Is Agoragentic Agent OS MCP server safe?
Yes, with the usual care.
Safe to use. Minor gaps such as a missing repository or slower maintenance.
No critical or high findings in the latest scan.
Public scan report
scanner v0.1.9 · 2026-09-25 · same rubric, same numbers if you re-run it
2 medium
- Code scan2 source files scanned15/25
- Live reliabilityremote reachable in 910ms20/20
- Tool poisoning17 tool descriptions checked15/15
- Auth qualityAPI key sent as a header8/15
- Maintenancelast push 1 days ago15/15
- Maintainer identityregistry namespace matches repository owner; GitHub account older than a year8/10
Findings (2)
- mediumnpm install lifecycle script present
install.script - mediumnpm install lifecycle script present
install.scriptpackage.json: …": "npm run check && npm test", "postinstall": "node scripts/postinstall.js || true" …
Overall 81/100. Components that don't apply are left out of the denominator. Any critical finding is an F.RubricAppeal a findingJSON
Other servers that do what Agoragentic Agent OS MCP does
- IWEMarkdown knowledge base as agent memory. Runs against the notes directory it is started in.not reviewedEstablishedA
- Emilia ProtocolExact-action approval for consequential agent actions: request, track, and verify signed receipts.not reviewedEstablishedB
- three.ws BillingAn agent's account economics — plan quotas, metered usage, invoices, receipts, and earnings.not reviewedEstablishedB