switchboard (sameeeeeeep/switchboard) is an MCP server listed on the M8ven Trust Index. It scores 74 out of 100, grade C. It declares 13 tools. No publisher has claimed this listing.
MetaMask, but for AI. A local consent-broker daemon + browser extension inject window.claude into any site, so websites run on the visitor's own Claude, tools & context — no API keys, no resold inference, explicit per-action consent. God: an ambient screen-aware assistant that speaks a voice you clone on-device.
Caution. Specific findings reduced this grade. They are listed on the page. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.
How we verified
Verified is a snapshot. Live keeps it current, and builds your track record.
⚡ Connect GitHub → continuous verification on every pushwhy connect →Who stands behind it
sameeeeeeep
Source: github_repo_search
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access →
Install from
The grade above is for the source repository. Registries can serve a different version, so we mark the ones we were not able to read.
These names and descriptions are the publisher's own, read from the source code. We print them as written. Our assessment is the findings above, not this list.
switchboard_add_taskAdd a to-do to the project's board (tasks.md in the vault). Use whenever the user wants to remember, capture, or track something, or when you finish work and there are clear follow-ups worth saving. Optional dialect: `status` (backlog parks it; default todo), `epic` (bundle related cards), `priority…
switchboard_notchFire a brief adhd-pm event on the user's Switchboard notch — a deterministic ack (no model, no cost). Use it to STREAM what you're doing, especially in /pip or adhd-pm mode, so the user watches progress at the notch instead of reading chat: `captured` (boarded a task), `picked` (started one), `decid…
switchboard_arrange_boardRun a curation pass over the board (tasks.md): fold near-duplicate cards into one, regroup cards by epic, order by status then priority (done sinks to the bottom), and park clearly-stale cards to backlog. Use in adhd-pm mode when the board has grown into a dump, or periodically to keep it a readable…
switchboard_list_tasksRead the project's board as kanban cards. Use before adding (to avoid duplicates), to answer 'what's on my list / for <project>', or to review the board. Each task carries its column (backlog · todo · doing · blocked · review · done) and — when present — its id, epic (bundle), priority, due date, bl…
switchboard_move_taskMove a task across the kanban by rewriting only its status — backlog · todo · doing · blocked · review · done. Use when you start work ('mark it doing'), hit a wall ('blocked'), finish ('done'), send something for review, or park it ('backlog'). Match by the task's `id:` (exact) or a distinctive fra…
switchboard_complete_taskMark a task done by matching its text (case-insensitive substring). Use when the user says something is finished/handled. Flips `- [ ]` to `- [x]` in place so it stays checked off.
switchboard_next_taskClaim the next actionable task the user has RELEASED for work — the top unblocked `todo` card, optionally scoped to a project or epic. This is how an agent session PICKS UP work from the board: it returns the card's full spec (title, detail, subtasks) and — unless you pass claim:false — moves it to …
switchboard_scaffold_wrappCreate a new wrapp in the user's project from the Switchboard house template (plumbing, SDK contracts, and design system already correct). Use when the user wants to 'make a wrapp', 'set up a wrapp for this project', or 'start a Switchboard app'. Writes files only — no AI call, no network. Returns t…
guide_runswitchboard_statusCheck the native Switchboard app, PIP feed, and pending surfaces. Read-only; no AI call.
switchboard_presentPresent a native notch question/guide or an editable whiteboard using the same protocol for every agent. Returns a runId immediately. Poll switchboard_result with that id. A submitted card is not an answer or approval. Pass honest source and sourceId for the calling agent/thread. Requires the native…
switchboard_resultRead the result for exactly one Switchboard run. Returns pending until the human answers. For guides inspect outcome, chosenOption AND feedback.note; typed input overrides a selection. For whiteboards inspect the returned shot image with the host image reader. Never treat a different run, timeout, o…
switchboard_pipEnable or disable the native Switchboard PIP progress feed. Changes only the feed; does not start work or schedule background runs.
Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.
ws: Memory exhaustion DoS from tiny fragments and data chunks
ws: Uninitialized memory disclosure
BANK_VAULTRELAY_DIRRELAY_PORT(override RELAY_WS / ) accepts an authenticated socket; otherwise mock.RELAY_WS(override / RELAY_PORT) accepts an authenticated socket; otherwise mock.SWITCHBOARD_SB# sb modes —SWITCHBOARD_VAULTTool annotations
2/13 tools have annotations
Add readOnlyHint or destructiveHint annotations to every tool so hosts can warn users before invoking.
All four hints declared on every tool
13/13 tools missing one or more hints — switchboard_add_task (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); switchboard_notch (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); switchboard_arrange_board (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint), +10 more. OpenAI's directory rejects tools where any of the four hints are missing or non-boolean.
For every tool, set all four hints (readOnlyHint, destructiveHint, idempotentHint, openWorldHint) to explicit true/false values that match the handler’s actual behaviour.
Production dependencies are patched
0 critical, 1 high severity in production deps — ws@8.18.0 (high), ws@8.18.0 (low)
Run npm audit fix, or upgrade the affected packages to a non-vulnerable version.
Domain consistency
npm scope @relay doesn't match GitHub owner sameeeeeeep
Use the same org name across GitHub, npm, and your homepage so users can verify the publisher.
Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.
[](https://m8ven.ai/mcp/sameeeeeeep/switchboard)?variant=verified from the URL.Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.
https://m8ven.ai/api/mcp/tool-check