Skip to main content
Glama

Code Analysis

Tools for static analysis, code intelligence, and code understanding. Provides capabilities for parsing, analyzing, and gaining insights into codebases across different programming languages.

MCP ServersBrowse all โ†’

  • A
    license
    B
    quality
    D
    maintenance
    Allows developers to query security findings (SAST issues, secrets, patches) using natural language within AI-assisted tools like Claude Desktop, Cursor, and other MCP-compatible environments.
    17
    9
    MIT
  • A
    license
    A
    quality
    B
    maintenance
    Official Codna MCP server with Mojo-powered risk simulation. Maps repos with zero LLM tokens. 5 stdio tools: triage, root-cause analysis and fix plans (optional PRs), SARIF reachability proof, on-device code memory and bug reporting. Introspection needs no credentials; execution requires a one-time free codna login. Source: cli/codna/mcp_server.py. Registry: io.github.thyn-ai/codna.
    5
    Apache 2.0
  • A
    license
    A
    quality
    B
    maintenance
    Enables AI assistants to query and analyze Rell code via Language Server Protocol features like hover information, completions, diagnostics, and code actions. Automatically manages the Rell LSP server and provides resource-based access with real-time subscriptions.
    10
    7 npm
    MIT
  • A
    license
    A
    quality
    B
    maintenance
    Enables MCP-native multi-agent security audits for Google Antigravity, orchestrating subagents for 0day research, static analysis, PoC verification, exploit chaining, reporting, and code remediation.
    6
    15
    3
    MIT
  • A
    license
    A
    quality
    A
    maintenance
    PHP static analysis MCP server with 11 tools for querying 60+ code quality metrics, detecting problems (God Class, dependency cycles, SOLID violations), analyzing dependencies, identifying refactoring priorities, and mapping test coverage โ€” all from live analysis data.
    11
    3 npm
    92
    MIT
  • A
    license
    A
    quality
    A
    maintenance
    ๐Ÿ ๐Ÿ  - Code graph for AI agents over MCP: resolves Python and TypeScript calls to fully qualified names and reports the share it could not resolve instead of guessing. Multi-hop impact analysis, authz reachability audit, architectural drift against declared patterns. Local, SQLite. uvx codegraph-brain
    14
    15
    231 PyPI
    2
    MIT
  • A
    license
    A
    quality
    A
    maintenance
    A 100% local MCP server for semantic and lexical search over your code, library docs, and PDFs, featuring hybrid BM25 and dense retrieval, syntax aware chunking, and an optional code knowledge graph. It also ships a Coral integration, so you can expose your code search as SQL and join it with live data, all without anything leaving your machine.
    8
    16
    115 PyPI
    9
    Apache 2.0
  • A
    license
    A
    quality
    A
    maintenance
    Marrow is an MCP server that solves agent amnesia. It gives coding agents persistent task tracking, versioned docs, and semantic search over your actual source code (via a tree-sitter powered background indexer) โ€” so a new session, or a different model entirely, can pick up exactly where the last one left off. Built for multi-agent, multi-session software delivery.
    620
    24
    7
    MIT
  • A
    license
    B
    quality
    A
    maintenance
    Exposes Lachesis's code navigation tools over MCP, letting LLM agents ask precise compiler-level questions about dataflow, taint, callers, and guards in source code.
    50
    163 PyPI
    3
    AGPL 3.0
  • A
    license
    A
    quality
    A
    maintenance
    Deterministic code-graph (GraphRAG) over your repo for LLM agents โ€” local-first, git-native, zero-infra, served via MCP. Python, TS/JS, Rust, Go, Java, C#.
    8
    12
    Apache 2.0
  • A
    license
    B
    quality
    A
    maintenance
    Enables deterministic verification for AI assistants by executing Python code that uses symbolic engines like SymPy and Z3 for math, logic, and code analysis.
    2
    Apache 2.0
  • A
    license
    A
    quality
    A
    maintenance
    Enables AI to read and analyze repository incident scan results, including file diffs and summaries, to help investigate suspicious changes. It is read-only and does not execute code or send data externally.
    11
    44 npm
    MIT
  • A
    license
    A
    quality
    A
    maintenance
    Provides GraphRAG code search to AI agents, combining structural code graph traversal with semantic and keyword retrieval so agents can find relevant code without exact name matches.
    20
    MIT
  • A
    license
    A
    quality
    A
    maintenance
    Contract-first programming language with a local MCP server for checking types, effects, capabilities, and contracts in agent-written modules. Its review tool compares before and after source sets and returns receipts for new authority, weaker promise tiers, and new Guarded runtime obligations.
    7
    8
    Apache 2.0
  • A
    license
    A
    quality
    A
    maintenance
    Open-source capability compiler for Python codebases. Discover existing Python capabilities, plan explicit exposure, and expose selected functions through MCP or REST without rewriting business logic.
    3
    1,428 PyPI
    3
    GPL 3.0
  • A
    license
    A
    quality
    C
    maintenance
    Enables safe read-only interaction with SQL Server and Azure SQL databases, providing schema exploration, query linting and analysis, query plan insights, write previews as SELECTs, and a versioned library of .sql queries via MCP.
    29
    MIT
  • A
    license
    A
    quality
    A
    maintenance
    This server enables AI-assisted APK reverse-engineering entirely on-device, orchestrating jadx, apktool, adb, frida, and APKiD through a job/workflow engine, and exposing those agents as native MCP tools for Claude without any cloud dependency.
    38
    20
    8
    MIT
  • A
    license
    A
    quality
    D
    maintenance
    An MCP server that gives AI coding agents verified migration maps: exactly what breaks between two versions of a library and how to fix it, from hand-curated maps with source citations - instead of hallucinated answers from stale training data
    5
    51 npm
    Business Source 1.1

MCP ConnectorsBrowse all โ†’