scan_your_ai_toolkit
🛡️ Scan Your AI Toolkit
Open-source AI governance tools. Each works standalone as an MCP server or CLI — together they form a governance mesh.
Built by Maiife — Enterprise AI Control Plane.
Tools
Package | Description | Published |
| Shared types and formatters used by all toolkit packages | ✅ |
| AI environment scanner — discover IDE extensions, MCP servers, agent frameworks, API keys, local models | ✅ |
| MCP server security scanner — score configs on permissions, data sensitivity, blast radius | ✅ |
| "What's Your AI Stack?" — shareable profile card of your AI toolkit | ✅ |
| MCP health check & auto-fixer — brew doctor for your MCP setup | ✅ |
| Personal AI usage diary — track how you use AI, get reflective insights | ✅ |
| Cross-tool AI memory sync — one context.json, synced to Cursor, Claude, MCP | ✅ |
| Prompt quality analyzer — score, improve, and lint your AI prompts | ✅ |
| LLM-as-judge evaluation engine — score agent outputs with structured rubrics | ✅ |
| Agent workflow tracer — trace, view, and analyze execution spans | ✅ |
| AI spend calculator + optimizer — unified cost report across vendors | ✅ |
| Gamified prompt coach — levels, streaks, badges for prompt improvement | ✅ |
| Personal AI subscription auditor — find waste in your AI spending | ✅ |
| Personal model recommender — find the best model for YOUR tasks | ✅ |
| AI week in review — Spotify Wrapped for your AI usage, weekly | ✅ |
Related MCP server: Mund
Quick Start
# Scan your AI environment
npx @maiife-ai-pub/probe scan
# Audit your MCP server security
npx @maiife-ai-pub/mcp-audit scan
# Generate your AI Stack profile card
npx @maiife-ai-pub/ai-stack --format svg --output my-stack.svg
# Health check your MCP servers
npx @maiife-ai-pub/mcp-doctor check
# Log an AI interaction
npx @maiife-ai-pub/ai-journal log --tool claude --task coding --duration 30
# Sync AI context across tools
npx @maiife-ai-pub/context-sync push
# Score your AI prompts
npx @maiife-ai-pub/prompt-score analyze --input prompt.txt
# Evaluate agent outputs with rubrics
npx @maiife-ai-pub/eval score --rubric code-review --input review.txt
# Trace agent workflows
npx @maiife-ai-pub/trace list --days 7
# Track AI spend across vendors
npx @maiife-ai-pub/cost report --period last-30d
# Gamified prompt coaching
npx @maiife-ai-pub/prompt-craft score --input prompt.txt
# Audit AI subscriptions for waste
npx @maiife-ai-pub/sub-audit
# Find the best model for your tasks
npx @maiife-ai-pub/model-match recommend --task coding
# Generate your AI week in review
npx @maiife-ai-pub/weekly-ai-report generateUse as MCP Server
Every tool with an MCP server can be added to Claude Desktop, Cursor, or any MCP-compatible client. Each exposes tools over stdio transport.
~/Library/Application Support/Claude/claude_desktop_config.json (macOS) or %APPDATA%\Claude\claude_desktop_config.json (Windows):
{
"mcpServers": {
"maiife-probe": {
"command": "npx",
"args": ["@maiife-ai-pub/probe", "mcp"]
},
"maiife-mcp-audit": {
"command": "npx",
"args": ["@maiife-ai-pub/mcp-audit", "mcp"]
},
"maiife-mcp-doctor": {
"command": "npx",
"args": ["@maiife-ai-pub/mcp-doctor", "mcp"]
},
"maiife-eval": {
"command": "npx",
"args": ["@maiife-ai-pub/eval", "mcp"]
},
"maiife-prompt-score": {
"command": "npx",
"args": ["@maiife-ai-pub/prompt-score", "mcp"]
},
"maiife-prompt-craft": {
"command": "npx",
"args": ["@maiife-ai-pub/prompt-craft", "mcp"]
},
"maiife-cost": {
"command": "npx",
"args": ["@maiife-ai-pub/cost", "mcp"]
},
"maiife-model-match": {
"command": "npx",
"args": ["@maiife-ai-pub/model-match", "mcp"]
},
"maiife-ai-stack": {
"command": "npx",
"args": ["@maiife-ai-pub/ai-stack", "mcp"]
},
"maiife-context-sync": {
"command": "npx",
"args": ["@maiife-ai-pub/context-sync", "mcp"]
},
"maiife-sub-audit": {
"command": "npx",
"args": ["@maiife-ai-pub/sub-audit", "mcp"]
},
"maiife-trace": {
"command": "npx",
"args": ["@maiife-ai-pub/trace", "mcp"]
}
}
}Pick the tools you need — you don't have to add all of them. Once configured, Claude can call tools like probe_scan, mcp_audit_scan, eval_score, prompt_score_analyze, cost_report, and more directly from chat.
