🎩 You're Invited:Meet the Socket team at Black Hat in Las Vegas, August 3-6.RSVP
Sign In

weavatrix-online

Package Overview
Dependencies
Maintainers
1
Versions
5
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

weavatrix-online

Source-free Weavatrix MCP connector for preview-gated Cloud/self-hosted graph sync, live advisories, malware review, and architecture contracts.

latest
Source
npmnpm
Version
0.3.1
Version published
Weekly downloads
378
52.42%
Maintainers
1
Weekly downloads
 
Created
Source

Weavatrix Online

Take repository intelligence across a network without handing the network your repository.

npm CI license Node.js

Weavatrix Online is the MIT-licensed MCP connector for Weavatrix Cloud and compatible customer-controlled endpoints. It keeps analysis local, produces an inspectable source-free payload, and requires an exact short-lived confirmation before that payload can leave the machine.

The complete Online profile exposes 52 MCP tools:

  • 34 local repository-intelligence tools from weavatrix-js;
  • 11 preview, apply, and rollback tools from weavatrix-refactor;
  • 7 Online tools for endpoint discovery, advisories, malware review, architecture contracts, and controlled synchronization.

Installing or starting Online does not synchronize anything. preview_sync makes no network request; sync_graph accepts only the still-valid preview for the same repository, destination, payload, and graph.

Choose the right Weavatrix package

ProductInstallBoundary
weavatrixnpm or CargoNative local-first MCP product. Both package managers distribute the same local Weavatrix server and engine.
weavatrix-rustCargoProtocol-independent Rust repository-intelligence engine for library and CLI use; it does not own MCP transport.
weavatrix-onlinenpmThis optional network-capable MCP composition: local analysis and refactoring plus source-free Cloud/self-hosted workflows.

Online currently composes the public JavaScript packages directly:

weavatrix-online 0.3.1
  ├─ weavatrix-refactor 0.1.x
  └─ weavatrix-js 0.3.x

It does not proxy the native weavatrix executable and does not copy either engine. Use weavatrix when the graph must remain entirely local. Use weavatrix-online when endpoint status, remotely managed architecture contracts, advisory refresh, or explicit source-free synchronization is part of the workflow.

Install and run

Run the pinned release without a global install:

npx -y weavatrix-online@0.3.1 C:\path\to\repository

The command starts a stdio MCP server. The first positional argument is the repository to analyze. An existing graph can be supplied explicitly:

npx -y weavatrix-online@0.3.1 C:\graphs\repository\graph.json C:\path\to\repository

The npm package is intentionally an executable MCP product; it does not advertise a nonexistent JavaScript library entry point.

Codex

[mcp_servers.weavatrix_online]
command = "npx"
args = ["-y", "weavatrix-online@0.3.1", "C:\\path\\to\\repository"]

[mcp_servers.weavatrix_online.env]
WEAVATRIX_SYNC_URL = "https://app.weavatrix.com/api/v1/graphs/sync"
WEAVATRIX_SYNC_TOKEN = "load-from-runtime-secret-storage"

Claude Desktop

{
  "mcpServers": {
    "weavatrix-online": {
      "command": "npx",
      "args": [
        "-y",
        "weavatrix-online@0.3.1",
        "C:\\path\\to\\repository"
      ],
      "env": {
        "WEAVATRIX_SYNC_URL": "https://app.weavatrix.com/api/v1/graphs/sync",
        "WEAVATRIX_SYNC_TOKEN": "load-from-runtime-secret-storage"
      }
    }
  }
}

Keep bearer tokens in the MCP client's runtime secret storage. Do not put them in Git, a committed .env, release logs, or checked-in MCP configuration.

The seven Online tools

ToolNetworkEvidence and effect
online_statusYesDiscovers endpoint capabilities, payload versions, limits, and auth mode without repository evidence.
refresh_advisoriesYesInventories exact dependency coordinates, queries OSV, validates returned records, and atomically refreshes the local cache.
scan_dependency_vulnerabilitiesNoMatches the current inventory against that cache. Missing, stale, partial, or mismatched coverage remains NOT_CHECKED or PARTIAL.
scan_dependency_malwareNoPerforms bounded static review of installed dependency files. Findings require review and are never a compromise verdict.
pull_architecture_contractYesFetches the owner-approved target for the active opaque repository ID, validates it, and updates the local graph cache.
preview_syncNoSerializes the exact allowlisted payload, hashes it, and issues a five-minute confirmation token.
sync_graphYesSends only the payload approved by preview_sync; dry_run:false and the matching token are mandatory.

The other 45 tools cover graphs, APIs, impact, architecture, dependency evidence, duplicates, health, search, and transactional refactoring. See the JavaScript engine catalog and the Refactor documentation.

