| Pre-install decision |
|---|
| | | |
|---|
| Clear source, High execution risk, Universal | Clear source, High execution risk, Claude | Clear source, High execution risk, Universal |
|---|
| | | |
|---|
| prompt injection, tool poisoning, unexpected code execution | unexpected code execution, data exfiltration, human approval gap | unexpected code execution, identity privilege abuse, data exfiltration |
|---|
| missing license, broad permissions, shell without guardrails | missing license, broad permissions, shell without guardrails | missing license, broad permissions, shell without guardrails |
|---|
| Permission review, Network, Command | Permission review, Network, Command | Permission review, Network, Secrets, Command |
|---|
| | 65% | |
|---|
| Source & provenance |
|---|
| Shuyib/tool_calling_api | wshobson/agents | junhoyeo/tokscale |
|---|
| Dev & Engineering | Data & Analytics | Dev & Engineering |
|---|
|
|---|
| Risk & permission signals |
|---|
| No explicit signals | runs shell | needs credentials |
|---|
| repository clone, local runtime dependencies | local skill installation, workspace file updates | repository clone, local runtime dependencies |
|---|
| Install & compatibility |
|---|
| Universal | Claude, Codex, Cursor, Windsurf | Universal |
|---|
| script-backed | instruction-only | script-backed |
|---|
|
|---|
| Community |
|---|
| 20 | | 1.6K |
|---|