| Pre-install decision |
|---|
| 79 · Manual review | | 79 · Manual review |
|---|
| Clear source, High execution risk, Claude | Clear source, High execution risk, Universal | Clear source, High execution risk, Universal |
|---|
| | High | High |
|---|
| data exfiltration, memory context poisoning, human approval gap | unexpected code execution, data exfiltration, human approval gap | unexpected code execution, identity privilege abuse, data exfiltration |
|---|
| missing license, broad permissions, network without allowlist | missing license, broad permissions, shell without guardrails | missing license, broad permissions, shell without guardrails |
|---|
| Permission review, Network, Command | Permission review, Network, Command | Permission review, Network, Secrets, Command |
|---|
| 65% | 65% | |
|---|
| Source & provenance |
|---|
| anthropics/claude-code/tree/main/plugins/plugin-dev/skills/mcp-integration | langfuse/langfuse-python | 1Password/onepassword-operator |
|---|
| Operations & Infra | Automation & Workflows | Operations & Infra |
|---|
|
|---|
| Risk & permission signals |
|---|
| network access | metadata-only | No explicit signals |
|---|
| registry access, remote metadata pull, runtime dependencies may be required | repository clone | repository clone, local runtime dependencies |
|---|
| Install & compatibility |
|---|
| Claude, Codex, Cursor, Universal | Universal | Universal |
|---|
| registry-install | script-backed | script-backed |
|---|
|
|---|
| Community |
|---|
| | 378 | 608 |
|---|