MEDIUMscripts/sync-version.py:239 — Code-execution surface: a subprocess spawn call site. The server can run commands on the host; review what it executes and whether any input reaches it.
MEDIUMpackages/frontend/src/claude_skills_mcp/__main__.py:147 — Code-execution surface: a subprocess spawn call site. The server can run commands on the host; review what it executes and whether any input reaches it.
MEDIUMpackages/frontend/src/claude_skills_mcp/__main__.py:165 — Code-execution surface: a subprocess spawn call site. The server can run commands on the host; review what it executes and whether any input reaches it.
MEDIUMpackages/frontend/src/claude_skills_mcp/backend_manager.py:55 — Code-execution surface: a subprocess spawn call site. The server can run commands on the host; review what it executes and whether any input reaches it.
MEDIUMpackages/frontend/src/claude_skills_mcp/backend_manager.py:239 — Code-execution surface: a subprocess spawn call site. The server can run commands on the host; review what it executes and whether any input reaches it.
INFOtests/integration/test_full_flow.py:19 — Code-execution call site (subprocess spawn) in TEST code. Down-weighted to informational: this is the test exercising the server, not the server's runtime surface.
+ 11 more in this check