BifrostMCP — security grade SAFE, quality 81/100

Security audit verdict: SAFE · quality 81/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by biegehydra · MCP Server · ★ 223

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is BifrostMCP safe to install? View the security audit →

About BifrostMCP

Bifrost - VSCode Dev Tools MCP Server This VS Code extension provides a Model Context Protocol (MCP) server that exposes VSCode's powerful development tools and language features to AI tools. It enables advanced code navigation, analysis, and manipulation capabilities when using AI coding assistants that support the MCP protocol. Table of Contents Features Installation/Usage Multi-Project Support Available Tools Available Commands Troubleshooting Contributing Debugging License Features Language Server Integration: Access VSCode's language server capabilities for any supported language Code Navigation: Find references, definitions, implementations, and more Symbol Search: Search for symbols across your workspace Code Analysis: Get semantic tokens, document symbols, and type information Smart Selection: Use semantic selection ranges for intelligent code selection

clinecursorcursor-aideveloper-toolsmcpmcp-servervscodevscode-extensionwindsurf

Quick Facts

Stars223
Forks35
LanguageTypeScript
CategoryMCP Server
LicenseAGPL-3.0
Quality Score80.8094387312513/100
Open Issues8
Last Updated2026-03-27
Created2025-03-06
Platformscli, mcp, node, vscode
Est. Tokens~16k

BifrostMCP alternative? Top 6 similar tools

Looking for a BifrostMCP alternative? If you're comparing BifrostMCP with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • vscode-mcp by tjx666 · ⭐ 103

    MCP server for Claude Code/VSCode/Cursor/Windsurf to use editor self functionality. ⚡ Get real-time LSP diagno

  • atlassian-mcp-server by atlassian · ⭐ 1.1k

    Official remote MCP server for Atlassian. Securely connect Jira, Confluence, Jira Service Management, Bitbucke

  • Overture by SixHq · ⭐ 641

    Overture is an open-source, locally running web interface delivered as an MCP (Model Context Protocol) server

  • ollama-mcp by rawveg · ⭐ 170

    An MCP Server for Ollama

  • ads-mcp by amekala · ⭐ 91

    MCP server for managing ad campaigns across Google Ads, Meta Ads, LinkedIn Ads, and TikTok Ads. 100+ tools for

  • ox by sageox · ⭐ 59

    The hivemind for AI coding agents — persistent team context recorded once and recalled across agents, machines

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is BifrostMCP?

BifrostMCP is VSCode Extension with an MCP server that exposes semantic tools like Find Usages and Rename to LLMs. It is categorized as a MCP Server with 223 GitHub stars.

What programming language is BifrostMCP written in?

BifrostMCP is primarily written in TypeScript. It covers topics such as cline, cursor, cursor-ai.

How do I install or use BifrostMCP?

You can find installation instructions and usage details in the BifrostMCP GitHub repository at github.com/biegehydra/BifrostMCP. The project has 223 stars and 35 forks, indicating an active community.

What license does BifrostMCP use?

BifrostMCP is released under the AGPL-3.0 license, making it free to use and modify according to the license terms.

What are the best alternatives to BifrostMCP?

The top alternatives to BifrostMCP on Agent Skills Hub include vscode-mcp, atlassian-mcp-server, Overture. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools