grounding-lite

Pass

Audited by Gen Agent Trust Hub on Mar 24, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the mcporter Node.js package from the npm registry, which is a utility designed for interfacing with MCP servers.\n- [COMMAND_EXECUTION]: The skill utilizes the mcporter command-line tool to perform searches and lookups. These commands are part of the intended functionality and connect to Google's infrastructure.\n- [DATA_EXFILTRATION]: The skill communicates with Google's official endpoint at https://mapstools.googleapis.com/mcp to send location-based queries and an API key. This is standard behavior for a Google Maps integration and targets a well-known service provider.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 24, 2026, 12:26 AM