45
/ 100
1 month ago
glama

mcp-code-indexer-react-ts

Indexes any TypeScript / React / Next.js repo into a queryable code graph and exposes 13 MCP tools — who-renders, who-calls, find-references, blast-radius, find-cycles, dead-code orphans, and local semantic search — so agents query structure instead of reading whole files. Built on ts-morph, so edges are resolved, not grepped.

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
No credential exfiltration, no sensitive file access, no obfuscation
Static analysis found nothing flowing your secrets to unexpected places.
Open source with a license and README
Anyone can audit the code, the license is declared, and the publisher documents what it does.
// known CVEs in dependencies1 medium1 low

Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.

mediumturbo@2.8.20GHSA-hcf7-66rw-9f5r

Trubo: Login callback CSRF/session fixation

lowturbo@2.8.20GHSA-3qcw-2rhx-2726

Turbo: Unexpected local code execution during Yarn Berry detection

Depend on this server? Get alerted when its CVEs change.Watch this server free →
// required environment variables
This server reads these from process.env. You'll be asked to provide them before it can run.
configCODE_INDEXER_NO_REEXEC
configCODE_INDEXER_REEXEC
configINDEXER_PORT
configINDEXER_ROOTPath tip: the MCP entry needs an absolute path to index.js. For tool args, a relative root / (like ../app) is resolved against the indexer repo root; absolute paths always work.
configINDEXER_TIMING
// full audit trail
The full breakdown of what we checked, the deductions that landed, the network hosts, the dependency advisories, and concrete fix guidance is available to verified publishers.
// improvement guidance — verified publishers only
We have 0 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/nishant-chaudhary5338-mcp-code-indexer-yhpce0)](https://m8ven.ai/mcp/nishant-chaudhary5338-mcp-code-indexer-yhpce0)
commit: c08d2164a45aa8ca32788e925dd873f0f9935f7d
code hash: bf25f86c1efbcb50c74688c370b8ecf2bdf5d3fc192ef01b9bfb407b83b57fdc
verified: 6/26/2026, 9:37:50 AM
view raw JSON →