heimdall — security grade SAFE, quality 65/100

Security audit verdict: SAFE · quality 65/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by ArihantDeva · MCP Server · ★ 121

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is heimdall safe to install? View the security audit →

About heimdall

Heimdall Your agent keeps rebuilding work you already did. Heimdall makes it stop. Heimdall gives AI coding agents persistent memory across every repository and project you work on so the question "did I already solve this in another project?" gets answered by one verified search instead of twenty minutes of grep, , and loops. The problem it solves 1. Memory that doesn't live in one repository. Every other memory tool is per-project. But your work isn't: the optimized functions you built in one project could be useful somewhere else. Heimdall indexes everything you touch into one semantic graph, so kno

ai-agentsclaude-codeclicode-intelligencedeveloper-toolsembeddingsknowledge-basellm-toolsmcpmemory

Quick Facts

Stars121
Forks9
LanguageJavaScript
CategoryMCP Server
LicenseMIT
Quality Score65.0495337816984/100
Open Issues1
Last Updated2026-09-19
Created2026-08-20
Platformsclaude-code, cli, mcp, node
Est. Tokens~22k

Compatible Skills

These tools work well together with heimdall for enhanced workflows:

  • ownmem — semantic(0.21)+complementary+same_lang+similar_pop+shared_platform (57%)
  • constellation-engine — semantic(0.19)+complementary+same_lang+similar_pop+shared_platform (57%)
  • wife — semantic(0.18)+complementary+same_lang+similar_pop+shared_platform (56%)

heimdall alternative? Top 6 similar tools

Looking for a heimdall alternative? If you're comparing heimdall with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • octocode by Muvon · ⭐ 475

    Structural code intelligence for AI agents — semantic search, knowledge graphs, and a built-in MCP server in o

  • gno by gmickel · ⭐ 109

    Local AI-powered document search and editing with first-in-class hybrid retrieval, LLM answers, WebUI, REST AP

  • roam-code by Cranot · ⭐ 518

    Local codebase intelligence CLI + MCP server for AI coding agents: SQLite code graph, 28 languages, 287 comman

  • rust-docs-mcp-server by Govcraft · ⭐ 291

    🦀 Prevents outdated Rust code suggestions from AI assistants. This MCP server fetches current crate docs, use

  • deepcontext-mcp by Wildcard-Official · ⭐ 275

    DeepContext is an MCP server that adds symbol-aware semantic search to Claude Code, Codex CLI, and other agent

  • TaskWing by josephgoksu · ⭐ 87

    Local-first AI knowledge layer. Extract architecture, query from any AI tool via MCP. Private by architecture.

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular JavaScript Agent Tools

Frequently Asked Questions

What is heimdall?

heimdall is A lightweight CPU only memory approach with ranked retrieval. Simple, yet effective.. It is categorized as a MCP Server with 121 GitHub stars.

What programming language is heimdall written in?

heimdall is primarily written in JavaScript. It covers topics such as ai-agents, claude-code, cli.

How do I install or use heimdall?

You can find installation instructions and usage details in the heimdall GitHub repository at github.com/ArihantDeva/heimdall. The project has 121 stars and 9 forks, indicating an active community.

What license does heimdall use?

heimdall is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to heimdall?

The top alternatives to heimdall on Agent Skills Hub include octocode, gno, roam-code. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools