Graneth

Pre-flight check for AI coding agents: hallucinated packages + secrets, 6 ecosystems, no account.

사용해야 할까요

품질 및 안전성

A
설명 품질
100%
스키마 완전성
100%
이름 품질
85%
오염 위험
100%
권한 일치
100%
프로토콜 준수
100%

도구 정의와 프로토콜 준수에 대한 자동 분석을 기반으로 합니다.

컨텍스트 비용

~1,018토큰 (도구 정의)
~2.2 KB일반적인 응답 크기
중간 정도의 주의 영향 (128k 컨텍스트의 0.80%)

이는 서버의 도구가 모델의 컨텍스트에 로드될 때마다 소비되는 대략적인 토큰 수입니다. 수치가 높을수록 다른 작업에 사용할 수 있는 주의가 줄어듭니다.

설치

원클릭 설치

`claude_desktop_config.json` 파일에 다음을 추가하세요:

{
  "mcpServers": {
    "mcp-server": {
      "command": "npx",
      "args": [
        "@graneth/mcp-server"
      ]
    }
  }
}

실행 가능한 패키지

npm@graneth/mcp-server0.7.1stdio

원격 엔드포인트

https://graneth.com/api/mcpstreamable-http

할 수 있는 일

도구 목록

도구 (4)

🟢 읽기 전용🟡 쓰기🔴 삭제⚪ 알 수 없음
⚪scan_repository(owner, repo, pull_number, token)

Trigger a Level 1 + Level 2 security scan on a GitHub pull request. Returns SAST findings, taint flows, entropy-detected secrets, and (for PRO users) LLM-triaged results. Requires Graneth authentication.

입력 스키마

{
  "type": "object",
  "properties": {
    "owner": {
      "type": "string",
      "maxLength": 100,
      "pattern": "^[a-zA-Z0-9._-]{1,100}$",
      "description": "GitHub repository owner"
    },
    "repo": {
      "type": "string",
      "maxLength": 100,
      "pattern": "^[a-zA-Z0-9._-]{1,100}$",
      "description": "GitHub repository name"
    },
    "pull_number": {
      "type": "integer",
      "exclusiveMinimum": 0,
      "maximum": 1000000,
      "description": "Pull request number to scan"
    },
    "token": {
      "type": "string",
      "maxLength": 200,
      "description": "GitHub access token with repo read permissions"
    }
  },
  "required": [
    "owner",
    "repo",
    "pull_number",
    "token"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🔴pre_flight_check(files, context)

Security pre-flight check for local file changes BEFORE committing. Run this whenever you are about to suggest `git commit`, `git push`, or open a pull request — especially when changes touch auth, secrets, SQL queries, package.json / requirements.txt, or environment variables. Returns CLEAR or BLOCKED with specific findings and remediation steps.

입력 스키마

{
  "type": "object",
  "properties": {
    "files": {
      "maxItems": 50,
      "type": "array",
      "items": {
        "type": "object",
        "properties": {
          "path": {
            "type": "string",
            "maxLength": 500,
            "description": "Relative file path"
          },
          "content": {
            "type": "string",
            "maxLength": 200000,
            "description": "Full file content to check"
          }
        },
        "required": [
          "path",
          "content"
        ]
      },
      "description": "Files staged for commit (path + content)"
    },
    "context": {
      "description": "What these changes do (helps with triage)",
      "type": "string",
      "maxLength": 500
    }
  },
  "required": [
    "files"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟢get_findings(owner, repo, file, severity)

Retrieve the security findings recorded by your most recent scan of this repository, optionally filtered by exact file path or severity. Returns an error if you have never scanned it — that is not the same answer as no findings. Checks that could not run are reported as a count, never listed among the findings.

입력 스키마

{
  "type": "object",
  "properties": {
    "owner": {
      "type": "string",
      "maxLength": 100,
      "pattern": "^[a-zA-Z0-9._-]{1,100}$",
      "description": "GitHub repository owner"
    },
    "repo": {
      "type": "string",
      "maxLength": 100,
      "pattern": "^[a-zA-Z0-9._-]{1,100}$",
      "description": "GitHub repository name"
    },
    "file": {
      "description": "Filter findings to a specific file path",
      "type": "string",
      "maxLength": 500
    },
    "severity": {
      "description": "Filter by severity level",
      "type": "string",
      "enum": [
        "critical",
        "warning",
        "info"
      ]
    }
  },
  "required": [
    "owner",
    "repo"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}
⚪auto_remediate(owner, repo, token, file, line, ...)

Generate an automated security fix for a specific finding. Creates a GitHub PR with the patched code. Verifies the fix with Level 1 SAST before opening the PR. Requires authentication, 3 credits, and ANTHROPIC_API_KEY.

입력 스키마

{
  "type": "object",
  "properties": {
    "owner": {
      "type": "string",
      "maxLength": 100,
      "pattern": "^[a-zA-Z0-9._-]{1,100}$",
      "description": "GitHub repository owner"
    },
    "repo": {
      "type": "string",
      "maxLength": 100,
      "pattern": "^[a-zA-Z0-9._-]{1,100}$",
      "description": "GitHub repository name"
    },
    "token": {
      "type": "string",
      "maxLength": 200,
      "description": "GitHub token with repo write access"
    },
    "file": {
      "type": "string",
      "maxLength": 500,
      "description": "File path containing the vulnerability (relative, no traversal)"
    },
    "line": {
      "type": "integer",
      "exclusiveMinimum": 0,
      "maximum": 100000,
      "description": "Line number of the finding"
    },
    "finding_type": {
      "type": "string",
      "maxLength": 100,
      "description": "Finding type e.g. 'command_injection', 'sql_injection'"
    },
    "title": {
      "type": "string",
      "maxLength": 300,
      "description": "Finding title from scan results"
    },
    "severity": {
      "type": "string",
      "enum": [
        "critical",
        "warning",
        "info"
      ],
      "description": "Finding severity"
    },
    "description": {
      "type": "string",
      "maxLength": 2000,
      "description": "Finding description"
    },
    "recommendation": {
      "type": "string",
      "maxLength": 2000,
      "description": "Recommended fix from scan results"
    },
    "ref": {
      "default": "main",
      "description": "Git ref (branch/SHA)",
      "type": "string",
      "maxLength": 200,
      "pattern": "^[a-zA-Z0-9/_.-]{1,200}$"
    }
  },
  "required": [
    "owner",
    "repo",
    "token",
    "file",
    "line",
    "finding_type",
    "title",
    "severity",
    "description",
    "recommendation"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}

커뮤니티

이 서버 평가하기

증거

최근 관측

검증됨버전이 기록되지 않음도구 4개
검증됨버전이 기록되지 않음도구 4개