mcp-server-development-41a2b8 — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited mcp-server-development-41a2b8 (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Use this skill when implementing or reviewing src/server, src/tools, src/resources, src/prompts, src/live-client or src/feedback.
TypeScript 5, Node 20, ESM, @modelcontextprotocol/sdk, zod, tsup, biome, vitest and native net.
Keep a persistent JSON-RPC TCP client with request IDs, timeout, reconnect backoff and notification events. Tools talk through the context abstraction, not by importing low-level clients directly.
Resources expose live state or embedded knowledge without mutating Live. Prompts are short client-visible templates and should not replace documentation.
Each tool needs at least one happy path and one validation/error path. Integration tests use a mock bridge by default and a real bridge only when explicitly enabled.
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.