Vibefix MCP server
Bug bounty platform for vibe coders. Post bugs, find fixes, run diagnostics.
Usage numbers are collected on the next scan
Reviews
Write oneNobody has reviewed Vibefix yet.
If you have run it, two minutes of your experience saves the next person an afternoon.
Vibefix tools (12, 3 write)
write = sends, deletes, buys or postsRead from the package source without running it. The installed server may list more.
vibefix_accept_submissionAccept a winning submission for your bounty. This marks the job complete, awards XP and bounty payout to the developer, and rejects all other pending submissions. Requires VIBEFIX_API_KEY on a customer account.
vibefix_apply_to_bountyApply to a private VibeFix bounty. The owner will review your application and grant access if approved. Only needed for private bounties — public ones can be submitted to directly. Requires VIBEFIX_API_KEY.
vibefix_diagnosewrite actionRun a free diagnostic scan on any public URL. Returns performance, accessibility, SEO, and best practices scores plus a list of issues found — each with a ready-made bounty pre-fill so the user can post a fix request in one click. No API key required.
vibefix_get_bountyGet full details of a specific VibeFix bug bounty by ID, including description, expected vs actual behavior, steps to reproduce, and tech stack.
vibefix_list_bountiesBrowse open bug bounties on VibeFix. Filter by category, platform, or difficulty.
vibefix_list_submissionsList all submissions received for one of your bounties, with developer info and fix descriptions. Use vibefix_my_bounties to find bounty IDs. Requires VIBEFIX_API_KEY on a customer account.
vibefix_my_applicationsList your applications to private VibeFix bounties, with approval status and job details. Requires VIBEFIX_API_KEY on a developer account.
vibefix_my_bountiesList all bounties you have posted on VibeFix as a customer, with their status and submission counts. Requires VIBEFIX_API_KEY on a customer account.
vibefix_my_profileGet your VibeFix developer profile: XP, level, wallet balance, jobs completed, and approval status. Requires VIBEFIX_API_KEY.
vibefix_my_submissionsList all your submitted solutions on VibeFix, with their acceptance status and linked job details. Requires VIBEFIX_API_KEY.
vibefix_post_bountywrite actionPost a new bug bounty on VibeFix. Free bounties go live immediately. Paid bounties return a checkout URL to complete payment in the browser. Requires VIBEFIX_API_KEY on a customer account.
vibefix_submit_solutionwrite actionSubmit your fix for a VibeFix bounty. Include a clear description of what you changed and a link to the repo/branch with your fix. Requires VIBEFIX_API_KEY.
Public scan report
scanner v0.1.10 · 2026-09-27 · same rubric, same numbers if you re-run it
- Code scan2 source files scanned25/25
- –Live reliabilityno gateway calls yet and no remote to proben/a
- –Tool poisoningtools not inspected (local package is not executed); not countedn/a
- Auth qualitystatic API keys via environment variables6/15
- Maintenancerepository not readable: repo not found3/15
- Maintainer identityno repository or website to verify2/10
Install Vibefix in Claude Code, Cursor or VS Code
Runs npx -y @vibefix/mcp on your machine. Read the scan report first; the gateway never runs local packages.
claude mcp add vibefix -- npx -y @vibefix/mcp
Vibefix: common questions
- Is Vibefix MCP server safe?
- With care: it is graded C, so read the findings first (55/100). Read the Vibefix safety report
- How do I install Vibefix?
- It runs on your machine. Copy the Claude Code, Cursor, VS Code or Claude Desktop config from the install section.
- Does Vibefix need an API key?
- Yes. The registry entry asks for
VIBEFIX_API_KEY. - Is Vibefix maintained?
- The latest release is v0.3.2.