← Back to search

@ctxo/cli

ahankendi Scanned 4h ago

MCP server delivering dependency-aware, history-enriched context for codebases

npm
C
64.2 / 100

Versions

0.11.4latest
Jun 28, 2026
0.11.3
Jun 21, 2026
0.11.2
Jun 21, 2026
0.11.1
Jun 21, 2026
0.11.0
Jun 21, 2026
+ show 13 moreshow less
0.10.0
May 31, 2026
0.9.3
May 15, 2026
0.9.2
May 15, 2026
0.9.1
May 15, 2026
0.9.0
May 15, 2026
0.8.2
May 15, 2026
0.8.1
Apr 17, 2026
0.8.0
Apr 16, 2026
0.7.2
Apr 13, 2026
0.7.1
Apr 13, 2026
0.7.0
Apr 13, 2026
0.7.0-alpha.0
Apr 13, 2026
0.0.1
Apr 12, 2026
PermissionsTool SafetyAuthAnnotationsCode QualityStabilitySpecVuln HistoryAuthorTransparencyCommunity

Tools 14

get_architectural_overlay
annotations: none low

AO

get_why_context
annotations: none low

WC

symbolId string maxCommits number
get_change_intelligence
annotations: none low

CI

symbolId string
find_dead_code
annotations: none low

DC

includeTests boolean
get_blast_radius
annotations: none low

BR

symbolId string
get_logic_slice
annotations: none low

LS

level number symbolId string symbolIds array
get_context_for_task
annotations: none low

CT

symbolId string taskType string tokenBudget number
get_ranked_context
annotations: none low

RC

query string strategy string tokenBudget number
search_symbols
annotations: none low

SS

kind string limit number pattern string filePattern string
get_changed_symbols
annotations: none low

CS

since string maxFiles number
find_importers
annotations: none low

FI

maxDepth number symbolId string edgeKinds array transitive boolean
get_class_hierarchy
annotations: none low

CH

symbolId string direction string
get_symbol_importance
annotations: none low

SI

kind string limit number damping number filePattern string
get_pr_impact
annotations: none low

PI

since string maxFiles number confidence string

Permissions 4

network medium
Server uses network capabilities via: fetch()
filesystem low
Server uses filesystem capabilities via: fs
shell high
Server uses shell capabilities via: child_process, execSync(), spawn(), spawnSync()
env_vars low
Server uses env_vars capabilities via: process.env

Scan Findings 54

low
Tool 'get_logic_slice' has no annotations annotation_checker · 100%
low
Tool 'get_blast_radius' has no annotations annotation_checker · 100%
low
Tool 'get_architectural_overlay' has no annotations annotation_checker · 100%
low
Tool 'get_why_context' has no annotations annotation_checker · 100%
low
Tool 'get_change_intelligence' has no annotations annotation_checker · 100%
low
Tool 'find_dead_code' has no annotations annotation_checker · 100%
low
Tool 'get_context_for_task' has no annotations annotation_checker · 100%
low
Tool 'get_ranked_context' has no annotations annotation_checker · 100%
low
Tool 'search_symbols' has no annotations annotation_checker · 100%
low
Tool 'get_changed_symbols' has no annotations annotation_checker · 100%
low
Tool 'find_importers' has no annotations annotation_checker · 100%
low
Tool 'get_class_hierarchy' has no annotations annotation_checker · 100%
low
Tool 'get_symbol_importance' has no annotations annotation_checker · 100%
low
Tool 'get_pr_impact' has no annotations annotation_checker · 100%
medium
OAuth implementation without PKCE auth_checker · 75%
info
Sandbox failed to start for behavioral verification behavioral_verifier · 100%
medium
Vulnerable dependency: vitest@3.1.3 (GHSA-5xrq-8626-4rwp) dependency_analyzer · 95%
medium
Vulnerable dependency: vitest@3.1.3 (GHSA-82fw-gwwq-j7x9) dependency_analyzer · 95%
medium
Vulnerable dependency: simple-git@3.27.0 (GHSA-hffm-xvc3-vprc) dependency_analyzer · 95%
medium
Vulnerable dependency: simple-git@3.27.0 (GHSA-jcxm-m3jx-f287) dependency_analyzer · 95%
medium
Vulnerable dependency: simple-git@3.27.0 (GHSA-r275-fr43-pm7q) dependency_analyzer · 95%
medium
Vulnerable dependency: yaml@2.6.1 (GHSA-48c2-rrv3-qjmp) dependency_analyzer · 95%
medium
Vulnerable dependency: vitest@3.0.0 (GHSA-5xrq-8626-4rwp) dependency_analyzer · 95%
medium
Vulnerable dependency: vitest@3.0.0 (GHSA-82fw-gwwq-j7x9) dependency_analyzer · 95%
medium
Vulnerable dependency: vitest@3.0.0 (GHSA-9crc-q9x8-hgqq) dependency_analyzer · 95%
medium
Vulnerable dependency: golang.org/x/mod@0.35.0 (GO-2026-6179) dependency_analyzer · 95%
medium
Vulnerable dependency: golang.org/x/mod@0.35.0 (GO-2026-6180) dependency_analyzer · 95%
high
Long unicode escape chain in alperhankendi-Ctxo-9a71337/packages/cli/src/cli/init-command.ts:116 entropy_analyzer · 80%
high
Long unicode escape chain in alperhankendi-Ctxo-9a71337/packages/cli/src/cli/init-command.ts:117 entropy_analyzer · 80%
high
Long unicode escape chain in alperhankendi-Ctxo-9a71337/packages/cli/src/cli/init-command.ts:120 entropy_analyzer · 80%
info
package.json metadata manifest_parser · 100%
info
Tool: get_logic_slice manifest_parser · 85%
info
Tool: get_blast_radius manifest_parser · 85%
info
Tool: get_architectural_overlay manifest_parser · 85%
info
Tool: get_why_context manifest_parser · 85%
info
Tool: get_change_intelligence manifest_parser · 85%
info
Tool: find_dead_code manifest_parser · 85%
info
Tool: get_context_for_task manifest_parser · 85%
info
Tool: get_ranked_context manifest_parser · 85%
info
Tool: search_symbols manifest_parser · 85%
info
Tool: get_changed_symbols manifest_parser · 85%
info
Tool: find_importers manifest_parser · 85%
info
Tool: get_class_hierarchy manifest_parser · 85%
info
Tool: get_symbol_importance manifest_parser · 85%
info
Tool: get_pr_impact manifest_parser · 85%
info
Transport: stdio manifest_parser · 90%
info
Required env vars (10) manifest_parser · 80%
info
Sandbox failed to start for output poisoning scan output_poisoning · 100%
medium
Permission: network access detected permission_analyzer · 70%
low
Permission: filesystem access detected permission_analyzer · 90%
high
Permission: shell access detected permission_analyzer · 95%
low
Permission: env_vars access detected permission_analyzer · 90%
info
SBOM generated: 41 components sbom_generator · 100%
medium
No build provenance detected (SLSA L0) slsa_assessor · 90%