CodeAtlas MCP Enterprise
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@CodeAtlas MCP EnterpriseShow me the dependency graph for the payment module"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
CodeAtlas MCP Server
Local-first MCP server for AI-powered codebase intelligence — AST analysis, dependency graphs, and semantic search. Your source code never leaves your machine.
📌 What is CodeAtlas MCP Server?
A Model Context Protocol (MCP) server that provides:
AST Analysis: Parse TypeScript, Python, PHP, and more.
Dependency Graphs: Visualize call chains and module relationships.
Semantic Search: Find code by meaning, not just syntax.
Local-First: Your code stays on your machine; no telemetry by default.
Cloud Optional: Connect to codeatlas-platform for dream memory, genome immune system, and skills sync.
Why Use It?
Use Case | Benefit |
AI IDE Integration | Claude Desktop, Cursor, VSCode — get context-aware code intelligence. |
Codebase Audits | Automate dependency analysis, security scans, and refactoring insights. |
Semantic Search | Find functions, classes, or modules by intent, not just name. |
Multi-Language Support | Works with TypeScript, Python, PHP, and more via AST parsers. |
Related MCP server: CodeGraphMCPServer
🏗 Architecture
AI IDE → MCP stdio/SSE → Parser (AST) → Dependency Graph → Code Search
│
codeatlas-platform (HTTP) → Dreams + GenomeLayer | Components |
Parser | TypeScript, Python, PHP AST analysis |
Graph | Dependency graph with chunked force layout |
Search | Semantic code search with regex safety |
Cloud | Optional: connect to codeatlas-platform for dreams/genome |
🔧 Quick Start
1. Install
# Clone the repo
git clone https://github.com/giauphan/codeatlas-mcp-server.git
cd codeatlas-mcp-server
# Install dependencies (requires Node.js 20+)
pnpm install2. Configure
# Copy env template
cp .env.example .env
# Edit .env (Oracle DB optional for persistent memory)
# Cloud features require both variables; no default URL is used
# Set CODEATLAS_API_URL to your CodeAtlas API base URL
# Set CODEATLAS_API_KEY to your CodeAtlas API key3. Build
pnpm run build4. Run
# Local-only mode (no cloud)
pnpm start
# With cloud connection (requires codeatlas-platform running)
CODEATLAS_API_URL=http://localhost:8080 CODEATLAS_API_KEY=your_api_key_here pnpm start📡 MCP Tools (30+)
Category | Tools |
Code Analysis |
|
AST |
|
Graphs |
|
Security |
|
Cloud |
|
Skills |
|
Example: Connect to Claude Desktop
Add to claude-desktop-config.json:
{
"mcpServers": {
"codeatlas": {
"command": "npx",
"args": [
"-y",
"codeatlas-mcp-server"
]
}
}
}Example: Connect to Cursor/VSCode (SSE)
Add to settings.json:
{
"mcp.sse": {
"codeatlas": "npx codeatlas-mcp-server"
}
}Connect to Zed (MCP context server)
Zed has no Claude-style hooks, so the Second Brain hooks are exposed as MCP tools instead.
Option A — automatic setup:
codeatlas-enterprise setup zedThis writes a codeatlas entry into Zed's context_servers (passing CODEATLAS_API_KEY/CODEATLAS_API_URL from your environment). Restart Zed afterward.
Option B — manual: add to Zed settings.json (open via zed: open settings file):
{
"context_servers": {
"codeatlas": {
"command": "npx",
"args": ["-y", "codeatlas-mcp-server"],
"env": { "CODEATLAS_API_KEY": "your_api_key_here" }
}
}
}Then in Zed's Agent Panel, call the brain_context tool at the start of a task to inject Second Brain memory, and save_dream_memory after a task to persist learnings. route_task suggests a model/effort (advisory only — Zed does not auto-switch models). See Zed Integration.
🔒 Security & Environment Variables
CodeAtlas MCP Server is designed with a local-first architecture and several security hardening measures to protect your credentials and codebase data:
No Disk Persistence: Credentials like
CODEATLAS_API_KEYare kept entirely in-memory and are never persisted to.envfiles or disk. You must supply your key via environment variables.Strict Destination Validation: When connecting to cloud features, the destination AI and backend URLs are strictly validated. Credentials can only flow to trusted official domains (
*.codeatlas.ai,opencode.ai) or local addresses (localhost,127.0.0.1).Telemetry & Logging: Potential credential leaks are sanitized and redacted from all console and error logs.
Required & Optional Environment Variables
Variable | Description | Default |
| Secret key to connect to CodeAtlas Cloud services for AI memory and scan features. | (none) |
| Target URL for CodeAtlas Cloud. Validated via allowlists to prevent credential exfiltration. |
|
| Set to |
|
| Key for deep AI security scanning using an external LLM. | (none) |
| Endpoint for deep AI security scanning. | (none) |
📚 Documentation
Guide | Description |
Full environment setup, commands, and troubleshooting. | |
PM2, systemd, Nginx TLS, and healthchecks. | |
Auth, dream memory, and MCP config examples. |
🤝 Contributing
See CONTRIBUTING.md for guidelines.
📜 License
MIT © Giau Phan
🔗 Related Projects
codeatlas-platform — HTTP server for dream memory and genome.
codeatlas-mcp — npm package for easy installation.
⚠️ Known Limitations
Oracle DB Required for Persistent Memory: Local-only mode works without Oracle, but dream memory persistence requires it.
Cloud Dream Query Filters: When querying memories with
scope,tags, ormemory_typefilters, the backend performs vector hybrid search on the query text plus SQL filtering on the other parameters. Thetagsparameter is passed as a JSON string to the upstream API. Therelated_idsparameter is also supported for filtering by related memory IDs.Multi-Tenant Not Supported: Only single-tenant mode available.
Security: No built-in rate limiting; use a reverse proxy (Nginx) in production.
🐛 Issues & Support
Report bugs or request features: GitHub Issues
For questions: Discussions
This server cannot be deployed
Maintenance
Related MCP Connectors
Code intelligence platform for AI agents. 20 tools for architecture, security & impact analysis.
AI-native git hosting — repos, PRs, issues, CI gates, and AI code review over MCP (60 tools).
An MCP server that gives your AI access to the source code and docs of all public github repos
MCP server for progressive tool usage at any scale (see https://klavis.ai)
Related MCP Servers
- AlicenseCqualityDmaintenanceA privacy-first MCP server that provides local LLM-enhanced tools for code analysis, security scanning, and automated task execution using backends like Ollama and LM Studio. It enables symbol-aware code reviews and workspace exploration while ensuring that all code and analysis remain strictly on your local machine.36ISC
- AlicenseNot gradedqualityDmaintenanceA lightweight, zero-configuration MCP server for source code analysis with GraphRAG capabilities, enabling structural understanding and efficient code completion from MCP-compatible AI tools.32 PyPI12MIT
- AlicenseBqualityAmaintenanceAn MCP code-intelligence server for AI agents with pre-indexed AST cache, 62 MCP tools, and TOON-compressed output, enabling token-efficient code analysis and project health grading entirely locally.9815 PyPI50MIT
- AlicenseNot gradedqualityAmaintenanceMCP server for local-first code intelligence, providing structural code graph, semantic search, and impact analysis to AI agents.2MIT