No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by objectstack-ai · MCP Server · ★ 68
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is objectstack safe to install? View the security audit →
ObjectStack ## Apps small enough for AI to hold whole. ObjectStack turns the whole app — data model, UI, workflows, permissions — into typed metadata that fits in a single context window. Agents read it whole, reason it whole, refactor it whole. That metadata is your business ontology — an open, versioned definition of your objects, permissions, and flows that you own, not code scattered across a framework. Strict TypeScript, Zod schemas, and a validation gate catch the agent's mistakes at authoring time; the runtime derives the database, REST API, UI, and MCP server, and enforces permissions and audit on every call. · · · Apache-2.0 ▶ Watch: ObjectStack in 90 Seconds Everything in this repo is the open stack — protocol, microkernel, SDK, CLI, and the production runtime, Apache-2.0 with no open-core asterisks (LICENSING.md)
| Stars | 68 |
| Forks | 17 |
| Language | TypeScript |
| Category | MCP Server |
| License | Apache-2.0 |
| Quality Score | 59.9934998350195/100 |
| Open Issues | 149 |
| Last Updated | 2026-10-03 |
| Created | 2026-01-18 |
| Platforms | mcp, node |
| Est. Tokens | ~19k |
These tools work well together with objectstack for enhanced workflows:
Looking for a objectstack alternative? If you're comparing objectstack with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
A minimal, readable reference implementation of the Operational Ontology pattern. Palantir Foundry is one impl
Browser-based RDF/ontology knowledge graph editor — load RDF from files, URLs or SPARQL endpoints; author node
AI-native web scraper. Single binary with a bundled Claude Code skill. MIT-licensed alternative to Firecrawl.
Understand what your codebase builds, why it is structured that way, and what a change could affect. One shar
AI-native web scraper. Single binary with a bundled Claude Code skill. MIT-licensed alternative to Firecrawl.
MyKG Knowledge Graph Engine: Turn raw files into knowledge graphs with induced ontology
Explore other popular mcp server tools:
objectstack is Apps small enough for AI to hold whole. ObjectStack turns the whole app — data model, UI, workflows, permissions — into typed metadata: a complete CRM in under 150k tokens, one context window. Agents . It is categorized as a MCP Server with 68 GitHub stars.
objectstack is primarily written in TypeScript. It covers topics such as ai-agents-automation, ai-agents-for-business, fde.
You can find installation instructions and usage details in the objectstack GitHub repository at github.com/objectstack-ai/objectstack. The project has 68 stars and 17 forks, indicating an active community.
objectstack is released under the Apache-2.0 license, making it free to use and modify according to the license terms.
The top alternatives to objectstack on Agent Skills Hub include operational-ontology, ontosphere, WebReaper. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: