10
/ 100
3 hours ago
github_topic

ruflo

🌊 The leading agent meta-harness for Claude. Deploy intelligent multi-agent swarms, coordinate autonomous workflows, and build conversational AI systems. Features adaptive memory, self-learning swarm intelligence, RAG integration, and native Claude Code / Codex Integration

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.

Install from

M8ven verifies MCPs across every public registry β€” install directly from whichever one you prefer.

// key findings
🚨
Secret credentials may flow to a network call
4 flows detected: BENCH_LLM_API_KEY, BENCH_ANTHROPIC_API_KEY, GOOGLE_API_KEY. We can’t prove the destination matches the brand the credential belongs to.
🚨
Reads files from sensitive locations
Touches: .env.SECRET_CONFIG, .env.SECRET_CONFIG, .env.local
🚨
Known vulnerabilities in dependencies: 2 critical
Affects packages this MCP installs at runtime. Upgrade or remove the affected dependency.
πŸ”
You'll be asked for 7 credentials: BENCH_ANTHROPIC_API_KEY, BENCH_LLM_API_KEY, GOOGLE_API_KEY, OPENAI_API_KEY, OPENROUTER_API_KEY, RUFLO_GRAPH_INTELLIGENCE_WITNESS_KEY, RVF_KERNEL_SECRET
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// required environment variables
This server reads these from process.env. You'll be asked to provide them before it can run.
configADR_ROOT
configAUTOPILOT_COOLDOWN
configAUTOPILOT_DETAIL_TTL
configAUTOPILOT_STEP_TIMEOUT
configBENCH_ANTHROPIC
πŸ” secretBENCH_ANTHROPIC_API_KEY
configBENCH_ANTHROPIC_MODELS
configBENCH_ANTHROPIC_PRICING
πŸ” secretBENCH_LLM_API_KEY
configBENCH_LLM_BASELINE
configBENCH_LLM_BASE_URL
configBENCH_LLM_MODEL
configBENCH_LLM_PRICE_IN
configBENCH_LLM_PRICE_OUT
configBENCH_NAME
configBENCH_OUT
configBENCH_QUIET
configBRAND_NAME
configBUDGET_NAMESPACE
configBUDGET_PERIOD
configBUDGET_QUIET
configCLI_CORE
configCOMPACT_QUIET
configCONV_FORMAT
configCONV_LIMIT
configCONV_NAMESPACE
configDATABASE_URL
configEXPORT_NAMESPACE
configEXPORT_QUIET
configEXPORT_WEBHOOK_HEADER
configFED_FORMAT
configFED_NAMESPACE
configFED_SUSPEND_THRESHOLD_USD
πŸ” secretGOOGLE_API_KEY
configHEALTH_PORT
configIMPORT_DRY_RUN
configIMPORT_FORMAT
configMCP_BRIDGE_URL
configMCP_GROUP_AGENTIC_FLOW
configMCP_GROUP_AGENTS
configMCP_GROUP_BROWSER
configMCP_GROUP_CLAUDE_CODE
configMCP_GROUP_CODEX
configMCP_GROUP_DEVTOOLS
configMCP_GROUP_GEMINI
configMCP_GROUP_INTELLIGENCE
configMCP_GROUP_MEMORY
configMCP_GROUP_NEURAL
configMCP_GROUP_SECURITY
πŸ” secretOPENAI_API_KEY
πŸ” secretOPENROUTER_API_KEY
configPORT
configRESEARCH_API_URL
πŸ” secretRUFLO_GRAPH_INTELLIGENCE_WITNESS_KEY
configRUFLO_HOOK_SKIP_NPX
configRUFLO_SUBLINEAR_NATIVE
configRVF_DB_PATH
πŸ” secretRVF_KERNEL_SECRET
configSEARCH_API_URL
configSECRET_CONFIG
configSUMMARY_FED_NAMESPACE
configSUMMARY_FORMAT
configSUMMARY_NAMESPACE
configTRACK_CWD
configTRACK_DRY_RUN
configTRACK_NAMESPACE
configTRACK_OUT
configTRACK_QUIET
configTRACK_SESSION
configTREND_FORMAT
configTREND_LIMIT
configVERIFY_FORMAT
configVERIFY_STRICT
// full audit trail
The full breakdown of what we checked, the deductions that landed, the network hosts, the dependency advisories, and concrete fix guidance is available to verified publishers.
// improvement guidance β€” verified publishers only
We have 4 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/ruvnet-ruflo-16jgnk)](https://m8ven.ai/mcp/ruvnet-ruflo-16jgnk)
commit: 844f68dbe5f28c4c2b13c56e8e102528aa63b629
code hash: c125eb6e7a7b5c7c3d1d8ff7ee2f24be1f98d1e21af4964e7fca81f167e203b7
verified: 6/4/2026, 11:16:15 AM
view raw JSON β†’