50
/ 100
23 hours ago
glama

No-Shell Agent Architect MCP

Takes a plain-language automation goal and returns a recommended tool stack, command, validation checks, recovery guidance, and a machine-readable package contract for agents and builders.

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
🚨
Known vulnerabilities in dependencies: 1 critical, 13 high
Affects packages this MCP installs at runtime. Upgrade or remove the affected dependency.
// known CVEs in dependencies1 critical13 high9 medium8 low

Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.

criticalvitest@4.0.16GHSA-5xrq-8626-4rwp

When Vitest UI server is listening, arbitrary file can be read and executed

highnext@16.0.10GHSA-267c-6grr-h53f

Next.js has a Middleware / Proxy bypass in App Router applications via segment-prefetch routes

highnext@16.0.10GHSA-26hh-7cqf-hhc6

Next.js has a Middleware / Proxy bypass in App Router applications via segment-prefetch routes - Incomplete Fix Follow-Up

highnext@16.0.10GHSA-36qx-fr4f-26g5

Next.js has a Middleware / Proxy bypass in Pages Router applications using i18n

highnext@16.0.10GHSA-492v-c6pp-mqqv

Next.js has a Middleware / Proxy bypass through dynamic route parameter injection

Depend on this server? Get alerted when its CVEs change.Watch this server free →
// required environment variables
This server reads these from process.env. You'll be asked to provide them before it can run.
configEXPECTED_VERSION
configPRIMARY_ORIGIN
configLEGACY_ORIGIN
configLIVE_CHECK_ATTEMPTS
configLIVE_CHECK_DELAY_SECONDS
configARCHITECT_ORIGIN
// full audit trail
The full breakdown of what we checked, the deductions that landed, the network hosts, the dependency advisories, and concrete fix guidance is available to verified publishers.
// improvement guidance — verified publishers only
We have 7 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/loved0543-dotcom-no-shell-agent-operating-pack-qsbmdw)](https://m8ven.ai/mcp/loved0543-dotcom-no-shell-agent-operating-pack-qsbmdw)
commit: 75912658e36d3a0057d5ac5df00479d1999dbe79
code hash: 696b1b45cffa27aa1596850c087d1306a06cf67a195adda4ffd1768a2f3189fe
verified: 7/30/2026, 7:53:18 PM
view raw JSON →
No-Shell Agent Architect MCP · M8ven Trust Score | M8ven