Typical workflows

Check endpoint compatibility before doing any repository work:

{"name":"online_status","arguments":{"timeout_ms":10000}}

Refresh advisory evidence, then evaluate it locally:

{"name":"refresh_advisories","arguments":{"timeout_ms":20000}}
{"name":"scan_dependency_vulnerabilities","arguments":{"max_age_days":30}}

Review the exact upload without sending it:

{"name":"preview_sync","arguments":{"payload_version":3}}

After a human or trusted controller approves the displayed destination, section summary, counts, size, and body hash, use the returned token:

{
  "name": "sync_graph",
  "arguments": {
    "payload_version": 3,
    "dry_run": false,
    "confirm_token": "token-returned-by-preview_sync",
    "timeout_ms": 30000
  }
}

Changing the graph, repository, destination, payload, or expiry state invalidates that approval. A rejected or unavailable endpoint leaves the graph local.

local repository
      │
      ▼
local graph + derived evidence
      │
      ▼
preview_sync ── inspect destination, sections, counts, size, and SHA-256
      │
      ▼
explicit approval
      │
      ▼
sync_graph ── capability negotiation ── approved endpoint

The connector enforces:

  • HTTPS for every non-loopback destination;
  • loopback-only HTTP for local development;
  • no credentials embedded in URLs;
  • endpoint capability negotiation before upload;
  • a bounded versioned payload allowlist;
  • exact preview hashing and a short-lived confirmation token;
  • explicit gates for source edits and requested package scripts;
  • honest NOT_CHECKED and PARTIAL states when evidence is incomplete.

The sync payload contains bounded graph topology and selected derived evidence. It excludes source bodies, snippets, absolute host paths, environment values, credentials, Git remotes, and fields outside the wire allowlist. “Source-free” does not mean anonymous: review the displayed repository identity, destination, counts, sections, and hash before approval.

Configuration

VariableRequiredMeaning
WEAVATRIX_SYNC_URLFor Online network workflowsCloud or compatible self-hosted sync endpoint.
WEAVATRIX_SYNC_TOKENFor Cloud/authenticated endpointsScoped bearer token sent only to the approved endpoint.
WEAVATRIX_CAPABILITIES_URLNoExplicit capability document; otherwise /api/v1/capabilities with legacy /api/health fallback.
WEAVATRIX_ARCHITECTURE_URLNoExplicit owner-approved architecture-contract endpoint.
WEAVATRIX_PRECISIONNoLocal semantic precision: lsp (default) or off.
WEAVATRIX_ALLOW_SOURCE_EDITSNoSet to 1 only for a session authorized to apply or roll back previewed refactor plans.
WEAVATRIX_ALLOW_TEST_RUNSNoSet to 1 only when the user also requests allowlisted verified_change package scripts.
WEAVATRIX_GRAPH_HOMENoOverride local graph/cache storage.
WEAVATRIX_ADVISORY_STORENoOverride the local advisory-cache file.

Compatible endpoints must implement the versioned capability and sync contracts. Capability discovery itself sends no repository evidence.

Security evidence without false certainty

Advisory refresh covers pinned npm, PyPI, Go, Maven/Gradle, and crates.io coordinates found in bounded repository manifests. A clean zero is allowed only when the current inventory matches a complete, current Online cache.

Malware review is static and bounded. It can identify evidence such as download-and-execute lifecycle scripts, reverse-shell patterns, decoded execution, miner indicators, credential-file reads, or suspicious exfiltration endpoints. It cannot prove execution, provenance, credential exposure, safety, or compromise.

Architecture contracts are validated locally before becoming active. Refactoring remains preview-first; writes require both a plan-bound confirmation token and WEAVATRIX_ALLOW_SOURCE_EDITS=1.

Report vulnerabilities privately through GitHub Security Advisories.

Architecture

The connector is a strict modular ports-and-adapters system:

policy
  └─ discovery adapters
       └─ security cache and evidence services
            └─ Online actions
                 └─ MCP composition and executable
  • policy: destination validation, version matching, inventory identities, and malware evidence rules;
  • discovery: bounded manifest and installed-package adapters;
  • security: atomic advisory state, cached matching, scanning, and reporting;
  • online-actions: capability, contract, advisory, preview, and sync use cases;
  • composition: extension registration, launcher, and stdio executable.

The checked-in architecture contract enforces zero runtime cycles, production files at or below 300 physical lines, and functions at or below 100 physical lines, with no exceptions and no violation baseline.

Development and release proof

npm ci --ignore-scripts
npm test
npm run verify:release
npm audit
npm pack --dry-run --json

The release gate verifies package identity, dependency ranges, exact installed versions, MCP Registry metadata, checked-in release notes, MIT licensing, the published file allowlist, and tag/version agreement. CI repeats the tests, security audit, and package dry-run on Node.js 24.

License

MIT. Weavatrix Online, weavatrix-js, and weavatrix-refactor are independently versioned MIT-licensed packages.

Keywords

mcp

FAQs

Package last updated on 30 Jul 2026

Did you know?

Socket

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Install

Related posts