mcp-server-tester
Fail
Audited by Socket on Mar 9, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill presents a coherent testing tool for MCP servers, with clearly described modes that fit its stated purpose. The primary security considerations center on handling credentials for LLM providers and optional .env storage. There are no obvious drive-by download/executable patterns or remote code execution risks. Overall, the footprint is proportionate to the described testing purpose, but credential handling and data flow to external providers raise moderate security concerns that should be mitigated with secure storage, scoped permissions, and clear data-flow boundaries.
Confidence: 98%
Audit Metadata