Skip to main content
Glama

Server Configuration

Describes the environment variables required to run the server.

NameRequiredDescriptionDefault

No arguments

Instructions

Guidance the server publishes about itself, which clients place ahead of the tool catalog so the model reads it before choosing anything.

This server publishes no instructions, or was last inspected before Glama recorded them.

Capabilities

Features and capabilities supported by this server

Protocol revision2025-11-25

CapabilityDetails
tools
{
  "listChanged": false
}
prompts
{
  "listChanged": false
}
resources
{
  "subscribe": false,
  "listChanged": false
}
experimental
{}

Tools

Functions exposed to the LLM to take actions

NameDescription
rush_reviewA

Review code at for size, TODO density, missing docstrings, naming, complexity. Returns {status, findings[], summary}. Default: heuristic. Pass use_llm=true to call configured model.

rush_lintA

Lint Python/JS/TS files at . Returns {status, findings[], summary}. Engines: ruff (Python), eslint (JS/TS). status='skipped' means engine not on PATH.

rush_formatA

Format Python/JS/TS files at . Returns {status, findings[], summary}. Engines: ruff format (Python), prettier (JS/TS). Always check-only in v0.1.

rush_testA

Run tests for project at . Returns {status, findings[], summary}. Engines: pytest (Python), vitest/npm (JS/TS). status='skipped' means engine not on PATH.

rush_securityC

Scan deps at for known vulnerabilities. Returns {status, findings[], summary}. Engines: pip-audit (Python), npm audit (JS/TS). status='skipped' means engine not on PATH.

rush_typecheckA

Type-check Python and JS/TS at . Uses mypy or tsc; missing engines return status='skipped'.

rush_deadA

Find unused Python and JS/TS code at . Uses vulture or knip; missing engines return status='skipped'.

rush_complexityA

Measure Python and JS/TS complexity at . Uses radon or jscpd; missing engines return status='skipped'.

rush_slopB

Detect Python AI slop and deterministic JS/TS noise at ; missing sloppylint returns status='skipped' when no JS/TS fallback applies.

rush_markdownA

Check Markdown at without rewriting files; missing markdownlint-cli returns status='skipped'.

rush_actionsA

Check GitHub Actions workflows without rewriting; missing actionlint returns status='skipped'.

rush_yamlA

Check YAML without rewriting; missing spectral returns status='skipped'.

rush_sqlB

Check SQL without rewriting; missing sqlfluff returns status='skipped'.

rush_templatesA

Check templates without rewriting; missing djlint returns status='skipped'.

rush_containerfileA

Check container files without rewriting; missing hadolint returns status='skipped'.

rush_iacB

Check Terraform without rewriting; missing local engines return status='skipped'.

rush_secretsA

Scan for secrets without exposing values; missing gitleaks returns status='skipped'.

rush_sbomB

Generate an SBOM only to a safe explicit output path; missing cdxgen returns status='skipped'.

rush_coverageC

Import a local coverage report or run coverage analysis under --allow-slow.

rush_codeqlC

Import a local CodeQL SARIF report or run CodeQL analysis under --allow-build.

rush_e2eC

Run configured E2E tests only with --allow-browser.

rush_snapshotC

Import a local snapshot comparison or run snapshot tests under --allow-slow.

rush_visualB

Check visual baselines; updates require --accept.

rush_pbtC

Import a local property-test report or run property tests under --allow-slow.

rush_mutationC

Import a local mutation report or run mutation testing under --allow-slow.

rush_flakyC

Import a local JUnit report or run duplicate test analysis under --allow-slow.

rush_contractC

Import a local Pact report or run local contract verifications under --allow-slow.

rush_fuzzC

Import a local fuzz report or execute local fuzz tests under --allow-slow.

rush_loadC

Import a local load report or execute load traffic under --allow-network.

rush_commit_msgC

Validate supplied Conventional Commit messages without modifying Git history.

rush_continuityC

Save, list, or restore a local Rush session checkpoint. Returns {status, findings[], summary}; saving requires explicit cache-write permission.

rush_memoryC

Query, write, or promote a cross-tool memory artifact in the typed artifact store. Returns {status, findings[], summary}; write/promote/maintain/verify_attempt require explicit permissions.

rush_ciA

Inspect local CI workflow configuration without accessing credentials or remote status.

rush_releaseB

Create a dry-run release plan; publishing requires explicit confirmation.

rush_semantic_driftB

Semantic drift detection comparing rendered DOM/accessibility against baseline. Requires both --allow-browser and --allow-slow.

rush_ai_evalC

Evaluate LLM prompts, agent workflows, and safety guardrails. Requires explicit permissions for live inference runs.

rush_tddC

Verify Test-Driven Development (TDD) compliance at . Returns {status, findings[], summary}.

rush_fixB

Safely auto-remediate formatting and linter issues at . Returns {status, findings[], summary}. Enforces strict path confinement.

rush_patch_applyA

Verify a contained unified diff in an isolated checkout. Defaults to dry-run; promotion requires artifact-write permission. Returns status, findings, summary.

rush_doctorA

Diagnose environment health, toolchain integrity, and binary resolution at . Returns {status, findings[], summary}.

rush_attestC

Generate in-toto Statement v1 SLSA provenance unsigned draft for build artifacts.

