High-signal answers about skills, MCP servers, and Aescut
The old single-page FAQ is now a topic hub. Each question below links to a standalone answer with current host-specific setup guidance, risk context, and authoritative source links so readers can verify the details instead of trusting stale snippets.
FAQ topics
Getting Started
What is Aescut?
Understand what Aescut is, what it publishes, and how the registry stays current.
Is Aescut free?
Understand what Aescut is, what it publishes, and how the registry stays current.
How often is the registry updated?
Understand what Aescut is, what it publishes, and how the registry stays current.
Skills And MCP Basics
What is an AI skill?
A practical definition of AI skills, how they are packaged, and where they fit in an agent workflow.
What is an MCP server?
Understand what MCP servers are, what transports they use, and why agents rely on them for live tools.
What is the difference between a skill and an MCP server?
A technical comparison of skills and MCP servers, with examples of when each is the better fit.
What is the Model Context Protocol (MCP)?
A plain-language explanation of MCP, why vendors adopted it, and where it fits in the AI tooling stack.
Security And Trust
What permissions do skills have?
File access, network access, shell execution, and what really determines the blast radius.
Can a skill access my files?
File access, network access, shell execution, and what really determines the blast radius.
Can a skill make network requests?
File access, network access, shell execution, and what really determines the blast radius.
Can a skill execute shell commands?
File access, network access, shell execution, and what really determines the blast radius.
Are skills safe to install?
Why the answer is “sometimes”, and what separates a safe install from a reckless one.
How does Aescut review skills and MCP servers?
Aescut’s review pipeline, what gets pinned, and how human review and automation fit together.
What happens when a reviewed skill gets a new commit?
Aescut’s review pipeline, what gets pinned, and how human review and automation fit together.
What do the risk levels mean?
How to interpret Aescut’s risk levels, trusted maintainers, and stale reviews without oversimplifying them.
What is a trusted maintainer?
How to interpret Aescut’s risk levels, trusted maintainers, and stale reviews without oversimplifying them.
What is supply chain risk in AI tools?
Why AI tool supply-chain risk is different from ordinary package risk, and what signals matter most.
What should I check before installing a skill?
A practical pre-install checklist for skills and MCP servers.
Installation
How do I install a skill on Claude Code?
What the current Claude Code docs actually support, and how to port Aescut skills into Claude Code safely.
How do I install a skill on OpenAI Codex?
Current official Codex skills locations, installer flows, and what to do with third-party skills.
How do I install an MCP server on Claude Code?
Current Claude Code MCP setup, config locations, CLI shortcuts, and common verification steps.
How do I install an MCP server on Claude Desktop?
Config paths, example JSON, restart behavior, and the most common macOS path pitfall.
How do I install an MCP server on Cursor?
Current Cursor MCP configuration, project vs global scopes, and what the agent approval model means.
How do I install an MCP server on Windsurf?
Current Windsurf MCP setup, where to add servers, and the tool-count limit that surprises users.
How do I install an MCP server on VS Code with GitHub Copilot?
Current VS Code MCP setup, workspace vs user configs, trust prompts, input variables, and sandboxing.
Aescut MCP
How do I install the Aescut MCP server?
What the Aescut installer actually does today, when to use the generic bundle, and how to wire the MCP manually.
What tools does the Aescut MCP server provide?
Aescut’s current MCP tool surface, what check_risk returns, and how to use the data in practice.
What does check_risk actually return?
Aescut’s current MCP tool surface, what check_risk returns, and how to use the data in practice.