Atlas / MCP servers / video-db / VideoDB Agent Toolkit

VideoDB Agent ToolkitBLOCK

mcp/video-db/videodb-agent-toolkit

An open-source agent toolkit that auto-syncs SDK versions, docs, and examples—built for seamless integration with LLMs, and AI agents ( MCP compatible).

Verdict
BLOCK
Grade
D
Trust score
67 /100
Exposed tools
4 4r · 0w · 0d
Transport
stdio
License
—
Stars
48
01

Overview

From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.

[![Latest Number][token-length-shield]][token-length-url] [![GitHub tag (latest SemVer)][tag-shield]][ tag-url] [![Stars][stars-shield]][stars-url] [![Issues][issues-shield]][issues-url]

VideoDB Agent Toolkit

AI Agent toolkit for VideoDB

llms.txt >> llms-full.txt MCP

The VideoDB Agent Toolkit exposes VideoDB context to LLMs and agents. It enables integration to AI-driven IDEs like Cursor, chat agents like Claude Code etc. This toolkit automates context generation, maintenance, and discoverability. It auto-syncs SDK versions, docs, and examples and is distributed through MCP and llms.txt

🚀 Quick Overview

The toolkit offers context files designed for use with LLMs, structured around key components:

llms-full.txt — Comprehensive context for deep integration.

llms.txt — Lightweight metadata for quick discovery.

MCP (Model Context Protocol) — A standardized protocol.

These components leverage automated workflows to ensure your AI applications always operate with accurate, up-to-date context.

📦 Toolkit Components

1. llms-full.txt (View »)

llms-full.txt consolidates everything your LLM agent needs, including:

  • Comprehensive VideoDB overview.
  • Complete SDK usage instructions and documentation.
  • Detai
Read from source at commit c3d78a7b25dfOBSERVED · 2026-10-08
02

Connect

Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control. Replace the environment placeholders with a token scoped to the least it needs.

claude-code
claude mcp add videodb_helper --env FIRECRAWL_API_KEY=${FIRECRAWL_API_KEY} --env GEMINI_API_KEY=${GEMINI_API_KEY} --env OPENAI_API_KEY=${OPENAI_API_KEY} --env VIDEODB_API_KEY=${VIDEODB_API_KEY} -- uvx videodb_helper
claude-desktop
{
  "mcpServers": {
    "videodb_helper": {
      "command": "uvx",
      "args": [
        "videodb_helper"
      ],
      "env": {
        "FIRECRAWL_API_KEY": "${FIRECRAWL_API_KEY}",
        "GEMINI_API_KEY": "${GEMINI_API_KEY}",
        "OPENAI_API_KEY": "${OPENAI_API_KEY}",
        "VIDEODB_API_KEY": "${VIDEODB_API_KEY}"
      }
    }
  }
}
03

Exposed tools (4)

4 read · 0 write · 0 destructive.

ToolRiskDescription
call_directorread
code_assistantreadtry:
doc_assistantreadtry:
play_videoreadwebbrowser.open(f
04

Trust audit

BLOCKgrade D · trust 67/100 Do not install this without reading the findings. The audit found something that could harm you or your machine.

LayerWhat it checksResult
L0Provenance & inventoryPASS
L1Static analysis of the codePASS
L2Instruction surface (what it tells the agent)FAIL
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
none-observed
Network
declared (4 observation(s))
Shell
none-observed
Dependencies
pinned
Secrets in source
none-found

Findings (25)

