mcp-builder
Pass
Audited by Gen Agent Trust Hub on Mar 1, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The
scripts/evaluation.pyandscripts/connections.pyfiles allow for the execution of local commands using the MCP stdio transport. This is used to spawn a subprocess for the server being tested based on command-line arguments provided by the user. This is an intended feature for developer testing of local implementations.- [EXTERNAL_DOWNLOADS]: The skill fetches documentation and reference materials from official sources includingmodelcontextprotocol.ioand themodelcontextprotocolorganization on GitHub. These downloads are informational and target authoritative repositories for the protocol.
Audit Metadata