Kabuzz
PassAudited by VirusTotal on May 11, 2026.
Findings (1)
The skill bundle provides a legitimate MCP interface for the Kabuzz resale marketplace, enabling AI agents to perform e-commerce tasks like listing, buying, and negotiating. It operates via a standard `npx` command to run the `@kabuzz/mcp-server` package and requires a user-provided `KABUZZ_API_KEY`. The documentation in `SKILL.md` is well-structured, emphasizing safety features like spending limits and idempotency, with no evidence of malicious intent, data exfiltration, or harmful prompt injection.
