review-backport
Pass
Audited by Gen Agent Trust Hub on May 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill instructs the user to configure the Phorge MCP server by adding a token to
~/.cursor/mcp.json. It correctly uses the placeholderapi-XXXXXXXXXXXXXXXXfor the token, adhering to safe secret management practices. All network operations are directed at the vendor's official domain (phorge.dev.yugabyte.com). - [EXTERNAL_DOWNLOADS]: The skill requires the
@freelancercom/phabricator-mcppackage to be run vianpx. This is a standard method for loading MCP servers and is necessary for the skill's primary functionality of interacting with the Phorge API.
Audit Metadata