akashic-aurora (balanced7/akashic-aurora) is an MCP server listed on the M8ven Trust Index. It scores 73 out of 100, grade C. It declares 130 tools. No publisher has claimed this listing.

C
Caution
73/100

akashic-aurora

Memory for AI agents that learns what actually helped: lessons injected at the moment of action, credited by outcome, challenged by counter-evidence. Local-first, multi-agent, test-gated.

Caution. Specific findings reduced this grade. They are listed on the page. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.

How we verified

⚡ Live Monitored: not connected

Verified is a snapshot. Live keeps it current, and builds your track record.

⚡ Connect GitHub → continuous verification on every pushwhy connect →

Who stands behind it

balanced7

Source: github_repo_search

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access →

Install from

The grade above is for the source repository. Registries can serve a different version, so we mark the ones we were not able to read.

// key findings
⚠️
Tool descriptions don’t match what handlers do
2 tools describe read intent but their handlers mutate — check_messages (line 134: with open(unread_file, 'w') as f:); clipboard_read (line 1121: result = subprocess.run(["powershell", "-Command", "Get-Clipboard"], capture_output=True, text=True))
No credential exfiltration, no sensitive file access, no obfuscation
Static analysis found nothing flowing your secrets to unexpected places.
Open source with a license and README
Anyone can audit the code, the license is declared, and the publisher documents what it does.
🔐
You'll be asked for 4 credentials: DEEPSEEK_API_KEY, OPENAI_API_KEY, AKASHIC_DISCORD_BOT_TOKEN, KIMI_API_KEY
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// environment variables
To run this server yourself, you supply these values. They go in your own MCP client configuration and stay on your machine. The secret label means the value is sensitive, not that the server mishandles it.
configAKASHIC_AGENT_ID
configAKASHIC_REPO
configDSH_SESSION_ID
config_AISETUP_TEST_ISOLATED
configAKASHIC_MCP_DIAG
configDEEPSEEK_MAX_CMD_TIMEOUT
configDEEPSEEK_RECALL_AT
configAKASHIC_RECALL_STATE_DIR
configAKASHIC_TRANSCRIPT_TAIL_BYTES
configAKASHIC_SEAT_HEARTBEAT
configBIFROST_INCARNATION
configCLAUDE_CODE_SESSION_ID
configBIFROST_NAMESPACE
configAKASHIC_RECALL_AT_ACTION
configCURSOR_PROJECT_DIR
configAKASHIC_CODEX_BINARY
configAKASHIC_SPILL_DIR
configAKASHIC_HEAL_VERBOSE
configAI_SETUP
configAKASHIC_BOOT_FULL
configAKASHIC_SEAT_DOOR
configAKASHIC_SEAT_DOOR_DETAIL
configAKASHIC_WISHLIST_FILE
configAKASHIC_DISCORD_WEBHOOK
configAKASHIC_DISCORD_GATEWAY_LOG
configPYTHONPATH
configAKASHIC_SESSION8
configBIFROST_WAKE_LANE
configCLAUDE_SESSION_ID
configAKASHIC_ASK_EXPECT_S
configAKASHIC_SECRETS_DIR
configBIFROST_CONSUME_LANE
configAKASHIC_SHOW_CONSOLES
configAKASHIC_TEST_SHOW_CONSOLES
configDEEPSEEK_MODEL
🔐 secretDEEPSEEK_API_KEY
configGEMINI_MODEL
configOPENAI_MODEL
🔐 secretOPENAI_API_KEY
configAKASHIC_CB_WINDOW_S
configAKASHIC_CB_MAX
configAKASHIC_DRILL_ECHO
configDEEPSEEK_RUNNER_MAX_TOKENS
configAKASHIC_KILLPOINT
configBIFROST_MAX_REPLIES_PER_MIN
configAKASHIC_SPAWN_PROOF_SECONDS
configAKASHIC_SPAWN_INSTANT_SECONDS
configAKASHIC_SPAWN_REPORT_DEADLINE
configAKASHIC_CLAUDE_CREDENTIALS
🔐 secretAKASHIC_DISCORD_BOT_TOKEN
configGEMINI_MAX_HOPS
configGEMINI_SPEND_REFUSE
configKIMI_MAX_HOPS
configKIMI_SPEND_REFUSE
configSOL_MAX_HOPS
configAKASHIC_OPERATOR_IDS
configBIFROST_WAKE_DEADLINE_S
configBIFROST_WAKE_LONGLIVED
configAKASHIC_HARNESS
configAKASHIC_DIGESTS_FILE
configAKASHIC_CHAPTERS_FILE
configDEEPSEEK_CONNECT_TIMEOUT
configDEEPSEEK_READ_TIMEOUT
configDEEPSEEK_MAX_RETRIES
configAKASHIC_WIRE
configDEEPSEEK_MAX_TOOL_ROUNDS
configDEEPSEEK_MAX_TOOL_RESULT_CHARS
configGEMINI_EFFORT
configGEMINI_RUNNER_MAX_TOKENS
configGEMINI_CONNECT_TIMEOUT
configGEMINI_READ_TIMEOUT
configGEMINI_MAX_RETRIES
configGEMINI_BUDGET_USD
configGEMINI_SPEND_WARN
configGEMINI_GRANT_BASIS_USD
configGEMINI_SPEND_FILE
configGEMINI_WEB_TIMEOUT_MS
configGEMINI_WEB_ENGINE
configGEMINI_WEB_BROWSER
configGEMINI_WEB_HEADED
configGEMINI_WEB_STEALTH
configGEMINI_WEB_TZ
configGEMINI_WEB_PATCHRIGHT_CHANNEL
configAKASHIC_ALLOW_HARMONIZE
configDSH_HOME
configKIMI_MODEL
configKIMI_EFFORT
configKIMI_RUNNER_MAX_TOKENS
configKIMI_CONNECT_TIMEOUT
configKIMI_READ_TIMEOUT
configKIMI_MAX_RETRIES
configKIMI_BUDGET_USD
configKIMI_SPEND_WARN
configKIMI_GRANT_BASIS_USD
configKIMI_SPEND_FILE
🔐 secretKIMI_API_KEY
configKIMI_CLAUDE_HOME
configAKASHIC_KIMI_NARRATOR
configAKASHIC_JOB_OBJECT_NAME
configAKASHIC_JOB_ENFORCEMENT
configSOL_MODEL
configSOL_EFFORT
configSOL_VERBOSITY
configSOL_RUNNER_MAX_TOKENS
configSOL_CONNECT_TIMEOUT
configSOL_READ_TIMEOUT
configSOL_MAX_RETRIES
configSOL_401_RETRIES
configAKASHIC_UI_URL
configAKASHIC_WIRE_MAX_FILES
configAKASHIC_WIRE_MAX_BYTES
configAKASHIC_WIRE_QUEUE
configAKASHIC_WIRE_MAX_SHARDS
configAKASHIC_WIRE_DIR
configBIFROST_AGENT
configAKASHIC_WIRE_WRITER
configAKASHIC_PAYLOAD_CAPTURE
configAKASHIC_CALLSIGN_HINT
configAKASHIC_CALLSIGN_STATUS
configAKASHIC_WHISPER_LINES
configAKASHIC_AUTOBOOT
configAKASHIC_LEARN_NUDGE
configAKASHIC_LEARN_NUDGE_CAP
configAKASHIC_TRACE
configCOMPUTERNAME
configAKASHIC_ASK_MODEL
configAKASHIC_ASK_MAX_TOKENS
configAKASHIC_ASK_BASE_URL
configAKASHIC_ASK_FAN_WORKERS
configKIMI_BASE_URL
configAKASHIC_ASK_CONTEXT_CHARS
configAKASHIC_ROUTE_JOURNAL
configAKASHIC_ASK_COLLAPSE_AT
configAKASHIC_ASK_DISTINCT_AT
configAKASHIC_ASK_BG_ORPHAN_S
configBIFROST_PREFLIGHT_ASSERT
// quality suggestions

