agent-mcp-host
Pass
Audited by Gen Agent Trust Hub on Jul 7, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses the
agent-mcp-hostCLI to manage the lifecycle of MCP servers. This includes spawning subprocesses for mounted tools and configuring network listeners as part of its primary administrative function. - [CREDENTIALS_UNSAFE]: The tool manages authentication through 'pairing codes' and principal bindings. The skill provides explicit instructions to the agent to treat these as secrets, warning against quoting them in summaries or logs. It correctly identifies the system keychain service (
app.paulie.agent-mcp-host.mcp) where these credentials are stored. - [EXTERNAL_DOWNLOADS]: References the installation of auxiliary tools from the vendor's official Homebrew tap (
shhac/tap/agent-slack). This is a standard and documented installation path for the tool family.
Audit Metadata