pi-mcp-adapter
Warn
Audited by Socket on Sep 16, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated purpose is coherent, and the flagged command-injection items are documentation artifacts, not executable payloads. However, the skill materially expands trust by reading secret-bearing MCP configs and forwarding credentials to externally configured MCP servers while encouraging unpinned npx installs of third-party packages; combined with the ara.so vs package-owner mismatch, this is medium-high supply-chain and credential-forwarding risk rather than confirmed malware.
Confidence: 89%Severity: 78%
Audit Metadata