
Research
/Security News
737 Chrome VPN Extensions Linked to Brand Impersonation and Browser Traffic Redirection
The campaign amassed more than 75,000 installs by targeting Russian-speaking users seeking access to blocked services.
@martinloop/mcp
Advanced tools
Governed MCP server for AI coding agents with budgets, verifier gates, and inspectable runs.
Governed MCP server for AI coding agents over local stdio.
@martinloop/mcp@0.2.7 is the current public baseline. It gives hosts one bounded execution entrypoint, strong read-only inspection, clear next-step guidance, and a safer default MartinLoop workflow.
This package stays local-first and stdio-first in the public OSS lane.
0.2.7 made the guided MCP workflow easier to adopt and harder to misuse.0.3.0 is the next adoption release.0.3.1 is planned for review and handoff controls.0.3.2 is planned for opt-in execution controls.martin_doctormartin_planmartin_preflightmartin_runmartin_inspectmartin_statusmartin_logsmartin_pausemartin_cancelmartin_continuemartin_list_runsmartin_triage_runsmartin_get_runmartin_get_attemptmartin_get_verification_resultsmartin_run_dossiermartin_dossiermartin_evalmartin_pr_summarymartin_create_prmartin_review_prmartin://server/healthmartin://runs/recentmartin://runs/triagemartin://runs/latestmartin://runs/latest/summarymartin://runs/latest/proof-cardmartin://runs/latest/budget-statusmartin://runs/latest/verifier-evidencemartin://runs/latest/rollback-evidencemartin://policies/currentmartin://repo/risk-mapmartin://verifiers/resultsmartin://agent/next-stepmartin://guides/mcp-usagemartin://guides/agent-startmartin://guides/publish-readinessmartin_startmartin_preflightmartin_triagemartin_resumemartin_provemartin_release_checkmartin_governed_coding_kickoffmartin_debug_failed_runmartin_publish_readiness_reviewmartin_triage_run_storemartin_doctormartin_planmartin_preflightmartin_runmartin_status or martin_logsmartin_dossiermartin_evalnpx -y @martinloop/mcp
Codex:
codex mcp add martin-loop -- npx -y @martinloop/mcp
Claude Code:
# macOS/Linux
claude mcp add --transport stdio --scope user martin-loop -- npx -y @martinloop/mcp
# Windows PowerShell or cmd.exe
claude mcp add --transport stdio --scope user martin-loop -- cmd /c npx -y @martinloop/mcp
If you want generated host config, use the MartinLoop CLI:
martin mcp print-config --host codex --transport stdio --profile minimal
martin mcp print-config --host claude --transport stdio --profile diagnostic
martin mcp print-config --host gemini --transport stdio --profile full-local
martin mcp print-config --host generic --transport stdio --profile github-review
martin_run remains the single execution entrypoint.0.3.x releases should widen adoption and guidance without blurring those boundaries.pnpm --filter @martinloop/mcp lint
pnpm --filter @martinloop/mcp test
pnpm --filter @martinloop/mcp build
pnpm --filter @martinloop/mcp smoke:pack
pnpm --filter @martinloop/mcp smoke:published:pack
pnpm --filter @martinloop/mcp verify:release
FAQs
Governed MCP server for AI coding agents with budgets, verifier gates, and inspectable runs.
The npm package @martinloop/mcp receives a total of 148 weekly downloads. As such, @martinloop/mcp popularity was classified as not popular.
We found that @martinloop/mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
The campaign amassed more than 75,000 installs by targeting Russian-speaking users seeking access to blocked services.

Company News
Open source maintainers are under more pressure than ever. We're raising our open source program from the Team plan to the Business plan, free.

Security News
The supply chain control that delays freshly published gems now covers lockfile generation and gem vendoring in Ruby projects.