codebase-memory-mcp

Pass

Audited by Gen Agent Trust Hub on Jul 29, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The script executes local commands including codebase-memory-mcp, git, and tmux. These operations are used to index repositories, manage background UI sessions, and inspect repository status.- [DYNAMIC_EXECUTION]: The helper script uses inline Python3 and Node.js code blocks to perform JSON manipulation and manage the MCP (Model Context Protocol) initialization handshake. These snippets are statically defined within the script and do not execute remote or untrusted code.- [EXTERNAL_DOWNLOADS]: The script uses curl exclusively to verify that the local HTTP graph UI is responding on 127.0.0.1. No external network requests or downloads were detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 29, 2026, 02:49 AM
Security Audit — agent-trust-hub — codebase-memory-mcp