mapbox-mcp-devkit-patterns
Pass
Audited by Gen Agent Trust Hub on Apr 1, 2026
Risk Level: SAFENO_CODEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [NO_CODE]: The skill consists exclusively of markdown documentation and configuration patterns. It does not contain any executable scripts or binary files within its distribution.\n- [EXTERNAL_DOWNLOADS]: Setup instructions include downloading components via npx from official Mapbox domains and cloning the vendor's GitHub repository. These are verified vendor resources.\n- [COMMAND_EXECUTION]: The documentation describes standard shell commands for environment setup, including git, npm, and npx. These are provided as user instructions for local configuration.\n- [CREDENTIALS_UNSAFE]: The skill includes patterns for managing Mapbox access tokens but uses placeholders and recommends secure management via environment variables, adhering to security best practices.
Audit Metadata