Caveat verdict

ssh-mcp-cyber-bye

88
🟢 Trusted
No high-risk patterns surfaced by the deep scan — automated capability review, not behavioral proof.

Receives external input AND executes processes

SSH connection and fleet management skill via MCP tools, functionally identical to ssh-connection-execution-management-skill — legitimate remote server administration with credentials in SQLite, not hardcoded.

Automated static analysis — not a human review. Caveat flags capabilities, not confirmed intent, and can produce false positives. Disagree with this verdict? Use Dispute below.

0
security
100
transparency
90
maintenance

What it does

These are capability combinations: each listed behavior occurs in the skill, but Caveat detects co-occurrence — it does not verify that one flows into another. Read the code to confirm a live chain.

Capability combination critical

Receives external input AND executes processes — the shape of a command & control channel

LLM05 · LLM06 · ASI10

Capability combination critical

Writes files AND executes processes — may drop and execute malicious scripts

LLM05 · LLM06 · ASI05

Findings (2)

Pattern match high

References SSH/GPG private keys

SKILL.md · frontmatter · ssh_key

Pattern match high

Writes to SKILL.md — self-modifying skill

README.md · prose · downgraded · SKILL.md` are append

Permissions & capabilities

Requires 1 system binary.

network_infile_writeprocess_exec
Check another skill Browse the registry Auditing your own skills or configs? Use the API