ward
by user31133
README.md
# Ward
MCP server for AI-powered code quality analysis. Detects security issues, bugs, code smells, and performance problems.
Supports: Python, JavaScript/TypeScript, Go, Java, Ruby, Rust, C/C++, and more.
## Quick Start
**Requires Python 3.10+**
### 1. Install
```bash
pip install semgrep ward-mcp
```
### 2. Add to MCP config
**Claude Desktop / Cursor / Windsurf** (`mcp.json` or `claude_desktop_config.json`):
```json
{
"mcpServers": {
"ward": {
"command": "python",
"args": ["-m", "ward", "mcp"]
}
}
}
```
**Claude Code CLI** (`~/.claude/mcp_servers.json`):
```json
{
"ward": {
"type": "stdio",
"command": "python",
"args": ["-m", "ward", "mcp"]
}
}
```
Done. Your AI agent now has access to Ward's scanning tools.
## Auto-scan Setup
Add to your project's `CLAUDE.md` or `.cursorrules`:
```
After generating code, use ward mcp - scan_remote tool to check for issues.
Format: scan_remote(code_files=[{"path": "filename.py", "content": "code"}])
If issues found: fix and scan again.
```
## Tools
| Tool | Description |
|------|-------------|
| `scan_remote` | Scan code content directly |
| `scan` | Scan files by path |
| `scan_with_custom_rule` | Scan with custom YAML rules |
## Warning - first mcp call will be longer due to installation.
## Troubleshooting
**"semgrep not found"** - Run `pip install semgrep`
**Server won't start** - Check `python -m ward mcp` runs without errors
## Roadmap
**Phase 1: AI-Powered Analysis** (Coming Soon)
- `explain_issue` - LLM-powered detailed explanations for detected issues
- `suggest_fix` - AI-generated code fixes with context-aware suggestions
**Phase 2: Cross-File Intelligence** (Coming Soon)
- `analyze_cross_file` - Graph-based taint analysis across multiple files
- Detect complex vulnerabilities that span multiple modules
- Dependency flow tracking and data flow analysis
Stay tuned for updates!
## License
MIT
This server cannot be deployed
Maintenance
ActivityInactive
ResponsivenessNo issues