MCPLow riskUnclaimed

SkillTotal

Deterministic security scan of MCP servers, agent skills and npm/PyPI packages. Runs locally.

skilltotal.aiskilltotal.ai/skilltotal★ 6Updated Oct 9, 2026

server.json

{
  "$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
  "name": "ai.skilltotal/skilltotal",
  "description": "Deterministic security scan of MCP servers, agent skills and npm/PyPI packages. Runs locally.",
  "title": "SkillTotal",
  "repository": {
    "url": "https://github.com/pezhik/skilltotal",
    "source": "github"
  },
  "version": "0.58.0",
  "websiteUrl": "https://www.skilltotal.ai",
  "packages": [
    {
      "registryType": "pypi",
      "identifier": "skilltotal",
      "version": "0.58.0",
      "transport": {
        "type": "stdio"
      },
      "packageArguments": [
        {
          "description": "Run the CLI as an MCP server on stdio.",
          "isRequired": true,
          "value": "mcp",
          "type": "positional"
        }
      ]
    }
  ]
}

Permissions

DeclaredDetected
Runs code—python
Installs—pypi:skilltotal@0.58.0
Runs install scripts—None
NetworkNoneNone
Needs credentialsNoneNone
Outside the workspace—None
Agent tools—None

Checks

Low risk · Nothing worth a warning was found.

Not reviewed by a person · Checked by rules; the model review is not switched on yet.

Versions

  1. #60.58.0latestOct 9, 2026
  2. #50.57.0Oct 9, 2026
  3. #40.56.4Oct 8, 2026
  4. #30.56.3Oct 8, 2026
  5. #20.56.2Oct 7, 2026
  6. #10.56.1Oct 7, 2026