HIGHPrompt injection · prompt.tool_poisoning · CWE-94, CWE-1427
context/examples/examples_context.md:1554
🚨 **IMPORTANT:  Before proceeding, carefully review the media files you intend to delete. This action cannot be undone.** 🚨
Why it matters. a tool description carrying instructions to the agent
Fix. tool descriptions describe the tool; nothing else
HIGHPrompt injection · prompt.tool_poisoning · CWE-94, CWE-1427
context/examples/fragments/Cleanup.txt:10
🚨 **IMPORTANT:  Before proceeding, carefully review the media files you intend to delete. This action cannot be undone.** 🚨
Why it matters. a tool description carrying instructions to the agent
Fix. tool descriptions describe the tool; nothing else
HIGHPrompt injection · prompt.tool_poisoning · CWE-94, CWE-1427
context/llms-full.md:3748
🚨 **IMPORTANT:  Before proceeding, carefully review the media files you intend to delete. This action cannot be undone.** 🚨
Why it matters. a tool description carrying instructions to the agent
Fix. tool descriptions describe the tool; nothing else
HIGHPrompt injection · prompt.tool_poisoning · CWE-94, CWE-1427
context/llms-full.txt:3748
🚨 **IMPORTANT:  Before proceeding, carefully review the media files you intend to delete. This action cannot be undone.** 🚨
Why it matters. a tool description carrying instructions to the agent
Fix. tool descriptions describe the tool; nothing else
HIGHPrompt injection · prompt.tool_poisoning · CWE-94, CWE-1427
context/prompts/python-to-node-sdk.txt:48
IMPORTANT: Always read the full Python source file, not just the diff, to understand WHERE and HOW to add the code.
Why it matters. a tool description carrying instructions to the agent
Fix. tool descriptions describe the tool; nothing else
HIGHPrompt injection · prompt.zero_width · CWE-94, CWE-1427
context/docs/fragments/collections_68.txt:486
Why it matters. invisible characters in instruction text
Fix. strip non-printing characters
HIGHPrompt injection · prompt.zero_width · CWE-94, CWE-1427
context/docs/fragments/collections_68.txt:495
Why it matters. invisible characters in instruction text
Fix. strip non-printing characters
HIGHPrompt injection · prompt.zero_width · CWE-94, CWE-1427
context/docs/fragments/custom_annotations_81.txt:361
Why it matters. invisible characters in instruction text
Fix. strip non-printing characters
HIGHPrompt injection · prompt.zero_width · CWE-94, CWE-1427
context/docs/fragments/custom_annotations_81.txt:365
Why it matters. invisible characters in instruction text
Fix. strip non-printing characters
HIGHPrompt injection · prompt.zero_width · CWE-94, CWE-1427
context/docs/fragments/custom_annotations_81.txt:367
Why it matters. invisible characters in instruction text
Fix. strip non-printing characters
LOWInventory / provenance · inv.no_license · CWE-1104
Why it matters. no LICENSE file and no repo licence
Fix. add a licence
LOWObfuscation / stealth · obf.base64_blob · CWE-506, CWE-94
README.md:10
<img src="https://codaio.imgix.net/docs/_s5lUnUCIU/blobs/bl-RgjcFrrJjj/d3cbc44f8584ecd42f2a97d981a144dce6a66d83ddd5864f723b7808c7d1dfbc25034f2f25e1b2188e78f78f37bcb79d3c34ca937cbb08ca8b3da1526c29da9a8
LOWObfuscation / stealth · obf.base64_blob · CWE-506, CWE-94
context/docs/docs_context.md:215
[![](https://codaio.imgix.net/docs/_s5lUnUCIU/blobs/bl-LqObRP4v0A/7b9d7a007c857e3d084558d9276010d6e2101260ab78ea2dc871e4e1d2dbb358386b5f7d832921deb36cd820d65ed19f472132b189e46194f713725ee712a89368b08d
LOWObfuscation / stealth · obf.base64_blob · CWE-506, CWE-94
context/docs/fragments/advanced_visual_search_pipelines_82.txt:399
![Screenshot 2024-07-04 at 11.41.39 AM.jpg](https://codaio.imgix.net/docs/_s5lUnUCIU/blobs/bl-HozdUmjeH4/7f7ec6d342e7b6ecb573aeeddb6e11b4d4529edb0b8188204fe1e2ca0545d2eda1b47369bbd32647998a8e1ec1cc326
LOWObfuscation / stealth · obf.base64_blob · CWE-506, CWE-94
context/docs/fragments/custom_annotations_81.txt:373
![Screenshot 2024-07-04 at 12.23.02 PM.jpg](https://codaio.imgix.net/docs/_s5lUnUCIU/blobs/bl-sFF1gD6ccn/2b6d908fe9b544290d09b9d340cfa6ad521c2972dfe9756d8fe83c2d23a780a9838651fdfdf681a6eabb393922d6be3
LOWObfuscation / stealth · obf.base64_blob · CWE-506, CWE-94
context/docs/fragments/index.txt:357
![](https://codaio.imgix.net/docs/_s5lUnUCIU/blobs/bl-CrhoacPlde/c28540a214a0f5fd7560cc8e3375e2165623225c13993c82e8558403f355550d132c3e135370f7b0f23bf79c226b8fc6fa61e924f13a5f773827edfd5a9dba5d89ad08e
LOWPrivilege escalation / persistence · priv.escalate · CWE-269, CWE-250
.github/workflows/update_docs_context.yml:19
sudo apt-get update
Why it matters. asks for elevated privileges
LOWPrivilege escalation / persistence · priv.escalate · CWE-269, CWE-250
.github/workflows/update_docs_context.yml:20
sudo apt-get install -y yq
Why it matters. asks for elevated privileges
LOWPrivilege escalation / persistence · priv.escalate · CWE-269, CWE-250
.github/workflows/update_docs_context.yml:84
sudo apt-get update
Why it matters. asks for elevated privileges
LOWPrivilege escalation / persistence · priv.escalate · CWE-269, CWE-250
.github/workflows/update_docs_context.yml:85
sudo apt-get install -y yq
Why it matters. asks for elevated privileges
LOWPrivilege escalation / persistence · priv.escalate · CWE-269, CWE-250
.github/workflows/update_examples_context.yml:28
sudo apt-get update
Why it matters. asks for elevated privileges
LOWPrompt injection · prompt.authority_framing · CWE-94, CWE-1427
context/prompts/python-to-node-sdk.txt:8
You have FULL ACCESS to read any Python file to understand the complete context.
INFOSupply chain · prompt.pipe_to_shell · CWE-829, CWE-1357
README.md:80
curl -LsSf https://astral.sh/uv/install.sh | sh
INFOSupply chain · prompt.pipe_to_shell · CWE-829, CWE-1357
context/docs/docs_context.md:485
`curl-LsSf<https://astral.sh/uv/install.sh>\|sh`
INFOSupply chain · prompt.pipe_to_shell · CWE-829, CWE-1357
context/docs/fragments/videodb_mcp_server_109.txt:128
`curl-LsSf<https://astral.sh/uv/install.sh>\|sh`

