RAGIX (ovitrac/RAGIX) is an MCP server listed on the M8ven Trust Index. It scores 68 out of 100, grade C. It declares 91 tools. No publisher has claimed this listing.
๐งฌ RAGIX: Local-first development assistant making LLMs behave like disciplined engineers โ Unix-RAG retrieval, sandboxed execution, MCP-compatible, fully auditable
Caution. Specific findings reduced this grade. They are listed on the page. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.
How we verified
Verified is a snapshot. Live keeps it current, and builds your track record.
โก Connect GitHub โ continuous verification on every pushwhy connect โWho stands behind it
ovitrac
Source: github_repo_search
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access โ
Install from
The grade above is for the source repository. Registries can serve a different version, so we mark the ones we were not able to read.
These names and descriptions are the publisher's own, read from the source code. We print them as written. Our assessment is the findings above, not this list.
validate_jsonValidate JSON content
format_jsonFormat/prettify JSON
extract_headersExtract headers from Markdown
generate_tocGenerate table of contents
search_patternSearch for regex pattern
count_matchesCount pattern matches
replace_patternReplace pattern matches
ragix_chatRun a single Unix-RAG step with the RAGIX agent.
ragix_scan_repoQuick project overview: walk the sandbox root and list files.
ragix_read_fileRead a text file from within the sandbox root.
ragix_searchHybrid BM25 + vector search across the codebase.
ragix_workflowExecute a workflow template for multi-agent task execution.
ragix_healthGet comprehensive RAGIX system health status.
ragix_templatesList all available workflow templates and their parameters.
ragix_configGet current RAGIX configuration.
ragix_verify_logsVerify log integrity using SHA256 chain hashing.
ragix_logsGet recent log entries.
ragix_agent_stepExecute a full agent step with config-based instantiation.
koas_initInitialize a KOAS audit workspace for a project.
koas_runRun KOAS audit stages on an initialized workspace.
koas_statusGet status of a KOAS audit workspace.
koas_summaryGet summaries from KOAS kernel outputs.
koas_list_kernelsList available KOAS kernels.
koas_translate_runRun the KOAS-Translate pipeline over a workspace translation memory.
koas_translate_statusTranslation-memory progress for a KOAS-Translate workspace.
koas_reportGet the generated audit report content.
ragix_ast_scanExtract AST symbols from source code files or directories.
ragix_ast_metricsCompute code quality metrics for source files.
ragix_models_listList available Ollama models.
ragix_model_infoGet detailed information about an Ollama model.
ragix_system_infoGet comprehensive system information for RAGIX deployment.
koas_security_discoverDiscover hosts on a network segment.
koas_security_scan_portsScan ports on target hosts.
koas_security_ssl_checkAnalyze SSL/TLS configuration and certificates.
koas_security_vuln_scanScan for known vulnerabilities.
koas_security_dns_checkAnalyze DNS configuration and security.
koas_security_complianceCheck compliance against security frameworks.
koas_security_riskCalculate network security risk scores.
koas_security_reportGenerate security assessment report.
koas_audit_scanScan a codebase and extract AST symbols.
koas_audit_metricsCompute code metrics (complexity, LOC, maintainability).
koas_audit_hotspotsIdentify complexity and risk hotspots.
koas_audit_dependenciesAnalyze code dependencies and coupling.
koas_audit_dead_codeDetect potentially dead or unused code.
koas_audit_riskCalculate code risk scores.
koas_audit_complianceCheck code quality compliance.
koas_audit_reportGenerate code audit report.
memory_recallToken-budgeted memory retrieval for context injection.
memory_searchSearch memory items by text query, tags, and filters.
memory_proposeSubmit memory candidates for policy evaluation and storage.
memory_writeDirect write to memory store (privileged, policy-checked).
memory_readRead memory items by their IDs.
memory_updateUpdate fields on an existing memory item.
memory_linkCreate a typed relationship between two memory items.
memory_consolidateTrigger memory consolidation: deduplication, merge, and tier promotion.
memory_statsMemory store statistics: item counts, tier distribution, search status.
memory_palace_listBrowse memory palace hierarchy (domain/room/shelf/card).
memory_palace_getGet a memory item with its palace location.
presenter_renderRun the full KOAS Presenter pipeline on a document folder.
presenter_exportExport an existing presenter workspace to PDF/HTML via marp-cli.
presenter_statusQuery the status and metadata of a presenter workspace.
review_md_runRun the full KOAS Reviewer pipeline on a Markdown document.
review_md_statusQuery the review status and statistics for a document.
review_md_revertRevert one or more changes by their RVW-NNNN IDs.
