mcporter
Warn
Audited by Socket on Sep 8, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The core mcporter install path is consistent and largely benign, but the skill intentionally expands the agent's reach to arbitrary MCP servers and arbitrary stdio-backed local processes discovered through third-party registries. That footprint fits terminal-based MCP diagnostics, yet it creates medium risk because credentials and actions can be routed to untrusted servers if operator trust review is weak.
Confidence: 87%Severity: 56%
Audit Metadata