Sigistry Plugin & Skill Catalog

Search verified Claude Code plugins and skills; fetch portable SKILL.md sources. Read-only.

Should I use this

Quality & Safety

A
Description quality
100%
Schema completeness
79%
Naming quality
100%
Poisoning risk
100%
Permission match
100%
Protocol compliance
100%

Based on automated analysis of tool definitions and protocol compliance.

Context Cost

~3,537Tokens (tool definitions)
~4.3 KBTypical response size
Significant attention impact (2.76% of 128k context)

This is the approximate number of tokens consumed each time the server's tools are loaded into a model's context. Higher counts reduce the attention available for other tasks.

Install

One-Click Install

Add this to your `claude_desktop_config.json` file:

{
  "mcpServers": {
    "plugin-catalog": {
      "url": "https://sigistry.com/mcp"
    }
  }
}

Remote endpoints

https://sigistry.com/mcpstreamable-http

What it can do

Tool inventory

Tools (8)

🟢 Read-only🟡 Write🔴 Delete⚪ Unknown
🟢search_plugins(query, category)

Search the Sigistry marketplace of Claude Code plugins by keyword and/or category. Returns matches with their install command and verification status (the registry runs an eight-check security audit; prefer "verified" plugins when recommending an install).

Input Schema

{
  "type": "object",
  "properties": {
    "query": {
      "type": "string",
      "description": "keywords, e.g. \"database migration\""
    },
    "category": {
      "type": "string",
      "description": "e.g. \"database\", \"devops\", \"git\""
    }
  },
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}

Output Schema

{
  "type": "object",
  "properties": {
    "results": {
      "type": "array",
      "items": {
        "type": "object",
        "properties": {
          "id": {
            "type": "string",
            "description": "stable plugin id, e.g. \"sql-safety-net\""
          },
          "name": {
            "type": "string",
            "description": "human-readable plugin name"
          },
          "description": {
            "type": "string",
            "description": "one-line summary"
          },
          "category": {
            "type": "string",
            "description": "marketplace category"
          },
          "installCommand": {
            "type": "string",
            "description": "Claude Code install command"
          },
          "verification": {
            "type": "string",
            "description": "verification status: \"verified\" (passed the eight-check security methodology), \"stale\" (verified at a pinned commit the repo has since moved past), \"listed\" (in the registry but not audited), \"failed\", or \"unknown\". Prefer verified plugins. Methodology: https://sigistry.com/verification"
          }
        },
        "required": [
          "id",
          "name",
          "installCommand",
          "verification"
        ],
        "additionalProperties": false
      },
      "description": "up to 15 matching plugins, best matches first"
    }
  },
  "required": [
    "results"
  ],
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟢get_plugin(id)

Get the full details of a single Sigistry plugin by its id, including install commands, component counts, and its security-audit result (per-check pass/fail from the Verified by Sigistry methodology).

Input Schema

{
  "type": "object",
  "properties": {
    "id": {
      "type": "string",
      "description": "the plugin id, e.g. \"sql-safety-net\""
    }
  },
  "required": [
    "id"
  ],
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}

