day observation window: 14 days of observed history at the previous scan, 15 at this one. The score rises as the window fills, whether or not the server changes.
- 22 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 40 to 43. That category is still filling its 30-day observation window: 12 days of observed history at the previous scan, 13 at this one. The score rises as the window fills, whether or not the server changes.
- 20 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 33 to 37. That category is still filling its 30-day observation window: 10 days of observed history at the previous scan, 11 at this one. The score rises as the window fills, whether or not the server changes.
- 18 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 27 to 30. That category is still filling its 30-day observation window: 8 days of observed history at the previous scan, 9 at this one. The score rises as the window fills, whether or not the server changes.
- 16 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 20 to 23. That category is still filling its 30-day observation window: 6 days of observed history at the previous scan, 7 at this one. The score rises as the window fills, whether or not the server changes.
- 14 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 13 to 17. That category is still filling its 30-day observation window: 4 days of observed history at the previous scan, 5 at this one. The score rises as the window fills, whether or not the server changes.
- 13 Sept 26 0
- The server rewrote its instructions, which are the text every model session reads security
- Schema quality: 2095 → 2464 ▼ functional
- New resource “metrc-market-landscape-history.csv” functional
- New resource “metrc-market-landscape.json” functional
- New tool “get_metrc_market_landscape” functional
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 25 Sept 2026 · Probed https://mcp.findweedny.com/mcp
TLS valid
Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .
| Subject | Issuer | Valid from | Valid until | Key | Signature | Serial |
|---|---|---|---|---|---|---|
| CN=findweedny.com | CN=WE1,O=Google Trust Services,C=US | 8 Sept 2026 | 7 Dec 2026 | ECDSA 256 | ECDSA-SHA256 | c7dd047e8415304c0e04413bae2aad7d |
| SANs: findweedny.com, mcp.findweedny.com, *.mcp.findweedny.com | ||||||
| CN=WE1,O=Google Trust Services,C=US (CA) | CN=GTS Root R4,O=Google Trust Services LLC,C=US | 13 Dec 2023 | 20 Feb 2029 | ECDSA 256 | ECDSA-SHA384 | 7ff31977972c224a76155d13b6d685e3 |
| CN=GTS Root R4,O=Google Trust Services LLC,C=US (CA) | CN=GlobalSign Root CA,OU=Root CA,O=GlobalSign nv-sa,C=BE | 15 Nov 2023 | 28 Jan 2028 | ECDSA 384 | SHA256-RSA | 7fe530bf331343bedd821610493d8a1b |
Background: What to check on a remote MCP endpoint →
DNSSEC secure
Validation of mcp.findweedny.com. — Secure
| Zone | DS | Keys | Algorithms | Outcome |
|---|---|---|---|---|
| . | trust_anchor | 20326, 38696 | 8, 8 | Verified |
| com. | present | 19718 | 13 | Verified |
| findweedny.com. | present | 2371 | 13 | Verified |
| mcp.findweedny.com. | Verified address RRset verified with the apex keys |
Authentication No authorisation required
The endpoint answered without asking for a token. Anyone who knows the URL can reach it.
| Result | No authorisation required |
|---|---|
| HTTP status | 200 |
| Header | Value |
|---|---|
| strict-transport-security | max-age=2592000; includeSubDomains |
| x-content-type-options | nosniff |
Background: How OAuth 2.1 works in the 2026 MCP spec →
Transports 2 probes
| Transport | URL | Outcome | Status | Location |
|---|---|---|---|---|
| streamable-http | https://mcp.findweedny.com/mcp | Verified | 200 | |
| http (plaintext) | http://mcp.findweedny.com/mcp | HTTPS enforced | 301 | https://mcp.findweedny.com/mcp |
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
get_brand Get brand details + where to buy ~71
Full public record for one brand by slug or name, including which licensed NY dispensaries currently stock it (from crawled menu availability, preview tier), its parent / child brands, and FindWeedNY's own reviews of its products when there are any.
| Name | Type | Req | Description |
|---|---|---|---|
| brand | string | yes | Brand slug or name |
| Name | Type | Req | Description |
|---|---|---|---|
| availability | object | – | – |
| brand | object | – | – |
| dataUpdated | string | – | ISO timestamp of the feed this result came from: dispensary directory (OCM refresh), deals export, brand-availability export, or review index |
| found | boolean | yes | – |
| message | string | – | – |
| source | string | – | Attribution line — CC BY 4.0, cite the row url |
No examples provided.
