codehealth-mcp

Pass

Audited by Gen Agent Trust Hub on Aug 2, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill configuration instructs the agent to use npx -y @codescene/codehealth-mcp to install and run the MCP server. This involves fetching code from the public NPM registry at runtime.
  • [REMOTE_CODE_EXECUTION]: The execution of the @codescene/codehealth-mcp package via npx constitutes remote code execution of a third-party package. While this is the primary mechanism for the skill's functionality, it relies on the integrity of the upstream package hosted on NPM.
  • [PROMPT_INJECTION]: The skill processes untrusted data by analyzing local source code files through tools like code_health_review and code_health_score. Malicious instructions embedded in code comments or file metadata within the project being analyzed could potentially influence the agent's behavior (Indirect Prompt Injection). The instructions do not provide explicit boundary markers or sanitization steps for the agent when interpreting these results.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 2, 2026, 08:21 AM
Security Audit — agent-trust-hub — codehealth-mcp