Output Schema

{
  "type": "object",
  "properties": {
    "id": {
      "type": "string"
    },
    "name": {
      "type": "string"
    },
    "version": {
      "type": "string"
    },
    "description": {
      "type": "string"
    },
    "category": {
      "type": "string"
    },
    "tags": {
      "type": "array",
      "items": {
        "type": "string"
      },
      "description": "keywords from the marketplace entry"
    },
    "author": {
      "type": "object",
      "properties": {
        "name": {
          "type": "string"
        },
        "url": {
          "type": "string"
        }
      },
      "additionalProperties": false
    },
    "license": {
      "type": "string"
    },
    "commands": {
      "type": "array",
      "items": {
        "type": "string"
      },
      "description": "relative paths to command files"
    },
    "agents": {
      "type": "array",
      "items": {
        "type": "string"
      },
      "description": "relative paths to agent files"
    },
    "skills": {
      "type": "array",
      "items": {
        "type": "string"
      },
      "description": "relative paths to skill manifests"
    },
    "counts": {
      "type": "object",
      "properties": {
        "commands": {
          "type": "integer"
        },
        "agents": {
          "type": "integer"
        },
        "skills": {
          "type": "integer"
        }
      },
      "required": [
        "commands",
        "agents",
        "skills"
      ],
      "additionalProperties": false,
      "description": "component counts"
    },
    "homepage": {
      "type": "string"
    },
    "installMarketplace": {
      "type": "string",
      "description": "command to add the marketplace to Claude Code"
    },
    "installCommand": {
      "type": "string",
      "description": "command to install this plugin"
    },
    "searchableText": {
      "type": "string",
      "description": "lowercased text used for matching"
    },
    "verification": {
      "anyOf": [
        {
          "type": "object",
          "properties": {
            "status": {
              "type": "string",
              "description": "verified | listed | stale | failed"
            },
            "hosting": {
              "type": "string",
              "description": "registry (vendored) | external (author repo)"
            },
            "date": {
              "type": "string",
              "description": "date of the last audit run"
            },
            "firstSeen": {
              "type": "string",
              "description": "date the plugin entered the registry"
            },
            "methodologyVersion": {
              "type": "string"
            },
            "methodologyUrl": {
              "type": "string"
            },
            "badgeUrl": {
              "type": "string",
              "description": "SVG badge for this plugin"
            },
            "repo": {
              "type": "string",
              "description": "external repo (owner/name), when externally hosted"
            },
            "commit": {
              "type": "string",
              "description": "pinned commit the verification applies to"
            },
            "checks": {
              "type": "array",
              "items": {
                "type": "object",
                "properties": {
                  "id": {
                    "type": "string"
                  },
                  "title": {
                    "type": "string"
                  },
                  "status": {
                    "type": "string",
                    "description": "pass | fail | n/a"
                  },
                  "detail": {
                    "type": "string"
                  }
                },
                "required": [
                  "id",
                  "title",
                  "status"
                ],
                "additionalProperties": false
              },
              "description": "per-check results of the security audit"
            }
          },
          "required": [
            "status",
            "checks"
          ],
          "additionalProperties": false
        },
        {
          "type": "null"
        }
      ],
      "description": "security-audit result for this plugin (null when never audited)"
    }
  },
  "required": [
    "id",
    "name",
    "tags",
    "commands",
    "agents",
    "skills",
    "counts",
    "installMarketplace",
    "installCommand",
    "searchableText"
  ],
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟢list_categories

List the distinct plugin categories in the Sigistry marketplace with a count of plugins in each, plus the total plugin count.

Input Schema

{
  "type": "object",
  "properties": {},
  "$schema": "http://json-schema.org/draft-07/schema#"
}

Output Schema

{
  "type": "object",
  "properties": {
    "categories": {
      "type": "array",
      "items": {
        "type": "object",
        "properties": {
          "category": {
            "type": "string"
          },
          "count": {
            "type": "integer",
            "description": "plugins in this category"
          }
        },
        "required": [
          "category",
          "count"
        ],
        "additionalProperties": false
      },
      "description": "categories sorted by descending plugin count"
    },
    "total": {
      "type": "integer",
      "description": "total number of plugins"
    }
  },
  "required": [
    "categories",
    "total"
  ],
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟢search_skills(query, plugin)

Search the Sigistry catalog of verified skills (SKILL.md instruction sets for AI agents) by keyword, optionally filtered to one parent plugin. Every skill passed the skill-safety check: no command shadowing, honestly-scoped triggers, no injection or concealment language, no unsafe scripts. Use get_skill to fetch the full portable source of a match.

Input Schema

{
  "type": "object",
  "properties": {
    "query": {
      "type": "string",
      "description": "keywords, e.g. \"changelog\" or \"security review\""
    },
    "plugin": {
      "type": "string",
      "description": "restrict to skills shipped by this plugin id"
    }
  },
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}

Output Schema

{
  "type": "object",
  "properties": {
    "results": {
      "type": "array",
      "items": {
        "type": "object",
        "properties": {
          "name": {
            "type": "string",
            "description": "stable skill name, e.g. \"assessment-scoring\""
          },
          "description": {
            "type": "string",
            "description": "the skill trigger: when an agent should load it"
          },
          "plugin": {
            "type": "string",
            "description": "parent plugin id that ships this skill"
          },
          "verification": {
            "type": "string",
            "description": "verification status of the parent plugin; prefer \"verified\""
          },
          "installCommand": {
            "type": "string",
            "description": "Claude Code command installing the parent plugin (skill loads automatically)"
          },
          "detailUrl": {
            "type": "string",
            "description": "human-readable page for this skill"
          }
        },
        "required": [
          "name",
          "description",
          "plugin",
          "verification",
          "installCommand",
          "detailUrl"
        ],
        "additionalProperties": false
      },
      "description": "up to 20 matching skills, best matches first"
    }
  },
  "required": [
    "results"
  ],
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟢get_skill(name)

Get one Sigistry skill by name, including the full raw SKILL.md source. The source is portable: it can be applied directly in any SKILL.md-aware agent (Claude Code, Claude Desktop, and others) without installing anything, or installed natively in Claude Code via the parent plugin, which keeps it verified and updated. The returned skill passed the Sigistry skill-safety check at the parent plugin's verification date.

