opencode-mcp — security grade SAFE, quality 75/100

Security audit verdict: SAFE · quality 75/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by AlaeddineMessadi · MCP Server · ★ 130

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is opencode-mcp safe to install? View the security audit →

About opencode-mcp

opencode-mcp Give any MCP client the power of OpenCode. opencode-mcp is an MCP server that bridges your AI tools (Claude, Cursor, Windsurf, VS Code, etc.) to OpenCode's headless API. It lets your AI delegate real coding work — building features, debugging, refactoring, running tests — to OpenCode sessions that autonomously read, write, and execute code in your project. 79 tools Auto-start Why Use This? Delegate coding tasks — Tell Claude "build me a REST API" and it delegates to OpenCode, which creates files, installs packages, writes tests, and reports back. Parallel work — Fire off multiple tasks to OpenCode while your primary AI keeps working on something else. Any MCP client — Works with Claude Desktop, Claude Code, Cursor, Windsurf, VS Code Copilot, Cline, Continue, Zed, Amazon Q, and any other MCP-compatible tool. Zero setup — The server auto-starts if it's not already running. No manual steps. Q

aiai-codingai-toolsclaudeclaude-desktopcoding-assistantcursordeveloper-toolsheadless-apillm

Quick Facts

Stars130
Forks24
LanguageTypeScript
CategoryMCP Server
LicenseMIT
Quality Score75.2796089624312/100
Last Updated2026-09-16
Created2026-02-08
Platformsclaude-code, cli, mcp, node
Est. Tokens~16k

opencode-mcp alternative? Top 6 similar tools

Looking for a opencode-mcp alternative? If you're comparing opencode-mcp with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • claude-historian-mcp by Vvkmnn · ⭐ 177

    📜 An MCP server for conversation history search and retrieval in Claude Code

  • toolhive-studio by stacklok · ⭐ 167

    ToolHive is an application that allows you to install, manage and run MCP servers and connect them to AI agent

  • claude-emporium by Vvkmnn · ⭐ 84

    🏛 [UNDER CONSTRUCTION] A (roman) claude plugin marketplace

  • youtube-connector-mcp by ShellyDeng08 · ⭐ 73

    MCP server for YouTube — search videos, get transcripts, channels, and playlists. Works with Claude, Cursor &

  • roampal-core by roampal-ai · ⭐ 50

    Outcome-based persistent memory MCP server for Claude Code and OpenCode. Good advice promoted, bad advice demo

  • Overture by SixHq · ⭐ 630

    Overture is an open-source, locally running web interface delivered as an MCP (Model Context Protocol) server

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is opencode-mcp?

opencode-mcp is MCP server for OpenCode AI — 70 tools, 10 resources, 5 prompts. Use npx opencode-mcp with Claude Desktop, Claude Code, Cursor, Windsurf, or any MCP client.. It is categorized as a MCP Server with 130 GitHub stars.

What programming language is opencode-mcp written in?

opencode-mcp is primarily written in TypeScript. It covers topics such as ai, ai-coding, ai-tools.

How do I install or use opencode-mcp?

You can find installation instructions and usage details in the opencode-mcp GitHub repository at github.com/AlaeddineMessadi/opencode-mcp. The project has 130 stars and 24 forks, indicating an active community.

What license does opencode-mcp use?

opencode-mcp is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to opencode-mcp?

The top alternatives to opencode-mcp on Agent Skills Hub include claude-historian-mcp, toolhive-studio, claude-emporium. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools