rolecraft — security grade SAFE, quality 73/100

Security audit verdict: SAFE · quality 73/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by sametcelikbicak · MCP Server · ★ 75

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is rolecraft safe to install? View the security audit →

About rolecraft

RoleCraft — Simple Skill Installer for AI Zero-dependency CLI to install AI agent skills as roles & behaviors from any source. No marketplace, no registry, no signup — just point it at a local folder or a GitHub repo and it works. Works with opencode, claude-code, cursor, and all spec-compliant agents. Why rolecraft? | GitHub repo instal

agentaiai-agentsaiderclaude-codecliclinecopilotcursordevtools

Quick Facts

Stars75
Forks13
LanguageJavaScript
CategoryMCP Server
LicenseMIT
Quality Score73.1194405346357/100
Open Issues9
Last Updated2026-07-20
Created2026-06-12
Platformsclaude-code, cli, gemini, mcp, node
Est. Tokens~14k

rolecraft alternative? Top 6 similar tools

Looking for a rolecraft alternative? If you're comparing rolecraft with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • rolecraft by rolecraft-sh · ⭐ 78

    The security-first skill manager for AI agents — every install runs a security scan. Manage skills & MCP serve

  • postman-mcp-server by postmanlabs · ⭐ 312

    Postman MCP Server — connect AI agents (Claude Code, Cursor, VS Code Copilot, Gemini CLI) to your Postman coll

  • vsync by nicepkg · ⭐ 55

    Sync MCP servers, Skills, Agents & Commands across Claude Code, Cursor, OpenCode, Codex. One config, all tools

  • gptree by travisvn · ⭐ 290

    A CLI tool to provide LLM context for coding projects by combining project files into a single text file (or c

  • ox by sageox · ⭐ 59

    The hivemind for AI coding agents — persistent team context recorded once and recalled across agents, machines

  • ClaudeR by IMNMV · ⭐ 337

    Connect RStudio to Claude Code, Codex, Gemini, and other LLM agents via MCP. Multi-agent orchestration, automa

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular JavaScript Agent Tools

Frequently Asked Questions

What is rolecraft?

rolecraft is Zero-dependency CLI that installs AI agent skills + MCP servers from any source. 86+ agents. No signup, no telemetry, 4 KB.. It is categorized as a MCP Server with 75 GitHub stars.

What programming language is rolecraft written in?

rolecraft is primarily written in JavaScript. It covers topics such as agent, ai, ai-agents.

How do I install or use rolecraft?

You can find installation instructions and usage details in the rolecraft GitHub repository at github.com/sametcelikbicak/rolecraft. The project has 75 stars and 13 forks, indicating an active community.

What license does rolecraft use?

rolecraft is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to rolecraft?

The top alternatives to rolecraft on Agent Skills Hub include rolecraft, postman-mcp-server, vsync. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools