awesome-mcp-servers-discovery

Warn

Audited by Socket on May 17, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s stated purpose matches discovery of MCP servers, but it goes beyond passive discovery into recommending installation and configuration of many third-party MCP servers and management tools, some community-maintained and credential-bearing. No direct exfiltration or hidden behavior is present, but the transitive trust and credential-forwarding footprint is broader than a simple catalog/browser skill.

Confidence: 87%Severity: 68%
Audit Metadata
Analyzed At
May 17, 2026, 04:26 PM
Package URL
pkg:socket/skills-sh/Aradotso%2Fmcp-skills%2Fawesome-mcp-servers-discovery%2F@529d0164ed0dfd31d112afeae5d4428f96d0d239
Security Audit — socket — awesome-mcp-servers-discovery