mcp-server-setup
Pass
Audited by Gen Agent Trust Hub on Apr 2, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
- [SAFE]: The skill provides detailed instructions for configuring MCP servers for various agents including Kiro, Claude, and Amazon Q.
- [SAFE]: It promotes secure development practices by explicitly advising users to keep credentials in gitignored files like ~/.devcontainer-state/ai/mcp/servers.json.
- [SAFE]: The use of environment variable references (${ENV_VAR}) in configuration templates prevents secrets from being committed to the codebase.
- [EXTERNAL_DOWNLOADS]: Mentions the use of npx to install and run MCP server packages, referencing official and community-standard packages from the Model Context Protocol ecosystem.
Audit Metadata