MCP server
audit-software-project
Evidence-based engineering audit skill for Claude Code — inspects a local repo across 13 domains (~47 controls) and produces a feature-organized HTML report with a 30-day improvement plan
- Version
- master
- Analysed
- Last observed
What the code does
- Refers to credential files Code that names files such as SSH keys or cloud credentials.
Having a capability is not wrongdoing; many tools need these to do their job. It tells you what to check before you install.
This is public metadata, not a safety certification or complete assessment. Static analysis cannot establish what a tool does at runtime.
Risk
Sign in to see this tool's overall risk level and what drives it. Free.
Coverage
Complete static analysis
Detailed report
2 findings from automated static analysis of the latest version, with severities and explanations.
Using this tool across your team? We can assess your whole inventory.
Request an inventory assessment