railway-mcp-server

Pass

Audited by Gen Agent Trust Hub on Jun 22, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Fetches and executes the Railway CLI installation script from railway.com. Railway is a well-known cloud infrastructure service, and this method is the standard, documented installation process for their tooling.
  • [COMMAND_EXECUTION]: The skill provides tools and instructions for the agent to use the railway command-line interface. These capabilities are intended for infrastructure management tasks such as creating projects, deploying services, and viewing logs, which align with the skill's purpose.
  • [CREDENTIALS_UNSAFE]: While the skill manages sensitive data like RAILWAY_TOKEN and application variables, it correctly instructs the use of environment variables and platform-specific secrets management rather than hardcoding credentials.
  • [PROMPT_INJECTION]: No evidence of prompt injection, instruction overrides, or attempts to bypass agent safety filters was found in the skill metadata or instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 22, 2026, 01:54 AM
Security Audit — agent-trust-hub — railway-mcp-server