Lint your AI agent context files, MCP server configs, and session data against your actual codebase
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts — it cannot prove the absence of malicious code.
Lint your AI agent context files, MCP server configs, and session data against your actual codebase