This appears to be a real ChatbotX MCP bridge, but it grants broad live workspace access and includes unsafe remote-authentication patterns that users should review before installing.
Install only if you are comfortable giving an AI agent live access to your ChatbotX workspace, including contacts, conversations, tags, deletes, and message/flow actions. Prefer local stdio mode or a tightly restricted private SSE deployment, avoid putting workspace tokens in URLs, use least-privilege and revocable tokens where possible, restrict network exposure and CORS origins, and review the OpenAPI operations exposed by your ChatbotX instance before enabling agent access.