Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add mcp/agentkitai/lore/loregit clone --depth 1 https://github.com/agentkitai/loreGrade A, and why
lore scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
{
"lore": {
"command": "uvx",
"args": [
"lore-sdk",
"lore-sdk[mcp]"
],
"env": {}
}
}What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 10 lines scan A 91b43a5f8c3d
lore is an MCP server published in the GitHub repository agentkitai/lore (7 stars, last pushed 2d ago), licensed MIT. Its token cost is not measured: an MCP server costs its tool schemas, not its config file. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other mcp servers, from other repositories
aspark-graph
A lean, local code-and-artifact knowledge graph that speaks SPARK. Runs locally from the aspark-graph Python package.
canvas-mcp
Local-first MCP server for Canvas LMS. Stdio transport, no third-party broker. Runs locally from the canvas-local-mcp Python package. Needs 2 environment variables to run.
a-memory
a-memory — persistent, layer-isolated memory for AI agents: 5 primitives, hybrid search, knowledge graphs, envelope encryption. Runs locally from the a-memory Python package.
lindas
MCP server "lindas" as configured in malkreide/lindas-mcp. Runs lindas_mcp.server with python.
lindas-mcp
MCP server for LINDAS — the Swiss administration's linked-data knowledge graph. Runs locally from the lindas-mcp Python package.
workgraph
MCP server "workgraph" as configured in AlexWangzhixin/WorkGraph. Runs locally from the workgraph Python package.