# @wyrdsekai/researchzosho-mcp

Deep research MCP server with citations and memory. Starts ResearchZosho for Claude Code, Codex, Gemini CLI or any MCP client that can run npx, and fetches the release if it is not installed.

- **Type:** MCP server
- **Trust:** 85/100 (A), scored on the package rubric
- **Verification:** verified (build provenance)
- **Version:** 0.5.1
- **Author:** io.github.Wyrdsekai
- **License:** Apache-2.0
- **npm:** @wyrdsekai/researchzosho-mcp
- **Source:** https://github.com/Wyrdsekai/researchzosho
- **Compatible clients:** claude-code, cursor, copilot, gemini (basis: transport)

## Trust

85/100 (A), scored on the package rubric
- Publisher verified: no
- Build provenance: verified attestation
- npm trusted publishing (OIDC): yes
- Install scripts: nothing suspicious found
- Prompt-injection scan: not run
- Obfuscation scan: not run
- Evidence age: 4 days

## Security scan

- **Status:** clean
- **Scanned:** 2026-09-30T19:15:14.927Z
- **Version scanned:** 0.5.1
- **CVEs:** none found by OSV at scan time

## Tools

Tool surface: no readable artifact — tool surface unknown.

## Install

**Verdict: install** — No blocking findings and no open coverage gaps — safe to install as configured.
**Config** (claude-code):
```json
"{\n  \"mcpServers\": {\n    \"researchzosho\": {\n      \"command\": \"npx\",\n      \"args\": [\n        \"-y\",\n        \"@wyrdsekai/researchzosho-mcp\"\n      ]\n    }\n  }\n}"
```

## Blast radius

Contained to moderate — no credential declaration found, from the publisher, the upstream registry, or the README. Known so far: runs on your machine.
- Floor 8, ceiling 26 (tier: unknown)
- `unknown` means the floor and ceiling land in different bands — not measured enough to name one. It does not mean low.
- This is impact, not likelihood. A high radius is not a defect: a filesystem server is supposed to write files. It is never part of the trust score.

## Machine-readable views of this entry

- Signed JSON: https://forgeregistry.com/api/v1/packages/%40wyrdsekai%2Fresearchzosho-mcp
- Install plan: https://forgeregistry.com/api/v1/packages/%40wyrdsekai%2Fresearchzosho-mcp/install-plan
- Alternatives: https://forgeregistry.com/api/v1/alternatives/%40wyrdsekai%2Fresearchzosho-mcp
- HTML page: https://forgeregistry.com/registry/%40wyrdsekai%2Fresearchzosho-mcp
- MCP: POST https://forgeregistry.com/api/mcp → `forge_get_package` / `forge_install_plan`

## About this document

Generated by Forge (https://forgeregistry.com) — a compact rendering of the same record served, signed, at the JSON URL above. Trust and scan facts are the registry's own measurements; anything Forge did not measure is named as unmeasured rather than omitted.
