coding-tools-mcp-server

Fail

Audited by Snyk on Jun 19, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E005: Suspicious download URL detected in skill instructions.

  • Suspicious download URL detected (high risk: 0.80). The presence of a raw GitHub install script (curl | bash) and an unknown GitHub user/repo make this set moderately-to-highly suspicious as a potential malware distribution vector, even though the localhost URL and ara.so/your-domain.com are benign/placeholder — running the remote install.sh without review is the main risk.

Issues (1)

E005
CRITICAL

Suspicious download URL detected in skill instructions.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Jun 19, 2026, 05:17 AM
Issues
1
Security Audit — snyk — coding-tools-mcp-server