octocode — security grade SAFE, quality 67/100

Security audit verdict: SAFE · quality 67/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by bgauryy · MCP Server · ★ 945

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is octocode safe to install? View the security audit →

About octocode

Octocode: Research Driven Development for AI Research like a Senior Staff Engineer.In every codebase, in seconds. Stop guessing. Octocode researches code locally and externally: your own workspace (ripgrep + LSP-level go-to-definition, references, call hierarchy) and the world's (GitHub repos, PRs, npm/PyPI packages), turning it into verifiable evidence your AI can search, read, and trace. Use it as an MCP server inside your AI assistant, or as a terminal CLI. octocode.ai  ·  MCP Server  ·  CLI  ·  Skills Two ways to run Octocode Quick scripted lookups, CI, piping to othe

agentaiai-agentsai-toolsclaude-aicode-intelligencecode-searchcontextcursorcursor-ai

Quick Facts

Stars945
Forks78
LanguageTypeScript
CategoryMCP Server
LicenseMIT
Quality Score67.3256872312438/100
Open Issues5
Last Updated2026-09-27
Created2025-06-05
Platformsclaude-code, cli, mcp, node
Est. Tokens~17k

Compatible Skills

These tools work well together with octocode for enhanced workflows:

  • sourcebot — semantic(0.26)+complementary+rare_topics+same_lang+similar_pop+shared_platform (63%)
  • SearchCLI — semantic(0.18)+complementary+same_lang+similar_pop+shared_platform (56%)
  • prpm — semantic(0.17)+complementary+same_lang+similar_pop+shared_platform (51%)
  • CodeWhisper — semantic(0.16)+complementary+same_lang+similar_pop+shared_platform (51%)
  • Dorothy — semantic(0.16)+complementary+same_lang+similar_pop+shared_platform (50%)

octocode alternative? Top 6 similar tools

Looking for a octocode alternative? If you're comparing octocode with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • octocode by Muvon · ⭐ 477

    Structural code intelligence for AI agents — semantic search, knowledge graphs, and a built-in MCP server in o

  • OpenContext by 0xranx · ⭐ 1.2k

    A personal context store for AI agents and assistants—reuse your existing coding agent CLI (Codex/Claude/OpenC

  • atlassian-mcp-server by atlassian · ⭐ 1.1k

    Official remote MCP server for Atlassian. Securely connect Jira, Confluence, Jira Service Management, Bitbucke

  • dexto by truffle-ai · ⭐ 650

    Agent harness and tookit for building AI agents and agentic applications. CLI and SDKs included

  • agnix by agent-sh · ⭐ 430

    The missing linter and lsp for AI coding assistants. Validate CLAUDE.md, AGENTS.md, SKILL.md, hooks, MCP. Plug

  • Context-Engine by Context-Engine-AI · ⭐ 402

    Context-Engine MCP - Agentic Context Compression Suite

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is octocode?

octocode is Code research platform for AI agents; find, understand, and prove context across your code and all of GitHub, in a fraction of the tokens. One toolset, MCP or CLI. It is categorized as a MCP Server with 945 GitHub stars.

What programming language is octocode written in?

octocode is primarily written in TypeScript. It covers topics such as agent, ai, ai-agents.

How do I install or use octocode?

You can find installation instructions and usage details in the octocode GitHub repository at github.com/bgauryy/octocode. The project has 945 stars and 78 forks, indicating an active community.

What license does octocode use?

octocode is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to octocode?

The top alternatives to octocode on Agent Skills Hub include octocode, OpenContext, atlassian-mcp-server. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools