FastMCP Development

Warn

Audited by Socket on Feb 21, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

[Skill Scanner] Generic secret pattern detected The artifact is a benign, well-structured developer guide for FastMCP MCP server tooling. It presents standard installation and usage patterns, with no evidence of malicious behavior or covert data flows. The strongest candidate among the three reports is Report 3, which should be treated as the primary reference for the final consolidated summary. LLM verification: The fragment is a documentation/guide for a legitimate MCP framework. It is coherent with its stated purpose and does not itself implement malicious behavior. However, static signals such as unversioned dependencies and placeholder secrets in docs should be treated as cautionary. With minor clarifications and safer publishing practices (version pinning, explicit secret-handling guidance), the documentation can reduce supply-chain risks while remaining useful for developers.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Feb 21, 2026, 11:24 AM
Package URL
pkg:socket/skills-sh/jawwad-ali%2Fclaude-code-skills%2Ffastmcp-development%2F@8824e68066e05c75230198f24b8c62b8f21ee7ff