minecraft-modding-workbench
Warn
Audited by Socket on May 3, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS due to install/trust concerns, not because the workflow is inherently off-purpose. The skill’s capabilities fit Minecraft modding well, and its file access and local command use are proportionate, but it depends heavily on an MCP package that could not be independently verified as an official same-org tool. That unverifiable external dependency materially raises security risk even though there is no clear evidence of credential theft, exfiltration, or malicious intent in the skill text itself.
Confidence: 84%Severity: 74%
Audit Metadata