tree-sitter-analyzer — security grade SAFE, quality 64/100

Security audit verdict: SAFE · quality 64/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by aimasteracc · MCP Server · ★ 50

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is tree-sitter-analyzer safe to install? View the security audit →

About tree-sitter-analyzer

🌳 Tree-sitter Analyzer English 简体中文 Code intelligence for AI agents: a pre-indexed, token-efficient MCP server — 8 MCP tools + CLI, 100% local. Instant structural answers. Who calls this? What would break? Generate a UML diagram. One call returns the whole answer — no grep loop. Token-budget aware. TOON output cuts bulk/tabular payload by 50-70% vs raw JSON (measured invariant); RFC-0012 measured 0.52× ratio on representative decision tools. Edit safely. + + constraint DSL gate every modification before it happens; ≈0 cross-language mis-wires in the call graph. 100% local means the index lives in inside your repo, no telemetry, no remote calls. Every MCP response + CLI output is generated locally from the SQLite+FTS5 cache. Upgrading from v1.x? See docs/MIGRATION.md. [![Coverage](https://codecov.io/gh/aimasteracc/tree-sitter-analyzer/branch/mai

aiai-agentsai-codinganthropicastcall-graphclaude-codecode-analysiscode-intelligencecodegraph

Quick Facts

Stars50
Forks12
LanguagePython
CategoryMCP Server
LicenseMIT
Quality Score63.936620675297/100
Open Issues1
Last Updated2026-09-18
Created2025-07-30
Platformsclaude-code, mcp, python
Est. Tokens~20k

tree-sitter-analyzer alternative? Top 6 similar tools

Looking for a tree-sitter-analyzer alternative? If you're comparing tree-sitter-analyzer with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • fossil-mcp by yfedoseev · ⭐ 65

    The code quality toolkit for the agentic AI era. Find dead code, clones, and scaffolding across 15 languages.

  • compass by crabbuild · ⭐ 159

    Native, local-first knowledge graph engine for code and project artifacts—inspired by Graphify, built in Rust,

  • cli by supermodeltools · ⭐ 91

    Save 40%+ on agent token costs with code graphs: call graphs, dependency graphs, dead code detection, and blas

  • claude-emporium by Vvkmnn · ⭐ 84

    🏛 [UNDER CONSTRUCTION] A (roman) claude plugin marketplace

  • roslyn-codelens-mcp by MarcelRoozekrans · ⭐ 51

    Roslyn-based MCP server giving AI agents deep semantic understanding of .NET/C# codebases — 67 tools for navig

  • claude-historian-mcp by Vvkmnn · ⭐ 177

    📜 An MCP server for conversation history search and retrieval in Claude Code

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular Python Agent Tools

Frequently Asked Questions

What is tree-sitter-analyzer?

tree-sitter-analyzer is Cross-language-safe code-intelligence MCP for AI agents: 13 languages, family-gated call graph, blast radius, health grading, 8 facade tools, JSON envelopes, 100% local. Run miswire-audit on your repo. It is categorized as a MCP Server with 50 GitHub stars.

What programming language is tree-sitter-analyzer written in?

tree-sitter-analyzer is primarily written in Python. It covers topics such as ai, ai-agents, ai-coding.

How do I install or use tree-sitter-analyzer?

You can find installation instructions and usage details in the tree-sitter-analyzer GitHub repository at github.com/aimasteracc/tree-sitter-analyzer. The project has 50 stars and 12 forks, indicating an active community.

What license does tree-sitter-analyzer use?

tree-sitter-analyzer is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to tree-sitter-analyzer?

The top alternatives to tree-sitter-analyzer on Agent Skills Hub include fossil-mcp, compass, cli. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools