build-mcp-use-client

Pass

Audited by Gen Agent Trust Hub on May 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is a documentation and diagnostic resource for the mcp-use SDK, intended to assist developers in building and auditing TypeScript MCP clients.
  • [SAFE]: The provided diagnostic scripts, such as check-mcp-use-version.sh and diagnose-client.sh, perform read-only analysis of the project's local configuration, environment, and dependencies to detect common configuration errors.
  • [SAFE]: Security best practices are a core part of the guidance, including explicit instructions to avoid hardcoding credentials, recommendations for OAuth in browser environments, and the use of environment variables for sensitive tokens.
  • [SAFE]: The skill provides advanced security guidance for its "Code Mode" feature, explicitly recommending the use of isolated cloud sandboxes like E2B for executing untrusted code to prevent local system compromise.
Audit Metadata
Risk Level
SAFE
Analyzed
May 17, 2026, 10:40 PM
Security Audit — agent-trust-hub — build-mcp-use-client