Mcp Skill

PassAudited by VirusTotal on May 12, 2026.

Findings (1)

The skill bundle contains only metadata and documentation files (`_meta.json`, `SKILL.md`, `README.md`). The `SKILL.md` describes the skill's purpose as wrapping the MCP at `https://mcp.exa.ai/mcp` and lists several research-oriented tools. There is no executable code, no instructions for the agent to perform any malicious actions (e.g., data exfiltration, unauthorized network calls, shell commands), and no prompt injection attempts. The mentioned URL is a legitimate domain associated with Exa.ai.