mcp-least-privilege
Pass
Audited by Gen Agent Trust Hub on Aug 20, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is purely instructional, providing architectural guidance for securing MCP servers through least-privilege principles and sandboxing.
- [SAFE]: External links point to legitimate technical documentation and security research from organizations including Microsoft and the Model Context Protocol project on GitHub.
- [SAFE]: Code snippets provided in the documentation are for educational purposes, illustrating the difference between secure and insecure coding patterns (e.g., avoiding omnibus tools) and do not contain executable malicious logic.
- [SAFE]: The skill advocates for standard security practices such as OAuth 2.1 authorization, per-request validation, and comprehensive audit logging.
Audit Metadata