Tool annotations

No tools have read-only/destructive annotations

Add readOnlyHint or destructiveHint annotations to every tool so hosts can warn users before invoking.

All four hints declared on every tool

131/131 tools missing one or more hints — send_message (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); check_messages (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); get_active_agents (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint), +128 more. OpenAI's directory rejects tools where any of the four hints are missing or non-boolean.

For every tool, set all four hints (readOnlyHint, destructiveHint, idempotentHint, openWorldHint) to explicit true/false values that match the handler’s actual behaviour.

Descriptions match behaviour

2 tools describe read intent but their handlers mutate — check_messages (line 134: with open(unread_file, 'w') as f:); clipboard_read (line 1121: result = subprocess.run(["powershell", "-Command", "Get-Clipboard"], capture_output=True, text=True))

Rename the tool, rewrite the description, or move the side-effect into a separate clearly-named tool.

Tool test coverage

75/131 tools referenced in tests (57%)

Write tests that reference each tool by name so every tool has at least one test.

Tool description accuracy

check_messages: description implies read-only but handler writes/deletes/executes; clipboard_read: description implies read-only but handler writes/deletes/executes

Update tool descriptions to accurately reflect all capabilities — especially write, delete, or execute operations.

Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.

// full audit trail
The findings above are the summary. The full trail, every check we ran, each deduction, the network hosts observed and the dependency advisories, goes to verified publishers, along with an alert whenever a new one lands. Verified publishers can also review each finding and dispute it in one click. Publisher corrections have sharpened several of our checks this month, because the maintainer knows the codebase better than any scanner.
// improvement guidance — verified publishers only
We have 5 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Verified](https://m8ven.ai/badge/mcp/balanced7/akashic-aurora?variant=verified)](https://m8ven.ai/mcp/balanced7/akashic-aurora)
Shows verification status without the grade. Want the grade badge instead? Remove ?variant=verified from the URL.
commit: e127e263b9757d331778fb84d4792ab88e3b4b19
code hash: 24c1895a97775ce72a2ec273a7214c0623454300fd97fa717456e39fc21d0b37
view raw JSON →
Check MCPs from inside your assistant
Tool Check · MCP

Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.

https://m8ven.ai/api/mcp/tool-check
check_toolsearch_toolscompare_toolsrecommend_alternativescheck_publisherreport_concern
How to add it →Free · no account needed · works in any MCP client