Skip to main content

smithery-manifest

Automatically generates submission documents for Smithery and MCP Registry, streamlining the listing process for Aeon.

Install this skill

or
7/100

Security score

The smithery-manifest skill was audited on May 30, 2026 and we found 19 security issues across 3 threat categories, including 3 high-severity. Review the findings below before installing.

Categories Tested

Security Issues

high line 8

Template literal with variable interpolation in command context

SourceSKILL.md
8> **${var}** — Optional. Set to `--dry-run` to regenerate the manifests but skip the notification (useful for checking diffs locally). Default: regenerate + notify if anything changed.
medium line 33

Template literal with variable interpolation in command context

SourceSKILL.md
33```json
medium line 124

Template literal with variable interpolation in command context

SourceSKILL.md
124```markdown
high line 200

Template literal with variable interpolation in command context

SourceSKILL.md
200- If `${var}` contains `--dry-run`: write the files, log `SMITHERY_MANIFEST_DRY_RUN: <N> files changed`, skip the notification.
medium line 205

Template literal with variable interpolation in command context

SourceSKILL.md
205```bash
medium line 219

Template literal with variable interpolation in command context

SourceSKILL.md
219- \`docs/smithery-manifest.json\` — server.json compatible with the MCP Registry schema; tool list is the full \`skills.json\` catalog (${count} tools).
medium line 239

Template literal with variable interpolation in command context

SourceSKILL.md
239```
medium line 244

Template literal with variable interpolation in command context

SourceSKILL.md
244The submission docs for Smithery.ai and the MCP Registry are now up to date with the current skill catalog. Apr-22 #1 (highest-priority growth unbuilt for 6 weeks) is now a copy-paste task: open https
high line 252

Template literal with variable interpolation in command context

SourceSKILL.md
252### 8. Log to `memory/logs/${today}.md`
medium line 254

Template literal with variable interpolation in command context

SourceSKILL.md
254```
low line 106

Access to .env file

SourceSKILL.md
106env: process.env
medium line 118

Access to .env file

SourceSKILL.md
118- `env: process.env` is required so the spawned `claude` CLI inherits `ANTHROPIC_API_KEY` / `CLAUDE_CODE_OAUTH_TOKEN` from Claude Desktop's environment.
low line 31

External URL reference

SourceSKILL.md
31Format: a server.json document compatible with the [MCP Registry schema](https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json) — Smithery accepts the same shape and supplements
low line 35

External URL reference

SourceSKILL.md
35"$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
low line 49

External URL reference

SourceSKILL.md
49"registryBaseUrl": "https://registry.npmjs.org",
low line 84

External URL reference

SourceSKILL.md
84# Smithery configuration — https://smithery.ai/docs/config#smitheryyaml
low line 132

External URL reference

SourceSKILL.md
132| Smithery | https://smithery.ai/server/new | `docs/smithery.yaml` (this repo) |
low line 227

External URL reference

SourceSKILL.md
227Open https://smithery.ai/server/new and submit \`docs/smithery.yaml\`. For the MCP Registry, open a PR at modelcontextprotocol/registry adding \`servers/io.github.aaronjmars/aeon-mcp.json\` (use the c
low line 244

External URL reference

SourceSKILL.md
244The submission docs for Smithery.ai and the MCP Registry are now up to date with the current skill catalog. Apr-22 #1 (highest-priority growth unbuilt for 6 weeks) is now a copy-paste task: open https
Scanned on May 30, 2026
View Security Dashboard
Installation guide →
GitHub Stars 14
Rate this skill
Categorydevelopment
UpdatedJune 4, 2026
aaronjmars/miroshark-aeon