Is instruments-mcp-server MCP safe to give an agent?
A factual risk summary built from instruments-mcp-server’s real tool surface, execution model, and verification history — not a vibe. Trust score 47/100.
Has tools that can delete or irreversibly change data.
Runs locally over stdio — the server process executes on your machine with your user's privileges. Vet the source and package before granting access.
Installs via npx (`npx -y instrumentsmcp@latest`) — it pulls and executes third-party code; pin versions and review the source.
This server has write and destructive tools. No auth scopes are recorded for how that access is granted.
Worried about handing an agent raw access? See governed agents in action — Apex gives your AI paced, capped, fully-logged hands with approval queues before anything runs.
Explore Apex →See also: full server page · setup · alternatives