vibe-kanban-mcp

Pass

Audited by Gen Agent Trust Hub on Mar 9, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is a documentation and workflow guide for the Vibe Kanban MCP Server. All documented tools (e.g., list_organizations, start_workspace_session) are standard API interactions for project management.
  • [COMMAND_EXECUTION]: The README.md and overview.md files contain installation and launch commands (e.g., npx vibe-kanban --mcp). These are standard for the tool's functionality and use the vendor's official package.
  • [EXTERNAL_DOWNLOADS]: The skill references downloading the vibe-kanban package via npx. As this is the vendor's primary package for the skill's stated purpose, it is considered safe.
  • [REMOTE_CODE_EXECUTION]: The skill documentation describes how to configure lifecycle scripts (setup_script, cleanup_script, dev_server_script) for repositories. These are intended for local development environments (e.g., npm ci) and are managed by the user within their own projects.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 9, 2026, 02:27 PM