ScopeBlind protect-mcp
PassAudited by VirusTotal on May 1, 2026.
Findings (1)
The skill describes a security gateway for MCP (Model Context Protocol) servers designed to provide policy enforcement, human approval gates, and Ed25519-signed audit logs. The instructions in SKILL.md are consistent with its stated purpose, referencing legitimate security concepts like the OWASP MCP Top 10 and IETF drafts. While it requires broad permissions (Bash, Read, Write) and installs external npm packages (protect-mcp, @veritasacta/verify), these are standard for a CLI-based security proxy and no evidence of malicious intent or prompt injection was found.
