idea-reality-mcp-validation

Warn

Audited by Socket on May 17, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's capabilities broadly match its stated idea-validation purpose, but its data flow relies on a third-party hosted service and may forward optional API tokens through that service instead of having the agent call official APIs directly. Install paths are mostly normal, yet the remote MCP/Smithery model and external REST endpoint make the trust boundary broader than the description suggests.

Confidence: 79%Severity: 61%
Audit Metadata
Analyzed At
May 17, 2026, 10:58 AM
Package URL
pkg:socket/skills-sh/Aradotso%2Fmcp-skills%2Fidea-reality-mcp-validation%2F@ace45ea821e48ce3bf29836924943083ff30711a
Security Audit — socket — idea-reality-mcp-validation