mcp-server-id-mapping
Warn
Audited by Socket on Sep 8, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill's stated purpose is coherent with Cursor MCP troubleshooting, and the flagged command-injection finding is a false positive from documentation syntax. However, it depends on a LegioX MCP server whose public provenance is not verifiable through official package registries or release artifacts, then expects user LEGIOX_* credentials to be passed into that server. That combination makes the install/data-flow trust materially risky even though there is no confirmed malware or overt exfiltration behavior in the skill text itself.
Confidence: 85%Severity: 80%
Audit Metadata