Start with the matrix. Open this section when you need to understand audit grades, top threats, control gaps, and best-value highlights.
Open notes
Suggested baseline
Suggested skills to compare
Mcp Integration
Repository: claude-code
Author: anthropics · Source status: Clear source
Score 79Clear source
Manual review
This skill should be used when the user asks to "add MCP server", "integrate MCP", "configure MCP in plugin", "use .mcp.json", "set up Model Context Protocol", "connect external service", mentions "${CLAUDE_PLUGIN_ROOT}
Score basis:Clear source · High execution risk · Claude · Evidence completeness 65%
Author unclaimed
Claude
Search to add skills, or paste 2–4 comma-separated slugs.
How differences are detected
A row is marked different when selected skills have distinct values. Only-differences mode hides rows that are identical.
How best values are highlighted
Pre-install score, evidence completeness, and community signal prefer higher values; execution risk and install friction prefer lower values.
How to read risk tags
Risk tags come from SAS-v2.1 public-evidence signals and point to command, network, secret, context, or supply-chain items to review before install.
Selected audit signals
onepassword-operator
C · Review first
Execution risk:High
Threat tags:unexpected code execution, identity privilege abuse, data exfiltration
Control gaps:missing license, broad permissions, shell without guardrails
GenericAgent
D · Limited evidence
Execution risk:High
Threat tags:unexpected code execution, identity privilege abuse, data exfiltration
Control gaps:missing license, broad permissions, shell without guardrails
kubeshark
C · Review first
Execution risk:High
Threat tags:unexpected code execution, data exfiltration, memory context poisoning
Control gaps:missing license, broad permissions, shell without guardrails
Dimension
onepassword-operator
GenericAgent
kubeshark
Pre-install decision
Pre-install score
79 · Manual review
79 · Evidence missing
79 · Manual review
Score basis
Clear source, High execution risk, Universal
Clear source, High execution risk, Universal
Clear source, High execution risk, Universal
Execution risk
High
High
High
Threat tags
unexpected code execution, identity privilege abuse, data exfiltration
unexpected code execution, identity privilege abuse, data exfiltration
unexpected code execution, data exfiltration, memory context poisoning
Control gaps
missing license, broad permissions, shell without guardrails
missing license, broad permissions, shell without guardrails
missing license, broad permissions, shell without guardrails
Provides a simple way to run Selenium Grid with Chrome, Firefox, and Edge using Container Platform, making it easier to perform browser automation at scale Topics: containerization, devops, distributed-systems, docker, d
DevSpace - The Fastest Developer Tool for Kubernetes ⚡ Automate your deployment workflow with DevSpace and develop software directly inside Kubernetes.