67
/ 100
10 days ago
glama

SSOT-MCP

A free, open-source system that indexes multiple Git repositories (e.g., GitHub, GitLab) and enables semantic and lexical search through MCP-capable tools like Cursor.

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
No credential exfiltration, no sensitive file access, no obfuscation
Static analysis found nothing flowing your secrets to unexpected places.
Open source with a license and README
Anyone can audit the code, the license is declared, and the publisher documents what it does.
🔐
You'll be asked for 7 credentials: SSOT_MCP_UI_PASSWORD, SSOT_MCP_UI_JWT_SECRET, SSOT_MCP_SECRET, BITBUCKET_TOKEN, GITHUB_TOKEN, GITLAB_TOKEN, GITEA_TOKEN
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// required environment variables
This server reads these from process.env. You'll be asked to provide them before it can run.
configSSOT_MCP_UI_USERNAME
configSSOT_MCP_UI_PASSWORD_BCRYPT
🔐 secretSSOT_MCP_UI_PASSWORD
🔐 secretSSOT_MCP_UI_JWT_SECRET
configSSOT_MCP_API_URL
🔐 secretSSOT_MCP_SECRET
configDATABASE_URL
configDATA_ROOT
configCHROMA_PATH
configBITBUCKET_USERNAME
🔐 secretBITBUCKET_TOKEN
configCHROMA_UPSERT_BATCH
configSSOT_MCP_CHROMA_LOCK_RETRIES
configSSOT_MCP_CHROMA_LOCK_SLEEP_SEC
configSSOT_MCP_CHROMA_INIT_LOCK_TIMEOUT_SEC
configSSOT_MCP_EMBED_ESTIMATE_MODEL_LOAD_SEC
configSSOT_MCP_EMBED_ESTIMATE_CHUNKS_PER_SEC
configSSOT_MCP_EMBED_ESTIMATE_UPSERT_CHUNKS_PER_SEC
configSSOT_MCP_EMBED_ESTIMATE_BYTES_PER_CHUNK
configSSOT_MCP_EMBED_ENCODE_PROGRESS_SLICE
configSSOT_MCP_GIT_PACK_THREADS
🔐 secretGITHUB_TOKENEdit .env: or GITLAB_TOKEN, HF_TOKEN, postgres UIDs, GPU settings
🔐 secretGITLAB_TOKENEdit .env: GITHUB_TOKEN or , HF_TOKEN, postgres UIDs, GPU settings
configSSOT_MCP_EMBED_BATCH_SIZE
configSSOT_MCP_EMBED_CUDA_OOM_FALLBACK
configSSOT_MCP_EMBED_ENCODE_PARALLEL
configCUDA_VISIBLE_DEVICES
configSSOT_MCP_TORCH_DEVICE
configTORCH_NUM_THREADS
configOMP_NUM_THREADS
configTORCH_NUM_INTEROP_THREADS
🔐 secretGITEA_TOKEN
configSSOT_MCP_NO_PREFECT
configZOEKT_GIT_INDEX_BIN
configZOEKT_SEARCH_BIN
configSSOT_MCP_EMBED_CONCURRENCY_ENABLED
configSSOT_MCP_DISABLE_EMBED_CONCURRENCY_TAG
configSSOT_MCP_EMBED_CONCURRENCY_TAG
configPREFECT_WORK_POOL
configWORKFLOW_CONCURRENCY
// full audit trail
The full breakdown of what we checked, the deductions that landed, the network hosts, the dependency advisories, and concrete fix guidance is available to verified publishers.
// improvement guidance — verified publishers only
We have 6 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/ysok-ssot-mcp-1x1bhr)](https://m8ven.ai/mcp/ysok-ssot-mcp-1x1bhr)
commit: 71316909c0c73cdf78a860ecd845ad7ee3827c83
code hash: 9c8808b4983dc95c5be0ce264b40218fd6b802260b17f6021261bb5cb7deb0d9
verified: 7/21/2026, 8:56:58 AM
view raw JSON →