get_deals Get current deal previews ~98
Current cannabis deal and promotion PREVIEWS (top deals per dispensary) for one dispensary or a city. The full deal feed requires a free account at findweedny.com.
| Name | Type | Req | Description |
|---|---|---|---|
| city | string | – | City name (returns up to 5 dispensaries with deals) |
| dispensary_id | string | – | OCM license number |
| limit | number | – | Max deals per dispensary, default 6, cap 10 |
| Name | Type | Req | Description |
|---|---|---|---|
| dataUpdated | string | – | ISO timestamp of the feed this result came from: dispensary directory (OCM refresh), deals export, brand-availability export, or review index |
| found | boolean | – | – |
| message | string | – | – |
| note | string | – | – |
| results | array | – | – |
| source | string | – | Attribution line — CC BY 4.0, cite the row url |
No examples provided.
get_dispensary Get dispensary details ~70
Full public record for one dispensary by OCM license number (e.g. "OCM-CAURD-23-000023"), verified alias, or legacy id. Includes hours, description, and license dates.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | License number, alias, or legacy id |
| Name | Type | Req | Description |
|---|---|---|---|
| dataUpdated | string | – | ISO timestamp of the feed this result came from: dispensary directory (OCM refresh), deals export, brand-availability export, or review index |
| dispensary | object | – | – |
| found | boolean | yes | – |
| message | string | – | – |
| source | string | – | Attribution line — CC BY 4.0, cite the row url |
No examples provided.
get_market_stats NY cannabis market stats ~64
Summary statistics for the New York licensed cannabis market: dispensary totals, counts by license type and tier, microbusiness / delivery / non-operational counts, top cities, dispensaries opened and closed in the last 90 days, and brand totals by type and grow method.
Input schema present but exposes no named parameters.
| Name | Type | Req | Description |
|---|---|---|---|
| brands | object | – | – |
| byLicenseType | object | – | license type → count |
| byTier | object | – | open | coming-soon | delivery-only → count |
| dataUpdated | string | – | ISO timestamp of the feed this result came from: dispensary directory (OCM refresh), deals export, brand-availability export, or review index |
| deliveryOnly | number | – | – |
| medicalServing | number | – | – |
| microbusinesses | number | – | – |
| nonOperational | number | – | – |
| offeringDelivery | number | – | – |
| openDataHub | string | – | – |
| recentlyClosed | array | – | Closed in the last 90 days |
| recentlyOpened | array | – | Opened in the last 90 days |
| source | string | – | Attribution line — CC BY 4.0, cite the row url |
| topCities | array | – | – |
| total | number | yes | Licensed dispensaries in the directory |
No examples provided.
get_metrc_market_landscape Get Metrc NY market landscape ~254
Statewide New York cannabis market aggregates, crawled from Metrc’s public Cannabis Market Landscape dashboard — the seed-to-sale system every licensee reports into. Use it for market-size and trend questions (how much does NY sell a month, which regions and product categories, how many licenses exist and how fast are they being issued, what share of lab tests pass). Returns a `summary` of the four headline numbers plus a `metrics` array: monthly retail sales, cumulative sales, units sold, transaction count, basket size, average price per unit, lab test volume and pass rate, retail sales by region and by product category, active licenses by type and by region, monthly new licenses and cumulative license growth. Narrow it with `section` or `metric`; `metricsAvailable` always lists everything in the snapshot. This is dashboard-level aggregate data, not transaction-level Metrc records, and license counts may differ from NY OCM totals. For dispensary-by-dispensary counts use get_market_stats instead.
| Name | Type | Req | Description |
|---|---|---|---|
| metric | array | – | Only these metric names (see metricsAvailable), e.g. ["retail_sales_by_region"]. |
| section | string | – | Only metrics from this dashboard tab. |
| Name | Type | Req | Description |
|---|---|---|---|
| dataUpdated | string | – | ISO timestamp of the feed this result came from: dispensary directory (OCM refresh), deals export, brand-availability export, or review index |
| found | boolean | yes | – |
| marketLandscape | object | – | Aggregate values crawled from Metrc’s public New York Cannabis Market Landscape dashboard |
| message | string | – | – |
| source | string | – | Attribution line — CC BY 4.0, cite the row url |
No examples provided.
get_review Get one FindWeedNY review ~75
One review by slug (from search_reviews) with the full lab panel: every cannabinoid and terpene measured, batch number, price paid, COA link, and the excerpt. Full review text stays on the linked page.
