trace-mcp — security grade SAFE, quality 63/100

Security audit verdict: SAFE · quality 63/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by nikolai-vysotskyi · MCP Server · ★ 179

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is trace-mcp safe to install? View the security audit →

About trace-mcp

trace-mcp <img src="https://api.securityscorecards.dev/projects/github.com/nikolai-vysotskyi/trace-mcp/badge" alt="OpenSSF Scorec

ai-agentsclaudeclaude-aiclaude-codeclaude-code-pluginclaude-code-skillclaude-desktopclaude-skillscode-graphcode-intelligence

Quick Facts

Stars179
Forks21
LanguageTypeScript
CategoryMCP Server
LicenseMIT
Quality Score62.7864556404549/100
Open Issues17
Last Updated2026-09-23
Created2026-04-03
Platformsclaude-code, codex, mcp, node
Est. Tokens~23k

Compatible Skills

These tools work well together with trace-mcp for enhanced workflows:

  • dora — semantic(0.22)+complementary+rare_topics+same_lang+similar_pop+shared_platform (57%)
  • sourcebot — semantic(0.22)+complementary+rare_topics+same_lang+shared_platform (52%)
  • aeon — semantic(0.19)+complementary+same_lang+similar_pop+shared_platform (52%)

trace-mcp alternative? Top 6 similar tools

Looking for a trace-mcp alternative? If you're comparing trace-mcp with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • octocode by Muvon · ⭐ 475

    Structural code intelligence for AI agents — semantic search, knowledge graphs, and a built-in MCP server in o

  • stacklit by glincker · ⭐ 101

    One command gives AI agents instant codebase context. ~250 tokens replaces 50,000+ tokens of exploration. Auto

  • claude-emporium by Vvkmnn · ⭐ 82

    🏛 [UNDER CONSTRUCTION] A (roman) claude plugin marketplace

  • roam-code by Cranot · ⭐ 518

    Local codebase intelligence CLI + MCP server for AI coding agents: SQLite code graph, 28 languages, 287 comman

  • daymon by daymonio · ⭐ 365

    Daymon puts your favorite AI to work 24/7. It schedules, remembers, and orchestrates your own virtual team. Fr

  • deepcontext-mcp by Wildcard-Official · ⭐ 278

    DeepContext is an MCP server that adds symbol-aware semantic search to Claude Code, Codex CLI, and other agent

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is trace-mcp?

trace-mcp is Framework-aware code intelligence MCP server — 88 framework integrations, 81 languages, 72.7% fewer input tokens to review a pull request, comprehension at parity. It is categorized as a MCP Server with 179 GitHub stars.

What programming language is trace-mcp written in?

trace-mcp is primarily written in TypeScript. It covers topics such as ai-agents, claude, claude-ai.

How do I install or use trace-mcp?

You can find installation instructions and usage details in the trace-mcp GitHub repository at github.com/nikolai-vysotskyi/trace-mcp. The project has 179 stars and 21 forks, indicating an active community.

What license does trace-mcp use?

trace-mcp is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to trace-mcp?

The top alternatives to trace-mcp on Agent Skills Hub include octocode, stacklit, claude-emporium. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools