{"name":"io.github.aurelio-nakamura/cmdxray","slug":"aurelio-nakamura-cmdxray","title":"cmdxray","description":"Offline MCP server: explains shell commands token-by-token and flags destructive ones for AI agents.","url":"https://mcp.market/server/aurelio-nakamura-cmdxray","rating":null,"grade":"A","score":89,"certified":false,"status":"active","category":"other","tags":[],"presence":{"score":41,"stars":4,"forks":0,"downloads_week":1660,"last_push_at":"2026-09-19T15:16:08.000Z","license":"MIT"},"uptime":null,"claimed":false,"transport":"npm","callable_via_gateway":false,"default_price_micros":0,"repository":"https://github.com/aurelio-nakamura/cmdxray","website":"https://aurelio-nakamura.github.io/cmdxray/","version":"0.26.1","remotes":[],"packages":[{"registryType":"npm","identifier":"cmdxray","version":"0.26.1","runtimeHint":"npx","transport":{"type":"stdio"},"runtimeArguments":[{"isRequired":true,"value":"mcp","type":"positional"}]}],"tools":[{"name":"check_command_safety","description":"Safety-check a shell command BEFORE executing it. Returns a risk verdict (danger / caution / none) and plain-English warnings for destructive patterns: rm -rf /, curl | sudo bash, dd/mkfs/shred/wipefs to a disk device, chmod -R 777 /, git push --force, truncating /etc/passwd, fork bombs, kill -9 -1, find / -delete, and more. Ideal as a guard an AI agent calls before running shell commands.","write_action":false,"price_micros":0,"input_schema":null},{"name":"explain_command","description":"Explain any shell command offline: a plain-English, token-by-token breakdown of the program, its flags and operands — including pipes, redirects, subshells and common inline languages (sed/awk/jq) — plus a risk assessment. Use it to understand what a command line does before running or recommending it.","write_action":false,"price_micros":0,"input_schema":null},{"name":"lint_script","description":"Safety-scan a WHOLE shell script (multi-line text) BEFORE writing or running it. Runs the same offline danger engine as check_command_safety over every logical line (comments/shebangs stripped, backslash-continuations joined) and returns each destructive or risky command with its line number: rm -rf /, curl | sudo bash, dd/mkfs/shred to a device, chmod -R 777 /, git push --force, CI …}-injection s","write_action":false,"price_micros":0,"input_schema":null}],"scan":{"score":89,"grade":"A","scanned_at":"2026-09-19T19:53:29.100Z","report":{"scannerVersion":"0.1.5","scannedAt":"2026-09-19T19:53:29.058Z","components":{"code":{"score":25,"max":25,"notes":["25 source files scanned"]},"reliability":{"score":-1,"max":20,"notes":["no gateway calls yet and no remote to probe"]},"poisoning":{"score":-1,"max":15,"notes":["tools not inspected (local package is not executed); not counted"]},"auth":{"score":12,"max":15,"notes":["local package, no credentials required"]},"maintenance":{"score":15,"max":15,"notes":["last push 0 days ago"]},"identity":{"score":6,"max":10,"notes":["registry namespace matches repository owner"]}},"findings":[],"inputs":{"packages":[{"registryType":"npm","identifier":"cmdxray","version":"0.26.1","found":true,"license":"MIT","hasInstallScripts":false,"dependencyCount":0,"publishedAt":"2026-09-19T13:27:52.510Z","repositoryUrl":"git+https://github.com/aurelio-nakamura/cmdxray.git","weeklyDownloads":1660}],"repo":{"found":true,"owner":"aurelio-nakamura","repo":"cmdxray","archived":false,"pushedAt":"2026-09-19T15:16:08Z","stars":4,"forks":0,"openIssues":0,"ownerType":"User","ownerAvatarUrl":"https://avatars.githubusercontent.com/u/314452794?v=4","ownerCreatedAt":"2026-08-07T22:53:13Z","license":"MIT"},"icon":{"url":null,"source":"none"},"presence":{"stars":4,"forks":0,"downloadsWeek":1660,"license":"MIT","lastPushAt":"2026-09-19T15:16:08.000Z","score":41}}}},"grade_history":[],"reviews":[]}