review_md_show_changeShow details of a specific change from the ledger.
koas_saqqara_runRead documents into typed trees with provenance and recognise their structure.
koas_saqqara_statusWhat a previous saqqara run found, read back from its stored result.
koas_saqqara_indexChunk what a previous read produced into a queryable store.
koas_saqqara_searchQuery the store, keeping both lane ranks and every hit's citation.
summary_ingestIngest a document corpus into memory.
summary_runRun the full KOAS Summary pipeline.
summary_statusCheck the status of a KOAS Summary workspace.
summary_querySearch memory items by text query.
summary_driftCompute drift between two corpus versions.
summary_vizGenerate HTML visualizations for a workspace.
summary_summarizeGenerate summary from existing memory (Stage 2+3 only).
koas_tender_probeReport what a document store holds, without modifying it.
koas_tender_statusWhat the configuration resolves to, without opening the store.
nmapNetwork mapper and port scanner
masscanFast port scanner (optional, nmap suffices)
arp-scanARP scanner for LAN discovery
digDNS lookup utility
dnsreconDNS enumeration tool
opensslSSL/TLS toolkit
testsslTLS/SSL testing tool
nucleiTemplate-based vulnerability scanner
niktoWeb server vulnerability scanner
curlHTTP client
httpxHTTP probing tool
tcpdumpPacket analyzer
tsharkTerminal Wireshark
memory_session_injectbehind configClaude Session Bridge โ pre-call injection.
memory_session_storebehind configClaude Session Bridge โ post-call storage.
memory_workspace_listbehind configList all registered memory workspaces.
memory_workspace_registerbehind configRegister or update a named memory workspace.
memory_workspace_removebehind configRemove a named memory workspace.
memory_metricsbehind configMemory MCP server metrics: call counts, latency, errors.
RAGIX_MEMORY_DBRAGIX_MEMORY_EMBEDDERRAGIX_MEMORY_FTSRAGIX_MEMORY_SECRECYRAGIX_MEMORY_BUDGETRAGIX_REASONING_STRATEGYSONAR_URLSONAR_TOKENSONAR_ORGANIZATIONRAGIX_MEMORY_ENABLEDRAGIX_ENABLE_SWERAGIX_AUTO_DIFFUNIX_RAG_PROFILERAGIX_DENYLISTUNIX_RAG_MODELUNIX_RAG_SANDBOXUNIX_RAG_ALLOW_GIT_DESTRUCTIVERAGIX_LLM_BACKENDRAGIX_LLM_MODELRAGIX_PROFILERAGIX_AIR_GAPPEDRAGIX_MCP_ENABLEDRAGIX_MCP_PORTRAGIX_LOG_HASHINGRAGIX_SANDBOX_ROOTRAGIX_AGENT_MODERAGIX_PLANNER_MODELRAGIX_WORKER_MODELRAGIX_VERIFIER_MODELANTHROPIC_API_KEYOPENAI_API_KEYRAGIX_CLAUDE_MODELRAGIX_OPENAI_MODELTool annotations
No tools have read-only/destructive annotations
Add readOnlyHint or destructiveHint annotations to every tool so hosts can warn users before invoking.
All four hints declared on every tool
97/97 tools missing one or more hints โ validate_json (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); format_json (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); extract_headers (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint), +94 more. OpenAI's directory rejects tools where any of the four hints are missing or non-boolean.
For every tool, set all four hints (readOnlyHint, destructiveHint, idempotentHint, openWorldHint) to explicit true/false values that match the handlerโs actual behaviour.
Descriptions match behaviour
3 tools describe read intent but their handlers mutate โ ragix_models_list (line 1687: result = subprocess.run(); ragix_model_info (line 1759: result = subprocess.run(); ragix_system_info (line 1850: result = subprocess.run(["free", "-b"], capture_output=True, text=True, timeout=5))
Rename the tool, rewrite the description, or move the side-effect into a separate clearly-named tool.
Tool test coverage
77/97 tools referenced in tests (79%)
Write tests that reference each tool by name so every tool has at least one test.
Tool description accuracy
3 tools have description/behavior mismatches: ragix_models_list: description implies read-only but handler writes/deletes/executes; ragix_model_info: description implies read-only but handler writes/deletes/executes; ragix_system_info: description implies read-only but handler writes/deletes/executes
Update tool descriptions to accurately reflect all capabilities โ especially write, delete, or execute operations.
Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.
[](https://m8ven.ai/mcp/ovitrac/ragix)?variant=verified from the URL.Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives โ before you install.
https://m8ven.ai/api/mcp/tool-check