← Back to search

documcp

GitHub Actions Scanned 23d ago

Intelligent MCP server for GitHub Pages documentation deployment

C
70.8 / 100

Versions

1.0.0latest
May 7, 2026
0.8.0
May 6, 2026
0.6.0
May 1, 2026
0.5.10
Dec 15, 2025
0.5.9
Dec 15, 2025
+ show 11 moreshow less
0.5.2
Nov 19, 2025
0.5.1
Nov 19, 2025
0.5.0
Oct 12, 2025
0.4.1
Oct 4, 2025
0.4.0
Oct 2, 2025
0.3.4
Sep 18, 2025
0.3.2
Sep 11, 2025
0.3.1
Sep 11, 2025
0.2.4
Aug 24, 2025
0.2.2
Aug 24, 2025
0.2.0
Aug 24, 2025
PermissionsTool SafetyAuthAnnotationsCode QualityStabilitySpecVuln HistoryAuthorTransparencyCommunity

Tools 6

sync_code_to_docs
annotations: none low

Automatically synchronize documentation with code changes using AST-based drift detection (Phase 3)

generate_contextual_content
annotations: none low

Generate context-aware documentation using AST analysis and knowledge graph insights (Phase 3)

populate_diataxis_content
annotations: none low

Intelligently populate Diataxis documentation with project-specific content

validate_diataxis_content
annotations: none low

Validate the accuracy, completeness, and compliance of generated Diataxis documentation

update_existing_documentation
annotations: none low

Intelligently analyze and update existing documentation using memory insights and code comparison

change_watcher
annotations: none low

Watch code changes and trigger documentation drift detection in near real-time.

Permissions 4

network medium
Server uses network capabilities via: fetch()
filesystem low
Server uses filesystem capabilities via: fs, fs sync ops, fs.promises, fs/promises, os, path
shell high
Server uses shell capabilities via: child_process, execSync(), spawn()
env_vars low
Server uses env_vars capabilities via: process.env

Scan Findings 29

low
Tool 'sync_code_to_docs' has no annotations annotation_checker · 100%
low
Tool 'generate_contextual_content' has no annotations annotation_checker · 100%
low
Tool 'populate_diataxis_content' has no annotations annotation_checker · 100%
low
Tool 'validate_diataxis_content' has no annotations annotation_checker · 100%
low
Tool 'update_existing_documentation' has no annotations annotation_checker · 100%
low
Tool 'change_watcher' has no annotations annotation_checker · 100%
medium
OAuth implementation without PKCE auth_checker · 75%
info
Sandbox failed to start for behavioral verification behavioral_verifier · 100%
medium
Suspicious package name: react-dom dependency_analyzer · 60%
medium
Vulnerable dependency: simple-git@3.30.0 (GHSA-hffm-xvc3-vprc) dependency_analyzer · 95%
medium
Vulnerable dependency: simple-git@3.30.0 (GHSA-jcxm-m3jx-f287) dependency_analyzer · 95%
medium
Vulnerable dependency: simple-git@3.30.0 (GHSA-r275-fr43-pm7q) dependency_analyzer · 95%
medium
Vulnerable dependency: tmp@0.2.5 (GHSA-ph9p-34f9-6g65) dependency_analyzer · 95%
info
package.json metadata manifest_parser · 100%
info
Tool: sync_code_to_docs manifest_parser · 90%
info
Tool: generate_contextual_content manifest_parser · 90%
info
Tool: populate_diataxis_content manifest_parser · 90%
info
Tool: validate_diataxis_content manifest_parser · 90%
info
Tool: update_existing_documentation manifest_parser · 90%
info
Tool: change_watcher manifest_parser · 90%
info
Transport: stdio manifest_parser · 90%
info
Required env vars (7) manifest_parser · 80%
info
Sandbox failed to start for output poisoning scan output_poisoning · 100%
medium
Permission: network access detected permission_analyzer · 70%
low
Permission: filesystem access detected permission_analyzer · 90%
high
Permission: shell access detected permission_analyzer · 95%
low
Permission: env_vars access detected permission_analyzer · 90%
info
SBOM generated: 1709 components sbom_generator · 100%
medium
No build provenance detected (SLSA L0) slsa_assessor · 90%