Input Schema

{
  "type": "object",
  "properties": {
    "name": {
      "type": "string",
      "description": "the skill name, e.g. \"assessment-scoring\" (find names via search_skills)"
    }
  },
  "required": [
    "name"
  ],
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}

Output Schema

{
  "type": "object",
  "properties": {
    "name": {
      "type": "string",
      "description": "stable skill name, e.g. \"assessment-scoring\""
    },
    "description": {
      "type": "string",
      "description": "the skill trigger: when an agent should load it"
    },
    "plugin": {
      "type": "string",
      "description": "parent plugin id that ships this skill"
    },
    "verification": {
      "type": "string",
      "description": "verification status of the parent plugin; prefer \"verified\""
    },
    "installCommand": {
      "type": "string",
      "description": "Claude Code command installing the parent plugin (skill loads automatically)"
    },
    "detailUrl": {
      "type": "string",
      "description": "human-readable page for this skill"
    },
    "pluginCategory": {
      "type": [
        "string",
        "null"
      ],
      "description": "category of the parent plugin"
    },
    "verifiedDate": {
      "type": [
        "string",
        "null"
      ],
      "description": "date of the verification run covering this skill"
    },
    "hosting": {
      "type": "string",
      "description": "\"registry\" (vendored here) or \"external\" (author repo, verified at a pinned commit)"
    },
    "repo": {
      "type": "string",
      "description": "author repo (owner/name), when externally hosted"
    },
    "commit": {
      "type": "string",
      "description": "pinned commit the source is served from, when externally hosted"
    },
    "sourceUrl": {
      "type": "string",
      "description": "GitHub location of the skill directory"
    },
    "source": {
      "type": [
        "string",
        "null"
      ],
      "description": "the complete raw SKILL.md (frontmatter + body); null only if the fetch failed"
    }
  },
  "required": [
    "name",
    "description",
    "plugin",
    "verification",
    "installCommand",
    "detailUrl",
    "pluginCategory",
    "verifiedDate",
    "hosting",
    "sourceUrl",
    "source"
  ],
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟢list_scorecards

List the public MCP servers Sigistry has independently graded against its scorecard rubric (transport, stateless core, lifecycle, authorization, tool design, security hygiene), each with an overall grade A-F and the exact commit graded. Useful before connecting an agent to a third-party MCP server: check whether it has been assessed and how it scored. Use get_scorecard for the full per-axis breakdown.

Input Schema

{
  "type": "object",
  "properties": {},
  "$schema": "http://json-schema.org/draft-07/schema#"
}

Output Schema

{
  "type": "object",
  "properties": {
    "rubricVersion": {
      "type": [
        "string",
        "null"
      ]
    },
    "rubricUrl": {
      "type": [
        "string",
        "null"
      ]
    },
    "total": {
      "type": "integer"
    },
    "scorecards": {
      "type": "array",
      "items": {
        "type": "object",
        "properties": {
          "id": {
            "type": "string"
          },
          "name": {
            "type": "string"
          },
          "grade": {
            "type": "string",
            "description": "overall grade A-F"
          },
          "repo": {
            "type": [
              "string",
              "null"
            ]
          },
          "commit": {
            "type": [
              "string",
              "null"
            ],
            "description": "the graded commit"
          },
          "endpoint": {
            "type": [
              "string",
              "null"
            ]
          },
          "date": {
            "type": [
              "string",
              "null"
            ]
          },
          "selfAssessment": {
            "type": "boolean",
            "description": "true for Sigistry's own servers"
          }
        },
        "required": [
          "id",
          "name",
          "grade",
          "repo",
          "commit",
          "endpoint",
          "date",
          "selfAssessment"
        ],
        "additionalProperties": false
      }
    }
  },
  "required": [
    "rubricVersion",
    "rubricUrl",
    "total",
    "scorecards"
  ],
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟢get_scorecard(id)

Get the full scorecard for one graded MCP server by its id: the overall grade, per-axis pass/partial/fail with cited evidence, hardening notes, the rubric version, and the exact commit graded. Grades describe the pinned commit only; a re-grade at a newer commit can be requested via an issue on the marketplace repo.

