mcp-server-code-execution-mode
Warn
Audited by Socket on Sep 16, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The stated purpose is plausible, but the actual footprint is broader: it installs an unpinned package, relies on a mutable third-party container image, auto-discovers and proxies arbitrary MCP servers, and forwards credentials into those servers. The local config access is expected for bridge setup, yet the combination of weak provenance, credential forwarding, and autonomous external actions makes this a medium-high risk skill rather than a benign narrowly scoped utility.
Confidence: 88%Severity: 78%
Audit Metadata