AGENTSCORE-2026-0004
MCP package: @opentabs-dev/mcp-server
Published 4/13/2026 · 0.0.94 → 0.0.95
@opentabs-dev/mcp-server updated from 0.0.94 to 0.0.95. Score changed 85/100 to 65/100 (-20). Risk: LOW to ELEVATED. 3 findings.
85 → 65
Score
LOW → ELEVATED
Risk
WARN
Verdict
Findings
- medium no_repository: Package has no repository link — source code is not verifiable
- high command_injection: Potential command injection: shell execution with template literal input
- low no_provenance: Package is not published with provenance attestations or trusted publishing. Published by: opentabs-dev-admin
Affected MCP servers
@opentabs-dev/cli