github re-analysis due

C2SAgent/c2sagent

github

C2S Agent is an lightweight AI Agent construction platform that provides configurable online Agents and MCP services, You can configure any HTTP request interface as an MCP tool. C2S Agent 是一个轻量级的AI Agent构建平台,提供在线可配置的Agent,MCP,您可以一个HTTP请求的接口配置成为一个MCP工具,Agent之间可以进行自交流。并提供了单端口多A2A服务,MCP服务的解决方案

maintainer
C2SAgent
license
MIT
first seen
2026-06-01
last seen
2026-06-04
releases · 30d
0
short id
risk 9/100 · heuristic grade
A minimal
  • capability exposureinferred+14
  • trust mitigatorsmixed−5

inferredmixed

The A–E grade is our heuristic synthesis — a "review this" prompt, not a verdict. Each factor is tagged by what backs it: attested (a verifiable record), reported (a third party's claim), or inferred (our own heuristic, e.g. permissions). See methodology.

graded 7m ago · see ecosystem CVEs →

risk trajectory 1 movements
  • A · 0A · 9
capability exposure grade factor +14
Inferred surface — each links to servers holding it:
vulnerabilities 0 CVEs

No known CVEs for this server.

tool safety all quiet

No tool-safety findings — heuristic detectors run on the compute-risk cadence; a finding appears when a tool trips a rule.

embed badge readme-ready
live risk-grade badge preview [![MCP Observatory risk grade](https://mcpobservatory.com/servers/github:C2SAgent/c2sagent/badge.svg)](https://mcpobservatory.com/servers/github:C2SAgent/c2sagent/security)

Heuristic, inferred signals — false positives (legitimately powerful tools, forks, language ports) are expected. Treat each as "review this", not a verdict. See the ecosystem-wide picture on the security hub, or the fleet security of C2SAgent.