codebase-memory-mcp
Pass
Audited by Gen Agent Trust Hub on Jul 29, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The script executes local commands including
codebase-memory-mcp,git, andtmux. These operations are used to index repositories, manage background UI sessions, and inspect repository status.- [DYNAMIC_EXECUTION]: The helper script uses inline Python3 and Node.js code blocks to perform JSON manipulation and manage the MCP (Model Context Protocol) initialization handshake. These snippets are statically defined within the script and do not execute remote or untrusted code.- [EXTERNAL_DOWNLOADS]: The script usescurlexclusively to verify that the local HTTP graph UI is responding on127.0.0.1. No external network requests or downloads were detected.
Audit Metadata