Input Schema

{
  "type": "object",
  "properties": {
    "id": {
      "type": "string",
      "description": "scorecard id, e.g. \"sigistry-catalog\" (find ids via list_scorecards)"
    }
  },
  "required": [
    "id"
  ],
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}

Output Schema

{
  "type": "object",
  "properties": {
    "id": {
      "type": "string"
    },
    "name": {
      "type": "string"
    },
    "grade": {
      "type": "string"
    },
    "endpoint": {
      "anyOf": [
        {
          "anyOf": [
            {
              "not": {}
            },
            {
              "type": "string"
            }
          ]
        },
        {
          "type": "null"
        }
      ]
    },
    "repo": {
      "anyOf": [
        {
          "anyOf": [
            {
              "not": {}
            },
            {
              "type": "string"
            }
          ]
        },
        {
          "type": "null"
        }
      ]
    },
    "commit": {
      "anyOf": [
        {
          "anyOf": [
            {
              "not": {}
            },
            {
              "type": "string"
            }
          ]
        },
        {
          "type": "null"
        }
      ]
    },
    "date": {
      "anyOf": [
        {
          "anyOf": [
            {
              "not": {}
            },
            {
              "type": "string"
            }
          ]
        },
        {
          "type": "null"
        }
      ]
    },
    "selfAssessment": {
      "type": "boolean"
    },
    "rubricVersion": {
      "anyOf": [
        {
          "anyOf": [
            {
              "not": {}
            },
            {
              "type": "string"
            }
          ]
        },
        {
          "type": "null"
        }
      ]
    },
    "rubricUrl": {
      "anyOf": [
        {
          "anyOf": [
            {
              "not": {}
            },
            {
              "type": "string"
            }
          ]
        },
        {
          "type": "null"
        }
      ]
    },
    "axes": {
      "type": "array",
      "items": {
        "type": "object",
        "properties": {
          "id": {
            "type": "string"
          },
          "title": {
            "type": "string"
          },
          "status": {
            "type": "string",
            "description": "pass | partial | fail | n/a"
          },
          "evidence": {
            "type": "string",
            "description": "the file/behavior the result rests on"
          }
        },
        "required": [
          "id",
          "title",
          "status",
          "evidence"
        ],
        "additionalProperties": false
      },
      "description": "per-axis results with evidence"
    },
    "notes": {
      "type": "array",
      "items": {
        "type": "string"
      },
      "description": "hardening suggestions and context"
    }
  },
  "required": [
    "id",
    "name",
    "grade",
    "axes"
  ],
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟢verify_plugin(pluginPath)

Get the recipe to run the Sigistry verification methodology (the eight static checks that gate the Verified badge: manifest integrity, hook safety, agent tool scopes, command hygiene, skill structure, skill safety, no secrets, documentation) against a plugin BEFORE publishing it. The verification runs entirely on the local machine via a dependency-free open-source Node script; the plugin code never leaves the user's computer and this server performs no computation. Call this when the user wants their plugin or skill checked, then follow the returned steps: download the script, run it against the plugin directory, and fix any FAIL findings it reports.

Input Schema

{
  "type": "object",
  "properties": {
    "pluginPath": {
      "type": "string",
      "description": "local path to the plugin directory, used to fill in the run command (optional)"
    }
  },
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}

Output Schema

{
  "type": "object",
  "properties": {
    "runsWhere": {
      "type": "string",
      "description": "always \"local\": verification executes on the user's machine"
    },
    "methodologyVersion": {
      "type": "string"
    },
    "methodologyUrl": {
      "type": "string"
    },
    "checks": {
      "type": "array",
      "items": {
        "type": "object",
        "properties": {
          "id": {
            "type": "string"
          },
          "title": {
            "type": "string"
          },
          "what": {
            "type": "string"
          }
        },
        "required": [
          "id",
          "title",
          "what"
        ],
        "additionalProperties": false
      },
      "description": "the eight checks the script will run"
    },
    "steps": {
      "type": "array",
      "items": {
        "type": "string"
      },
      "description": "what the agent should do, in order"
    },
    "commands": {
      "type": "object",
      "properties": {
        "macos_linux": {
          "type": "string",
          "description": "download + run one-liner for bash/zsh"
        },
        "windows": {
          "type": "string",
          "description": "download + run one-liner for PowerShell"
        },
        "alternative_clone": {
          "type": "string",
          "description": "equivalent via cloning the marketplace repo"
        }
      },
      "required": [
        "macos_linux",
        "windows",
        "alternative_clone"
      ],
      "additionalProperties": false
    },
    "interpreting": {
      "type": "string"
    },
    "nextSteps": {
      "type": "string"
    }
  },
  "required": [
    "runsWhere",
    "methodologyVersion",
    "methodologyUrl",
    "checks",
    "steps",
    "commands",
    "interpreting",
    "nextSteps"
  ],
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}

Community

Rate this Server

Evidence

Recent observations

verifiedversion not recorded8 tools
verifiedversion not recorded8 tools