MCP server
agent-toolkit
19 specialized AI engineering roles + 13 skills + quality gates. Describe what you want in plain English — roles handle requirements, architecture, implementation, testing, security, and deployment automatically. Works with Claude Code, Cursor, Gemini, Codex, or any AI tool.
- Version
- main
- Analysed
- Last observed
What the code does
- Runs shell commands Code that starts system commands on the machine it runs on.
- Refers to credential files Code that names files such as SSH keys or cloud credentials.
- Downloads and runs code Code that fetches a script and pipes it into a shell.
- Runs hooks automatically Hooks that execute without being called explicitly.
- Runs an AI coding agent unsupervised Code that starts an AI coding agent with its approval prompts switched off.
- Reads AI and developer logins Code that refers to AI tool credentials or publishing tokens, such as .npmrc.
Having a capability is not wrongdoing; many tools need these to do their job. It tells you what to check before you install.
This is public metadata, not a safety certification or complete assessment. Static analysis cannot establish what a tool does at runtime.
Risk
Sign in to see this tool's overall risk level and what drives it. Free.
Coverage
Detailed report
9 findings from automated static analysis of the latest version, with severities and explanations.
Using this tool across your team? We can assess your whole inventory.
Request an inventory assessment