explain_finding

11 registry entries were observed exposing a tool named explain_finding — none of them flagged as a privileged capability.

Spelled explain_finding, explain-finding in the wild — all one tool for the purposes of this page.

Every row is point-in-time scan output, dated below. Forge has an observed tool surface for 8,470 of 26,658 scannable entries (32%) — an entry that has not been scanned cannot appear here, so absence from this list is not evidence that an entry does not expose this tool.

  1. trust 85/100 · AMCP serverobserved · static extraction
    Scan code for quantum-vulnerable cryptography and get NIST post-quantum migration guidance.
  2. calllint-mcpverified
    trust 85/100 · AMCP serverobserved · static extraction
    Static preflight safety gate for MCP servers — scan configs before you run them. Never executes.
  3. trust 85/100 · AMCP serverobserved · static extraction
    45 judges that evaluate AI-generated code for security, cost, and quality with built-in AST.
  4. trust 60/100 · BMCP serverobserved · static extraction
    Pre-launch safety check for AI-built apps (Lovable, Bolt, Replit, Cursor, v0). Scans your GitHub Actions + CI hygiene locally. Source code a
  5. trust 60/100 · BMCP serverobserved · static extraction
    MCP server for CertScore public website risk-signal workflows.
  6. trust 60/100 · BMCP serverobserved · static extraction
    Codebase health MCP: dead code, cycles, coupling, architectural drift.
  7. trust 60/100 · BMCP serverobserved · static extraction
    120-module QA gate. Give Claude eyes (screenshots), ears (Sentry errors), and hands (verify fixes).
  8. trust 60/100 · BMCP serverobserved · static extraction
    MCP server for static security analysis of Android source code
  9. trust 60/100 · BMCP serverobserved · static extraction
    Autonomous UX and a11y audit, fix, and verify loop. 38 tools, framework-aware patches.
  10. trust 40/100 · CMCP serverobserved · static extraction
    Multi-layer security scanner for MCP servers and agent skills (injection, exfiltration)
  11. trust 40/100 · CMCP serverobserved · static extraction
    Scans AI-generated code for invisible Unicode, Trojan Source, and supply-chain threats.

All indexed toolsSearch the registry for explain_finding