rush_license_matrixC

Audit open-source dependencies for license risks and copyleft compliance. Returns {status, findings[], summary}.

rush_iam_auditC

Audit cloud SDK calls in code, inspect Terraform HCL2 policies for wildcards, and synthesize minimal least-privilege IAM policies. Returns {status, findings[], summary}.

rush_prompt_evalC

Evaluate recorded prompt runs against golden task criteria at . Returns {status, findings[], summary}.

rush_mem_profileB

Audit memory usage and unclosed resources at ; dynamic probe requires --allow-slow. Returns {status, findings[], summary}.

rush_cold_startB

Audit import overhead and cold-start latency at ; dynamic -X importtime requires --allow-slow. Returns {status, findings[], summary}.

rush_media_optC

Audit media assets for CLS and SVG security at ; writes optimized assets with --allow-artifact-write. Returns {status, findings[], summary}.

rush_offline_reviewA

Run air-gapped code review using external local LLM (ollama/llama-cli) on PATH; returns skipped if no local runner is found. Returns {status, findings[], summary}.

rush_tui_diffC

Compute Git commit and quality findings deltas at ; renders Rich tables in CLI. Returns {status, findings[], summary}.

rush_benchmarkB

Compare performance samples against baseline thresholds at ; baseline recording requires --allow-cache-write. Returns {status, findings[], summary}.

rush_error_catalogB

Extract Python, TypeScript, and Rust exceptions at , generate RFC 7807 problem catalog; export markdown requires --allow-artifact-write.

rush_provenance_aiC

Analyze git commit trailers for AI attribution, calculate empirical code survival curves (30/60/90d), and compute defect correlation. Returns {status, findings[], summary}.

rush_dead_assetA

Detect unreferenced images, fonts, and media assets under (strictly read-only). Returns {status, findings[], summary}; export manifest requires --allow-artifact-write.

rush_pr_synthesizeA

Synthesize semantic PR markdown card from git diff and evidence at ; export requires --allow-artifact-write.

rush_attest_generateB

Deprecated alias for rush_attest

rush_ship_cleanB

Clean scratch directories and build caches before release

rush_ship_envA

Audit codebase environment variable usage against .env.example

rush_ship_gateC

Run 7-vector pre-flight release readiness cockpit

rush_token_outlineB

Generate token-efficient AST skeleton outline of a code file

rush_context_retrieveC

Retrieve uncompressed content from CCR chunk store by hash

rush_hallu_guardB

Audit code imports against installed packages and stdlib

rush_context_mistakes_checkB

Check git revert history for past mistakes and anti-patterns

rush_context_packC

Pack graph-pruned context outline under a strict token budget

rush_context_gain_statsB

Get real-time token economy savings and cost metrics

rush_blast_radiusA

Calculate downstream transitive blast radius for a changed file

rush_arch_guardB

Validate codebase against clean architecture layer boundaries

rush_test_healC

Diagnose flaky test race conditions and suggest fixes

rush_api_diffA

Detect breaking public API changes against base Git ref

rush_db_driftB

Audit ORM models against migrations to detect schema drift

rush_simplifyB

Decompose high-complexity functions into modular helpers

rush_strictifyC

Synthesize runtime type guards for unvalidated parameters

rush_traceB

Scan codebase and specs to output requirement traceability matrix

rush_mesh_acquire_lockC

Acquire non-blocking multi-agent file lock

rush_mesh_release_lockB

Release multi-agent file lock

rush_swarm_mergeC

Execute 3-way AST merge conflict resolution

rush_projectD

Register, discover, select, and configure Rush projects

rush_scanC

Plan, run, and check status of a full-project scan

rush_agent_connectionC

Discover, connect, and diagnose local coding agents

rush_scan_handoffC

Prepare, dispatch, and acknowledge a bounded agent handoff of scan findings

Prompts

Interactive templates invoked by user choice

NameDescription

No prompts

Resources

Contextual data attached and managed by the client

NameDescription

No resources

TDQS

C2.6/5.0

Scored across 79 tools

Disambiguation2/5

Many tools fall into the same broad audit/scan bucket, such as rush_review, rush_lint, rush_slop, rush_dead, and rush_complexity, making selection genuinely ambiguous. Test-related tools like rush_test, rush_e2e, rush_snapshot, and rush_visual also blur together, and the deprecated rush_attest_generate alias adds extra confusion.

Naming Consistency3/5

All tools share the rush_ prefix and snake_case, which keeps the naming readable. However, the operation part is inconsistent: some are nouns, some are verbs, and some are long descriptive phrases, so there is no predictable verb_noun or noun_verb convention.

Tool Count1/5

With 79 tools, this is an extreme over-scoped MCP surface and far exceeds the threshold where a tool set remains navigable. Many related scanners could be consolidated into a single parameterized scan/audit tool, and the sheer count severely harms discoverability.

Completeness4/5

The inferred domain is a broad engineering-quality and release-readiness assistant, and the tool set covers static analysis, testing, security, release planning, AI evaluation, context management, and agent coordination. Some gaps remain—many findings can only be remediated by rush_fix and several tools depend on external engines—but agents can generally work around these.

Maintenance

ActivityMaintained
ResponsivenessNo issues