code-review-mcp-server
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@code-review-mcp-serverreview my Python script for code quality and security"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
Code Review MCP Server
Status: archived / portfolio reference. Built March 2026 as a focused exploration of FastMCP + AST-based code-quality heuristics. The deterministic tools (Ruff / ShellCheck / ESLint wrappers, secret-pattern checks) still work; the LLM-style review feedback is largely overlapped by modern coding assistants, which is why this is frozen rather than actively maintained. Fork if you want to extend.
An open-source Model Context Protocol (MCP) server that brings senior-level code review into your editor. Use it with Cursor or any MCP client to get quality checks, refactor suggestions, security checks, and best-practice guidance as you code.
Quick start
git clone <this-repo>
cd mcp_server
python -m venv venv
./venv/bin/pip install -r requirements.txt
./venv/bin/python code_review_mcp_server.pyWith Cursor: Add the server to your MCP config (e.g. copy mcp.json into ~/.cursor/ and set workingDirectory to this repo). Cursor will then offer tools like senior_review, review_code_quality, and security_review when you work on code.
Related MCP server: greybeard
What it does
The server exposes tools over MCP that your editor can call to:
Area | Tools |
One-shot review |
|
Quality |
|
Security |
|
Refactor |
|
Structure |
|
Tests |
|
Static analysis | Ruff (Python), ShellCheck (Bash), ESLint (JS/TS), patch generation |
So instead of "quick AI code," you get feedback that matches what a senior engineer would expect in a code review: clear structure, fewer security risks, and maintainable patterns.
Requirements
Python 3.10+
Optional: Ruff for Python linting (
pip install ruff), ShellCheck for Bash, ESLint (e.g. vianpx) for JavaScript/TypeScript
Project structure
mcp_server/
main.py # Minimal entry point
code_review_mcp_server.py # Entry point with config and logging
tools/ # MCP tools (quality, security, refactor, etc.)
utils/ # Helpers (temp files, diffs)
tests/ # Unit tests (tools, utils, common)
mcp.json # Example MCP config for Cursor
requirements.txt
requirements-dev.txt # Dev deps (pytest); optional
pyproject.toml # Project metadata and pytest configTesting
From the project root (with the venv activated and deps installed):
python -m unittest discover -s tests -p 'test_*.py' -vOr install dev deps and use pytest: pip install -r requirements-dev.txt then pytest tests/ -v.
Usage
Run the server from the project directory:
./venv/bin/python code_review_mcp_server.pyor
python main.py(both use the same config and logging).Use from Cursor: Point your Cursor MCP config at this repo. The example
mcp.jsonuses relative paths:workingDirectoryshould resolve to the cloned repo (e.g.../mcp_serverif the config file lives in~/.cursor). For reliability, you can setworkingDirectoryto the absolute path of this repo (e.g.~/mcp_server).
Getting better results
Pass
file_pathwhen callingsenior_review,review_code_quality, orsecurity_review. Findings will includefile:linereferences so you can jump to the exact location.Use
focuswithsenior_reviewto narrow the checklist:"security"(secrets, injection, permissions),"api"(naming, types, docs), or omit for the full checklist.Review in small chunks. Run review on one file or one concern at a time; large blobs of code produce noisier or vaguer feedback.
Ask for one thing at a time. For example: “Run security_review on this file” or “Run senior_review with focus=api on this function.”
License and author
License: MIT — see LICENSE.
Author: Dmitry Troshenkov.
Contributions and feedback are welcome.
This server cannot be deployed
Maintenance
Related MCP Connectors
An MCP server that automatically collects feedback on your MCP server.
A MCP server built for developers enabling Git based project management with project and personal…
Scan any public GitHub MCP-server repo for security issues. 37 MCP-specific L1 rules, 8 languages.
Scan any MCP server for tool-poisoning, security, auth & license. Trust score before install.
Related MCP Servers
- AlicenseNot gradedqualityCmaintenanceAn MCP server that reviews code with the sarcastic and cynical tone of a grumpy senior developer, helping identify issues in PRs and providing feedback on code quality.7 npm21MIT
- AlicenseNot gradedqualityDmaintenanceAn MCP server that provides AI-powered code review and architecture analysis, simulating the perspective of an experienced staff engineer. It integrates with IDEs to review diffs, design decisions, and tradeoffs through natural language.1MIT
- AlicenseAqualityDmaintenanceMCP server for comprehensive code analysis, navigation, and quality assessment across 25+ programming languages.988MIT
- AlicenseAqualityDmaintenanceAn MCP server that provides local code quality analysis for AI coding assistants, supporting file analysis, git diff review, and full project scanning with quality scoring.43MIT