Agent♥︎Age
Catalog

io.github.flagrix-io/flagrix

Official

by flagrix-io · JavaScript

Scan GitHub repos and profiles for malware before cloning — commit-pinned risk verdicts for agents

MCP Server: io.github.flagrix-io/flagrix

This MCP server scans GitHub repositories and profiles for malware before cloning. It provides commit-pinned risk verdicts intended to be callable from the terminal, CI, or an AI agent, using the same verdict output described in the Flagrix browser extension.

🛠️ Key Features

  • Scans GitHub repositories and profiles for malware prior to cloning
  • Produces commit-pinned risk verdicts
  • Command example: npx flagrix scan https://github.com/some-org/coding-assignment
  • Output includes repository + commit, security score, files/dependencies/issues, and detected patterns

🚀 Use Cases

  • Pre-clone security checks in terminal workflows
  • Supply-chain risk review in CI pipelines
  • Malware screening performed by AI agents before acting on GitHub content

⚡ Developer Benefits

  • Deterministic verdicts tied to specific commits
  • Machine-readable scan results that include risk level and detected patterns (e.g., keylogger pattern)
  • Can be invoked via npx for CLI/automation integration

⚠️ Limitations

  • Limited to scanning GitHub repositories and profiles; no other sources are described

Topics

climalware-detectionmcpmcp-serverscam-detectionsecuritysupply-chain-security

Related servers

More in Security