charly-mcp-cmd
Pass
Audited by Gen Agent Trust Hub on Jun 20, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The
charly mcp servefunctionality exposes 190 tools derived from the charly CLI tree, enabling remote agents to perform complex system and project management tasks through the MCP protocol. - [EXTERNAL_DOWNLOADS]: The skill implements an automatic fallback mechanism that clones the
overthinkos/overthinkrepository from GitHub if a local configuration file is not detected, ensuring the server has access to default project definitions. - [REMOTE_CODE_EXECUTION]: Through the MCP server interface, the skill allows for the remote invocation of CLI commands including shell execution, file writes, and container updates, though it provides specific metadata to help agents identify and gate these actions.
- [PROMPT_INJECTION]: The skill creates a surface for indirect prompt injection because it processes and returns data from tools (e.g., file contents or tool outputs) that could contain instructions intended to override the agent's behavior. This is mitigated by the structured JSON-RPC communication and explicit tool schemas.
Audit Metadata