| Name | Type | Req | Description |
|---|---|---|---|
| slug | string | yes | Review slug, e.g. "1slice-superboof-flower" |
| Name | Type | Req | Description |
|---|---|---|---|
| dataUpdated | string | – | ISO timestamp of the feed this result came from: dispensary directory (OCM refresh), deals export, brand-availability export, or review index |
| found | boolean | yes | – |
| message | string | – | – |
| review | object | – | – |
| source | string | – | Attribution line — CC BY 4.0, cite the row url |
No examples provided.
search_brands Search NY cannabis brands ~415
Search cannabis brands sold in New York. Filter by name, product category (e.g. flower, vapes, edibles, pre-rolls), brand type (local / national / mso), New York origin, microbusiness licensees, grow method (indoor / outdoor / mixed-light / combination — from OCM cultivator licenses; "sun-grown" and "greenhouse" accepted as aliases), ownership certification (woman-owned, veteran-owned, bipoc-owned, social-equity…), tag, or parent brand (the house that owns it — e.g. which brands PharmaCann or 1 Off run in NY). Rows include growType, licenseType, certifications, tags and how many dispensaries stock the brand.
| Name | Type | Req | Description |
|---|---|---|---|
| category | string | – | Product category, e.g. "vapes" |
| certification | string | – | Ownership/impact certification, e.g. "woman-owned", "veteran-owned", "bipoc-owned", "social-equity" |
| grow_type | string | – | Cultivation method from OCM license data. sun-grown = outdoor; greenhouse = mixed-light or combination |
| limit | number | – | Max rows, default 10, cap 50 |
| microbusiness | boolean | – | Only brands holding a NY microbusiness license |
| ny_based | boolean | – | Only brands headquartered / grown in New York |
| offset | number | – | Rows to skip for paging: the result echoes `total` and `offset`, so request offset + limit for the next page |
| parent | string | – | Only brands owned by this parent brand / house (slug or name), e.g. "1-off", "PharmaCann", "GTI" |
| query | string | – | Substring match on brand name |
| tag | string | – | Catalog tag, e.g. "craft", "small-batch", "living-soil", "hudson-valley" |
| type | string | – | Brand type: local (NY), national, or multi-state operator |
| Name | Type | Req | Description |
|---|---|---|---|
| brands | array | yes | – |
| dataUpdated | string | – | ISO timestamp of the feed this result came from: dispensary directory (OCM refresh), deals export, brand-availability export, or review index |
| offset | number | yes | – |
| source | string | – | Attribution line — CC BY 4.0, cite the row url |
| total | number | yes | – |
No examples provided.
search_dispensaries Search NY dispensaries ~548
Search licensed New York State cannabis dispensaries (adult-use and medical). Free-text `query` is ranked and typo-tolerant (name, DBA, city, neighborhood, address, ZIP, license) and may include the site search operators (zip: city: county: neighborhood: brand: product: is:open|operating|delivery|micro|medical|verified|closed radius:N — quote multi-word values). Structured filters do the same thing explicitly. NOTE: `brand` filters against the PUBLIC availability preview (≤10 listed stores per brand); the result's `brandAvailability` block gives the true known count and, with `city`/`county`, how many stores there stock the brand even when none are listed — never conclude "nobody in X carries it" from an empty list. Sort by relevance (default with a query), distance (default when near is given), name, or recently_opened. Returns compact rows; each row has a citable `url`, Google rating/review count when known, `openNow` + `hoursToday` from posted hours (New York time), and a `closure` object (date, reason, temporary) when a shop has closed.
| Name | Type | Req | Description |
|---|---|---|---|
| brand | string | – | Only dispensaries stocking this brand (name or alias) |
| city | string | – | Exact city name, case-insensitive (e.g. "Buffalo") |
| county | string | – | Exact county name, case-insensitive |
| delivery | boolean | – | Only dispensaries that offer delivery |
| limit | number | – | Max rows, default 10, cap 50 |
| medical | boolean | – | Only dispensaries serving medical patients |
| microbusiness | boolean | – | Only microbusiness licensees |
| near | object | – | Filter/sort by distance from a point (results gain a `distance` in miles) |
| neighborhood | string | – | NYC neighborhood name or slug |
| offset | number | – | Rows to skip for paging: the result echoes `total` and `offset`, so request offset + limit for the next page |
| open_now | boolean | – | Only dispensaries open right now by posted hours |
| query | string | – | Ranked, typo-tolerant search over name/DBA/city/neighborhood/address/ZIP/license; accepts operators, e.g. "housing works", "gotham zip:100", "brand:ayrloom is:open" |
| sort | string | – | Default: relevance with a query, distance with near, otherwise name |
| verified | boolean | – | Only owner-verified / claimed listings |
| zip | string | – | 5-digit ZIP code |
| Name | Type | Req | Description |
|---|---|---|---|
| brandAvailability | object | – | Present when a brand filter was applied. Never conclude "nobody carries it" from an empty list — read knownDispensaries / inCity. |
| dataUpdated | string | – | ISO timestamp of the feed this result came from: dispensary directory (OCM refresh), deals export, brand-availability export, or review index |
| dispensaries | array | yes | – |
| notes | array | – | Caveats about the filters applied |
| offset | number | yes | – |
| source | string | – | Attribution line — CC BY 4.0, cite the row url |
| total | number | yes | Matches before paging |
No examples provided.
