mcp-deploy

Fail

Audited by Socket on Mar 3, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

This skill is coherent with its stated purpose (automating MCP deployments) and mainly provides operational instructions rather than embedding code. The primary security concerns are supply-chain and credential exposure risks: (1) a curl|sh installer (astral.sh) is recommended without integrity checks; (2) users are instructed to download and install third-party binaries and place them in system paths without verifying checksums or signatures; (3) credentials are stored in plaintext environment files and passed via command-line/env strings, increasing exposure and the chance of forwarding secrets to third-party tools. These are supply-chain and operational risks rather than direct evidence of malicious code in the skill text itself. Recommend removing or mitigating curl|sh patterns (provide explicit verification steps or packaged installers), instructing use of secure secret storage (OS keyring or restricted-permission files), including checksum/signature verification for binaries, and warning about principle-of-least-privilege for tokens. Overall classification: medium supply-chain/security risk (suspicious patterns but not confirmed malware).

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Mar 3, 2026, 11:16 PM
Package URL
pkg:socket/skills-sh/zrong%2Fskills%2Fmcp-deploy%2F@95846fdc99e173cd22e83bfe4ddd0f499674d11f