Gates applied: no_behavioural_pass, no_license.

Audited 2026-10-08 · audit v0.4.1 · source sha c3d78a7b25dffull audit observations/trust-audit/mcp-server/video-db__videodb-agent-toolkit.json · Report an issue / request a re-scan
05

Audit history

Every audit this server has had. A grade with a past is a grade somebody is still checking.

DateSourceVerdictGradeScoreChange
2026-10-08c3d78a7b25dfBLOCKD67first audit
06

Questions

What is the VideoDB Agent Toolkit MCP server?

An open-source agent toolkit that auto-syncs SDK versions, docs, and examples—built for seamless integration with LLMs, and AI agents ( MCP compatible).

What tools does VideoDB Agent Toolkit expose?

4 in total: 4 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.

Is VideoDB Agent Toolkit safe to connect to an agent?

No — not without reading the findings first. The audit graded it D (67/100) and found 10 critical or high issues in the source. Each one is listed on this page with the file and line it is on.

What credentials does VideoDB Agent Toolkit need?

It reads FIRECRAWL_API_KEY, GEMINI_API_KEY, OPENAI_API_KEY and VIDEODB_API_KEY from the environment. Give it a token scoped to the least it needs — an agent that can be talked into calling a tool can be talked into calling it with your credentials.

How does VideoDB Agent Toolkit run?

It speaks stdio, so it runs as a local process your client starts. It is published on PyPI as videodb_helper.

How current is this page?

The grade is for one exact copy of the source (c3d78a7b25df), read on 2026-10-08. The repository is watched and re-audited when it changes.

Advertisement