NYC

axiom-xcode-mcp-setup

Warn

Audited by Gen Agent Trust Hub on Feb 16, 2026

Risk Level: MEDIUMEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS] (MEDIUM): The skill recommends downloading and executing XcodeMCPWrapper from an untrusted GitHub repository (SoundBlaster/XcodeMCPWrapper). Running third-party binaries as an MCP bridge allows for potential arbitrary code execution or data interception.
  • [Metadata Concern] (MEDIUM): The skill cites a requirement for Xcode 26.3+, which does not exist (current major version is 16). Misleading version requirements may lead users to search for or install unofficial, potentially malicious software binaries.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 16, 2026, 11:03 PM