74
/ 100
6 days ago
glama

agentic-os-mcp

Read-only MCP server that exposes the agentic-os governance, SDLC, and Quality Engineering methodology to any MCP host. It never writes to your repository and never executes code — it serves the methodology, plans an install, and verifies it, handing any commands back to the host to run.

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
⚠️
Tool annotations don’t match behaviour
3 read-only tools perform write/delete/exec — list_presets (line 50: PRESET_PATH.exec(path)); list_qe_blueprints (line 68: CATALOG.exec(doc.path)); search_methodology (line 26: /^plugins\/([^/]+)\//.exec(path))
No credential exfiltration, no sensitive file access, no obfuscation
Static analysis found nothing flowing your secrets to unexpected places.
Open source with a license and README
Anyone can audit the code, the license is declared, and the publisher documents what it does.
🔐
You'll be asked for 3 credentials: GATEWAY_API_KEY, OPENAI_API_KEY, ANTHROPIC_API_KEY
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// required environment variables
This server reads these from process.env. You'll be asked to provide them before it can run.
configEVAL_REPO_ROOT
configPYTHON
configSKILLS_ROOT
configAGENTIC_CONTEXT_MONITOR_DISABLED
configSKIP_REVIEW
configAGENTIC_PROMPT_SCAN_MODE
configAGENTIC_LEARNINGS_DISABLED
configONLY_CASE
configEVAL_PROVIDER
configSKILLruns node --version and git --version (plugins/agentic-sdlc/skills/sdlc-doctor/.md).
configREPORT
configREPORT_DIR
configGATEWAY_MODEL
🔐 secretGATEWAY_API_KEY
configGATEWAY_BASE_URL
configOPENAI_BASE_URL
configOPENAI_MODEL
🔐 secretOPENAI_API_KEY
🔐 secretANTHROPIC_API_KEY
configANTHROPIC_BASE_URL
configANTHROPIC_MODEL
// full audit trail
The full breakdown of what we checked, the deductions that landed, the network hosts, the dependency advisories, and concrete fix guidance is available to verified publishers.
// improvement guidance — verified publishers only
We have 5 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/jarroslav-agentic-os-x3m7fy)](https://m8ven.ai/mcp/jarroslav-agentic-os-x3m7fy)
commit: b08c758c71aaf4fc1ad3fe9c72bbed2a4ad52804
code hash: 804e8f3a9be67bbb7813711152ada4c7efe02522fbab6cb2a89d4cfe1593229b
verified: 7/25/2026, 8:47:29 AM
view raw JSON →