search_reviews Search FindWeedNY product reviews ~308
FindWeedNY's own independent, lab-anchored reviews of New York cannabis products (flower, vapes, concentrates, edibles). Every review has a 1–5 rating and, for cannabis products, the COA numbers: THC %, total terpenes %, top terpenes, plus a link to the certificate of analysis. Filter by brand, product type, strain, cultivation method, or minimum rating; sort by date, rating, or terpenes. Use this for "is brand X any good", "best-tested flower", or "most terpene-rich vape" questions. Rows carry an excerpt and a `url` to the full review.
| Name | Type | Req | Description |
|---|---|---|---|
| brand | string | – | Brand name or slug |
| cultivation | string | – | How the flower was grown, when the review records it |
| limit | number | – | Max rows, default 10, cap 50 |
| min_rating | number | – | 1–5 |
| offset | number | – | Rows to skip for paging: the result echoes `total` and `offset`, so request offset + limit for the next page |
| product_type | string | – | Kind of product reviewed |
| query | string | – | Text match on title, product, brand, or strain |
| sort | string | – | Default date (newest first) |
| strain | string | – | Strain or type, e.g. "hybrid", "sativa", "indica", or a strain name |
| Name | Type | Req | Description |
|---|---|---|---|
| dataUpdated | string | – | ISO timestamp of the feed this result came from: dispensary directory (OCM refresh), deals export, brand-availability export, or review index |
| note | string | – | – |
| offset | number | yes | – |
| reviews | array | yes | – |
| source | string | – | Attribution line — CC BY 4.0, cite the row url |
| total | number | yes | – |
No examples provided.
verify_license Verify a NY OCM cannabis license ~177
Look up ANY New York OCM cannabis license number — retail dispensary, microbusiness, cultivator, processor, distributor, registered organization — against the full OCM licensing record (3,000+ licenses), not just shops. Returns the license type, status, holder, dates, county, and for cultivators the grow method; links the matching dispensary listing and brand when we have them. A partial number, application number, or company name returns candidates in `similar`. Use it to answer "is this a real licensed NY business" and "who holds this license".
| Name | Type | Req | Description |
|---|---|---|---|
| license_number | string | yes | OCM license number (e.g. "OCM-CAURD-23-000023", "OCM-PROC-24-000096"), application number, or part of one; a company name also works |
| Name | Type | Req | Description |
|---|---|---|---|
| brand | object | – | The brand catalog entry holding this license, when known |
| dataUpdated | string | – | ISO timestamp of the feed this result came from: dispensary directory (OCM refresh), deals export, brand-availability export, or review index |
| dispensary | object | – | The directory listing, when the license is a retail dispensary we list |
| found | boolean | yes | A license record matched exactly |
| license | object | – | – |
| licensed | boolean | yes | found and the license status is Active |
| message | string | – | – |
| similar | array | – | Close matches when there is no exact one |
| source | string | – | Attribution line — CC BY 4.0, cite the row url |
No examples provided.
What is the FindWeedNY MCP server?
FindWeedNY is an MCP server listed in the public MCP registry as com.findweedny/findweedny. Licensed NY cannabis dispensaries, brands, deals, license checks and lab-anchored reviews. No auth. This page covers its hosted endpoint (https://mcp.findweedny.com/mcp).
Is the FindWeedNY MCP server safe to use?
FindWeedNY scores 75 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the FindWeedNY MCP server expose?
FindWeedNY exposes 10 tools: search_dispensaries, get_dispensary, verify_license, search_brands, get_brand, and 5 more. Their descriptions and schemas cost roughly 2,080 tokens of context every time the server is loaded.
Does the FindWeedNY MCP server require authentication?
No. We connected to FindWeedNY without credentials and it answered, so anything it exposes is reachable by anyone who knows the address.
Is the FindWeedNY MCP server still maintained?
FindWeedNY is still listed as active in the MCP registry. We last reached this channel on 25 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.