DEV Community

Michael Kayode Onyekwere
Michael Kayode Onyekwere

Posted on

AGENTSCORE-2026-0013: `vaultpilot-mcp` risk change detected

vaultpilot-mcp updated from 0.7.0 to 0.8.0. Score changed 95/100 to 85/100 (-10). Risk: LOW to LOW. 2 findings.

Package

  • Name: vaultpilot-mcp
  • Version: 0.7.0 to 0.8.0
  • Score: 95/100 to 85/100
  • Risk: LOW to LOW

Findings

  • [LOW] install_script: Package has 'postinstall' script: patch-package
  • [MEDIUM] excessive_dependencies: Package has 21 runtime dependencies (high attack surface)

Full advisory: AGENTSCORE-2026-0013

Verdict API: curl https://agentscores.xyz/api/verdict?npm=vaultpilot-mcp

Auto-published by AgentScore MCP security monitoring.

Top comments (0)