
Research
/Security News
Popular npm Packages in the keyv and Cacheable Namespaces Compromised in Active Supply Chain Attack
Popular npm packages keyv and cacheable compromised.
@arkheia/mcp-server
Advanced tools
Arkheia MCP Server — Fabrication detection for LLM outputs. Detect hallucination in any model's output with a single tool call.
Know when your AI is making things up.
Arkheia screens model responses for fabrication using behavioural fingerprinting. Works with Claude, GPT, Gemini, Grok, Llama, Mistral, and 30+ other models. One tool call. Real-time risk scoring.
Free tier: 1,500 detections/month. No credit card.
npx @arkheia/mcp-server
Get a free API key:
curl -X POST https://arkheia-proxy-production.up.railway.app/v1/provision \
-H "Content-Type: application/json" \
-d '{"email": "you@example.com"}'
Add to your agent config (Claude Code, Claude Desktop, Cursor, or any MCP-compatible tool):
{
"mcpServers": {
"arkheia": {
"command": "python",
"args": ["-m", "mcp_server.server"],
"cwd": "~/.arkheia/mcp",
"env": {
"PYTHONPATH": "~/.arkheia/mcp",
"ARKHEIA_API_KEY": "ak_live_your_key_here"
}
}
}
}
Restart your agent. Then ask it:
"Use arkheia_verify to check this response: The Kafka 4.1 ConsumerLease API introduces a lease-based partition ownership model."
It should flag this as HIGH risk — because the Kafka 4.1 ConsumerLease API doesn't exist.
MCP gives agents a portable arkheia_verify tool. For live vendor CLI detection, route the CLI through the Arkheia API Proxy too.
Codex subscription sessions need both transports routed:
codex \
-c 'chatgpt_base_url="https://arkheia-proxy-production.up.railway.app/backend-api/"' \
-c 'openai_base_url="https://arkheia-proxy-production.up.railway.app/v1"'
API-key based Codex sessions can use the OpenAI-compatible route:
OPENAI_BASE_URL=https://arkheia-proxy-production.up.railway.app/v1 codex
Use MCP for targeted checks and the proxy for automatic workflow-level detection.
| Tool | Description |
|---|---|
arkheia_verify | Score any model response for fabrication risk (LOW/MEDIUM/HIGH) |
arkheia_audit_log | Review your detection history |
run_grok | Call Grok + screen for fabrication |
run_gemini | Call Gemini + screen for fabrication |
run_ollama | Call local Ollama model + screen |
run_together | Call Together AI (Kimi, DeepSeek) + screen |
GPT-4o, GPT-5.4, Claude Opus/Sonnet/Haiku, Gemini 2.5/3.0, Grok 4, Llama, Mixtral, CodeLlama, Falcon, Phi4, Kimi K2.5, and more. If your model isn't listed, let us know.
| Plan | Price | Detections |
|---|---|---|
| Free | $0 | 1,500/month |
| Single Contributor | $99/month | Unlimited |
| Professional | $499/month | Unlimited |
| Team | $1,999/month | Unlimited |
See the GitHub repo for:
Every message is read by the founder.
FAQs
Arkheia MCP Server — Fabrication detection for LLM outputs. Detect hallucination in any model's output with a single tool call.
We found that @arkheia/mcp-server demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Popular npm packages keyv and cacheable compromised.

Security News
A misconfiguration gave three Anthropic models internet access, and one, believing it was in a simulation, shipped a credential-stealing package to PyPI.

Security News
/Company News
Socket has joined the new Composer and Packagist sponsorship program as a launch sponsor, supporting the team that keeps PHP's package ecosystem secure.