‹ The Index

Obra Cto

npm

Local-first MCP that scores your codebase's build readiness. Your code never leaves your machine.

Works with: Claude Code, Cursor, Claude Desktop, Codex CLI, Gemini CLI, Cline, Windsurf, VS Code

Category: Productivity — see all ranked ›

Install (Claude Code):

claude mcp add bra--to -- npx -y obra-cto
solid

“Prints a real anonymized score report and names its one network call (src/deps.ts).”

Security audit

scanned 2026-07-30

Every finding is shown in full. Nothing on this page is behind a licence — there is no advisory to name and no install script to read.

No known advisoriesclearchecked against OSV for 0.3.1
No permission surface detecteddeclares no dependency that reaches files, shell or network
No build provenanceno attestation — the published artifact cannot be traced to its source

npm ↗  ·  source ↗  ·  pkg:obra-cto

Already running this? npx tashan-cli doctor checks your whole config against the Index — how it works ›