MCAF — security grade SAFE, quality 56/100

Security audit verdict: SAFE · quality 56/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by managedcode · Codex Skill · ★ 52

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is MCAF safe to install? View the security audit →

About MCAF

MCAF Concepts Managed Code Coding AI Framework Developed and sustained by Managed Code March 2026 What MCAF Is MCAF is a framework for building real software with AI coding agents. It defines how to: keep durable engineering context in the repository make AI work from plus repo-native docs and skills verify behaviour with tests and static analysis keep AI guidance small, explicit, and versioned The goal of MCAF: Use AI to build real products in a way that is predictable, safe, and repeatable. MCAF has three core elements: Context — code, docs, , and skills live with the repo. Verification — tests and analyzers are the decision makers, not opinions. Instructions — root and local files define how agents work here. These concepts define the framework (the "what" and "why"). is the bootstrap procedure (the "how"). Repository files apply both to a specific solution. 1.1 Bootstrap Surface is skill-first.

aiai-agentsai-frameworkclaude-codecodexgeminimcaf

Quick Facts

Stars52
Forks6
LanguageCSS
CategoryCodex Skill
LicenseCC-BY-4.0
Quality Score56.3614330732178/100
Last Updated2026-06-25
Created2025-12-01
Platformsclaude-code, codex, gemini
Est. Tokens~19k

MCAF alternative? Top 6 similar tools

Looking for a MCAF alternative? If you're comparing MCAF with other codex skill tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • aiwg by jmagly · ⭐ 211

    Cognitive architecture for AI-augmented software development. Specialized agents, structured workflows, and mu

  • AgenticGoKit by AgenticGoKit · ⭐ 179

    Open-source Agentic AI framework in Go for building, orchestrating, and deploying intelligent agents. LLM-agno

  • c4-genai-suite by codecentric · ⭐ 173

    c4 GenAI Suite

  • agent-designer by appautomaton · ⭐ 130

    Portable SKILLs workspace for Claude Code, Codex, and Gemini — issue-driven workflows and cross-agent collabor

  • AI-Governor-Framework by Fr-e-d · ⭐ 77

    The Keystone Framework for AI-Driven Code ! Turn any AI coding assistant into a disciplined, project-aware eng

  • claudepro-directory by JSONbored · ⭐ 217

    HeyClaude (formerly Claude Pro Directory) is a searchable collection of pre-built AI skills, agents, MCP serve

More Codex Skill Tools

Explore other popular codex skill tools:

View all Codex Skill tools →

Popular CSS Agent Tools

Frequently Asked Questions

What is MCAF?

MCAF is MCAF is a framework for building software products together with AI coding agents.. It is categorized as a Codex Skill with 52 GitHub stars.

What programming language is MCAF written in?

MCAF is primarily written in CSS. It covers topics such as ai, ai-agents, ai-framework.

How do I install or use MCAF?

You can find installation instructions and usage details in the MCAF GitHub repository at github.com/managedcode/MCAF. The project has 52 stars and 6 forks, indicating an active community.

What license does MCAF use?

MCAF is released under the CC-BY-4.0 license, making it free to use and modify according to the license terms.

What are the best alternatives to MCAF?

The top alternatives to MCAF on Agent Skills Hub include aiwg, AgenticGoKit, c4-genai-suite. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse Codex Skill tools