Context-aware secret scanner: lets an AI agent scan, verify, and rewrite secrets before committing.
An MCP server that lets a coding agent scan, verify, and rewrite secrets before it writes a commit. A Model Context Protocol server for hardcode secrets too, and nobody reviews their diffs line by line the way they review a human pull request. This gives the agent tools to self-check — scan, classify, verify against the provider, and rewrite — so a live key never makes it into the commit. Works…
Inferido de los transportes que declara este listado (stdio). Que un cliente no aparezca aquí no significa que se haya descartado: simplemente Forge no puede confirmarlo.
La verificación confirma la identidad del publicador (la propiedad del repo), no la seguridad del código. El análisis de seguridad cubre los CVE conocidos y los scripts de instalación sospechosos.
Forge leyó 2 archivos de código de tarball del paquete publicado y no encontró ningún registro de herramientas MCP. La extracción se basa en patrones sobre el código publicado: un servidor que construye su lista de herramientas en tiempo de ejecución, o que solo publica código empaquetado o minificado, no registra nada que esto pueda ver. Tómalo como «no detectado», no como «no expone ninguna».
An MCP server that lets a coding agent scan, verify, and rewrite secrets before it writes a commit. A Model Context Protocol server for hardcode secrets too, and nobody reviews their diffs line by line the way they review a human pull request. This gives the agent tools to self-check — scan, classify, verify against the provider, and rewrite — so a live key never makes it into the commit. Works with Claude Code, Cursor, Continue, and Claude Desktop. Listed in the official MCP Registry as **, so…
Este paquete se analizó por última vez antes de que Forge empezara a guardar el árbol resuelto. El próximo análisis lo registrará.