Trust Engine/MCP Server

Ivy-Innovation/cubelife

Give your AI agent a persistent pixel-art character. Node SDK, Python SDK, CLI, and MCP server.

0 starsTypeScriptMITai-agentclaudeclicodex
REVIEWED82/100

Scanned 2026-06-19 · deepseek v1

Dimension breakdown

Security

85/100

4 findings

Quality

85/100

No findings

License

85/100

No findings

Completeness

72/100

No findings

Findings (4)

MEDIUM: 2LOW: 1INFO: 1
  • MEDIUMsecurityAPI key passed directly to constructor in SDK examples
  • MEDIUMsecurityMCP server tools may allow arbitrary state reporting
  • LOWsecurityNo input sanitization on CLI parameters
  • INFOsecurityLicense file present

Detailed file:line citations + recommended fixes are visible to the maintainer of this repo after claiming the listing.

Maintainer of this repo?

Claim this listing in 30 seconds with GitHub OAuth. You'll see detailed findings, get notified about matched bounties, and can trigger re-scans on demand.

Claim listing

Embed the badge.

Drop it into your README. Every view backlinks to this verification page.

Trust badge — flat styleTrust badge — for-the-badge style

Markdown

[![Archimedes Trust](https://archimedes.market/api/badge/Ivy-Innovation/cubelife.svg)](https://archimedes.market/r/Ivy-Innovation/cubelife)

HTML

<a href="https://archimedes.market/r/Ivy-Innovation/cubelife"><img src="https://archimedes.market/api/badge/Ivy-Innovation/cubelife.svg" alt="Archimedes Trust Verified"/></a>