grounding-lite
Pass
Audited by Gen Agent Trust Hub on Mar 24, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the
mcporterNode.js package from the npm registry, which is a utility designed for interfacing with MCP servers.\n- [COMMAND_EXECUTION]: The skill utilizes themcportercommand-line tool to perform searches and lookups. These commands are part of the intended functionality and connect to Google's infrastructure.\n- [DATA_EXFILTRATION]: The skill communicates with Google's official endpoint athttps://mapstools.googleapis.com/mcpto send location-based queries and an API key. This is standard behavior for a Google Maps integration and targets a well-known service provider.
Audit Metadata