ToolProof Trust Profile

ai-tunnelmind-sigil

Remote context/data exposure profile. Review what prompts, queries, or returned context may leave the local environment.

15risk score
Review Firstconnection signal
remote_context_data_exposurerisk type
57evidence score
Source: https://github.com/TunnelMind/sigil-mcp
Registry: ai.tunnelmind/sigil 0.2.0

Connection signal

Remote context/data exposure profile. Review what prompts, queries, or returned context may leave the local environment.

Observed tools

  • None observed in this static profile.

Top findings

  • Detected capability: network_egress — src/prompts.js:43

Recommended controls

  • Install in a sandbox before team or production use.
  • Pin the exact package/repository version.
  • Review install scripts, Dockerfile behavior, and dependency pins.
  • Review what prompts, queries, or documents are sent to remote endpoints.
  • Avoid sensitive context until data handling is understood.