- Reliability 7/20
- Based only on the README and server.json, the tool list and descriptions look complete and a stdio/npx launch path is plausible, but no server source code, tests, or CI evidence was provided to verify the MCP initialization handshake or actual tool behavior. Naming inconsistencies in the README (execute_command vs start_process, read_output vs read_process_output) further reduce confidence that documented behavior matches real behavior. Per static calibration this cannot exceed 12; conservatively scored 7.
- Security and permissions 6/20
- The README explicitly states this is not a sandbox: allowedDirectories does not restrict terminal commands, and symlinks, command substitution, absolute paths, or code execution can bypass restrictions. There are a command blocklist, symlink traversal prevention, and Docker isolation, but no explicit confirmation mechanism is documented for destructive operations such as deleting files or killing processes. Remote MCP requires user-initiated startup and uses OAuth plus an encrypted channel. No direct evidence of credential theft or covert exfiltration was found, so the 0-4 red-line range was not triggered, but permission boundaries and confirmation controls are clearly incomplete; scored 6.
- Maintenance 12/20
- The repository is not archived, has an MIT license, version 0.2.47, auto-update mechanisms, a security reporting channel, Discord, and sponsor links, indicating active maintenance. However, the supplied materials contain no commit history, release dates, issue response metrics, or dependency update records, so maintenance velocity cannot be verified and a high score is not justified; scored 12.
- Documentation 15/20
- The README covers multi-client installation, a tool table, configuration, security warnings, Docker, FAQ, troubleshooting, and logging, providing good layered documentation. However, there are tool naming inconsistencies (execute_command vs start_process, read_output vs read_process_output), and some sections appear truncated or contain placeholders (e.g., Handling Long-Running Commands, Mount Your Machine Folders Coming Soon), so points are deducted; scored 15.
- Setup experience 14/20
- The project provides npx setup, bash/PowerShell installers, Docker installation, and JSON configuration examples for Claude, Cursor, VS Code, Gemini CLI, and other clients, making the setup path clear. However, Node.js or Docker is required, and no CI or test evidence in the supplied files verifies that a connection works reliably after installation. Per the static calibration rule, setup cannot exceed 15; scored 14.