Is @getcordon/policy safe to install?
TypeScript SDK for configuring Cordon for MCP — the security gateway for MCP tool calls.
Promising but unproven. Limited track record. Scored from registry metadata only — no source-code analysis.
Install verdict
Unproven. Avoid for sensitive workflows unless you audit manually.
Embed this badge
Show users this server is actively trust-scored. Add the MCP Skills trust badge to your README to show current status.
[](https://mcpskills.io/score/npm:@getcordon/policy)
Want the full signal breakdown?
Unlock safety scan findings, signal-level scores, and actionable recommendations.
Get the full report →