flameox — security grade SAFE, quality 66/100

Security audit verdict: SAFE · quality 66/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by morluto · MCP Server · ★ 114

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is flameox safe to install? View the security audit →

About flameox

flameox Bounded local runtime evidence for coding agents. Flameox coordinates profilers, benchmark tools, trace processors, and direct local targets. It gives an agent a short path from an explicit native artifact or live command to bounded evidence, while keeping preservation optional. Version 0.2 is a clean break. There is no workspace to initialize, no , no SQLite control plane, no durable job to poll, and no parent directory discovery. Existing artifacts remain usable by passing their exact paths and formats to ; old state is not migrated. Quick start The MCP server has no workspace or project binding: Run the short global setup wizard through npm: Setup detects Claude Code, Cursor, OpenCode, Codex, Gemini CLI, and Google Antigravity, then asks which clients should use Flameox. It preserves unrelated client configuration and writes a Python 3.12 launcher pinned to the exact Flameox release that ran setup. Restart or reconnect changed clients afterward. For automation, pass --client

benchmarkingcoding-agentscordisdebuggingdeveloper-toolsdshdsh-plugingpu-profilinglocal-firstmcp

Quick Facts

Stars114
Forks3
LanguagePython
CategoryMCP Server
LicenseMIT
Quality Score65.6657610058497/100
Open Issues1
Last Updated2026-09-19
Created2026-07-25
Platformsmcp, python
Est. Tokens~15k

flameox alternative? Top 6 similar tools

Looking for a flameox alternative? If you're comparing flameox with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • roam-code by Cranot · ⭐ 518

    Local codebase intelligence CLI + MCP server for AI coding agents: SQLite code graph, 28 languages, 287 comman

  • memtrace-public by syncable-dev · ⭐ 472

    Structural memory for AI coding agents. Bi-temporal graph, MCP-native, zero LLM calls. Cursor · Claude Code ·

  • deep-code-reasoning-mcp by evalops · ⭐ 107

    A Model Context Protocol (MCP) server that provides advanced code analysis and reasoning capabilities powered

  • deep-code-reasoning-mcp by haasonsaas · ⭐ 102

    A Model Context Protocol (MCP) server that provides advanced code analysis and reasoning capabilities powered

  • mcp-local-rag by shinpr · ⭐ 401

    Local-first RAG server for developers. Semantic + keyword search for code and technical docs. Works with MCP o

  • mcpproxy-go by smart-mcp-proxy · ⭐ 377

    Supercharge AI Agents, Safely

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular Python Agent Tools

Frequently Asked Questions

What is flameox?

flameox is Runtime evidence that helps agents trace, profile, and burn down hotspots in application and native code, GPU kernels, and inference stacks.. It is categorized as a MCP Server with 114 GitHub stars.

What programming language is flameox written in?

flameox is primarily written in Python. It covers topics such as benchmarking, coding-agents, cordis.

How do I install or use flameox?

You can find installation instructions and usage details in the flameox GitHub repository at github.com/morluto/flameox. The project has 114 stars and 3 forks, indicating an active community.

What license does flameox use?

flameox is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to flameox?

The top alternatives to flameox on Agent Skills Hub include roam-code, memtrace-public, deep-code-reasoning-mcp. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools