McpMux — configure MCP servers once, connect every AI client through one local gateway.
Website · Download · Discover Servers · Features · Discord Cursor, Claude Desktop, VS Code, Windsurf — they all support MCP, but each one needs its own config file. None of them talk to each other. Add a server? Edit four files. Rotate an API key? Edit four files. New machine? Start from scratch. And those API keys? Sitting in plain-text JSON files anyone on your machine can read. McpMux is a…
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
Read out of the source npm actually ships, at scan time. The package was never executed. Tools registered dynamically at runtime, or hidden inside bundled or minified code, can be missed — so this is a floor on the tool surface, not a complete census of it.
echoNo description publishedThis tool published no description. Forge does not invent one.
whoamiNo description publishedThis tool published no description. Forge does not invent one.
addNo description publishedThis tool published no description. Forge does not invent one.
get_timeNo description publishedThis tool published no description. Forge does not invent one.
slow_taskNo description publishedThis tool published no description. Forge does not invent one.
get_envNo description publishedThis tool published no description. Forge does not invent one.
errorNo description publishedThis tool published no description. Forge does not invent one.
0 of 7 tools published a description.
Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.
Website · Download · Discover Servers · Features · Discord Cursor, Claude Desktop, VS Code, Windsurf — they all support MCP, but each one needs its own config file. None of them talk to each other. Add a server? Edit four files. Rotate an API key? Edit four files. New machine? Start from scratch. And those API keys? Sitting in plain-text JSON files anyone on your machine can read. McpMux is a desktop app that runs a local MCP gateway. You configure servers once — every AI client connects…
Linked names open Forge’s index of every entry observed exposing that tool. Browse all indexed tools.
This entry publishes no npm package, so Forge has no dependency tree for it. That is a gap in coverage — not a statement that it has no dependencies.