Run with Docker
Each MCP server is published as a Docker image on GHCR. Useful for sandboxed environments or Glama integration.
# Pull and run any server
docker run -i ghcr.io/sakthivelchan89/maiife-probe
docker run -i ghcr.io/sakthivelchan89/maiife-mcp-audit
docker run -i ghcr.io/sakthivelchan89/maiife-eval
# ... same pattern for all 12 packages
# Or build from source
docker build -f packages/probe/Dockerfile -t maiife-probe .
docker run -i maiife-probeDocker images use stdio transport (no ports exposed). Pass -i for interactive stdin/stdout communication with MCP clients.
Quality & Compliance
This toolkit aims to meet MCP Tier 1 quality standards (per MCP SEP-1730). Here's what that means:
Dimension | Status |
License | Apache 2.0 — canonical SPDX, OSI-approved |
Transport | stdio only (no network exposure) |
CI/CD | GitHub Actions: lint + type-check + tests on Node 18, 20, 22 |
Test coverage | vitest + |
MCP conformance | Protocol compliance suite for all 12 MCP servers |
Security scanning | CodeQL (weekly + on PR), Dependabot (weekly) |
Vulnerability response | 48h CRITICAL / 7d HIGH (see DEPENDENCY_POLICY.md) |
Issue triage SLA | 2 business days (see CONTRIBUTING.md) |
Versioning | SemVer, lockstep across packages, CHANGELOG.md |
Supply chain |
|
Container security | Non-root user, no exposed ports, GHCR-signed |
Conformance test suite
Every MCP server in this repo is validated against the MCP protocol contract:
✅ stdio transport invariant (no non-JSON output on stdout)
✅
initializehandshake responds with validserverInfo+ capabilities✅
tools/listreturns the documented tool set✅ All tool
inputSchemafields are valid JSON Schema objects✅ Unknown tool calls return structured errors (not crashes)
Run the suite:
pnpm test:conformance # all packages
cd packages/probe && pnpm test:conformance # single packageDocumentation
SECURITY.md — vulnerability reporting policy
CONTRIBUTING.md — issue/PR guidelines and SLAs
CHANGELOG.md — version history (Keep a Changelog format)
DEPENDENCY_POLICY.md — dependency selection criteria & patch SLAs
Contributing
Contributions are welcome! Read CONTRIBUTING.md for the full guide. Quick version:
Fork the repo on GitHub
Create a branch:
git checkout -b feat/my-improvementMake your changes — each package lives in
packages/<name>/Run tests:
pnpm test && pnpm test:conformanceOpen a PR against
main— describe what you changed and why
Please follow the existing code style (TypeScript, ESM, Vitest for tests). Each package should work as both a CLI and an MCP server where applicable.
License
Apache 2.0 — free to use, modify, and distribute.
Part of the Maiife platform — Enterprise AI Control Plane.
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Tools
Related MCP Servers
- AlicenseAqualityBmaintenanceAI supply chain security scanner for MCP servers and AI agents. 18 tools for CVE scanning, blast radius mapping, CIS benchmarks, SBOM generation, and compliance enforcement across OWASP LLM Top 10, MITRE ATLAS, NIST AI RMF, and EU AI Act.Last updated7328Apache 2.0
- Alicense-qualityAmaintenanceMCP security scanner for AI agents - detects prompt injection, secrets, PII, and vets MCP servers before installationLast updatedApache 2.0
- AlicenseAqualityCmaintenanceReputation scoring for AI agent wallets on Base. 9 tools for trust scores, fraud checks, blacklist lookups, leaderboard, badge generation, and agent registration with x402 payment verification.Last updated9991MIT
- Alicense-quality-maintenanceOpen-source AI governance toolkit — MCP servers & CLIs for scanning, auditing, and managing your AI environmentLast updated1
Related MCP Connectors
Security scanner for MCP servers. Detect vulnerabilities, prompt injection, and tool poisoning.
Zero-config MCP security scanner for AI-generated apps. 25K+ vulnerability patterns.
Security tools for AI agents: scan MCP servers, validate HDP delegation chains, audit releases.
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/sakthivelchan89/scan_your_ai_toolkit'
If you have feedback or need assistance with the MCP directory API, please join our Discord server