Oathe MCP Server

1

Add it to Claude Code

Run this in a terminal.

Run in terminal
claude mcp add oathe -- npx -y oathe-mcp
README.md

MCP server for Oathe AI security audits.

oathe-mcp

MCP server for Oathe AI security audits. Check trust scores before installing MCP servers, plugins, or AI agent skills.

Quick Start

npx oathe-mcp

No API key required. No configuration needed.

MCP Client Configuration

Claude Desktop

Add to your claude_desktop_config.json:

{
  "mcpServers": {
    "oathe": {
      "command": "npx",
      "args": ["-y", "oathe-mcp"]
    }
  }
}

Claude Code

claude mcp add oathe -- npx -y oathe-mcp

Tools

submit_audit

Submit a GitHub or ClawHub URL for a security audit.

{ "skill_url": "https://github.com/owner/repo" }

Returns audit_id to track progress. Rate limited: one submission per 60 seconds per IP.

check_audit_status

Check the status of a submitted audit.

{ "audit_id": "uuid-from-submit" }

Poll every 5 seconds. Terminal statuses: complete, failed.

get_audit_report

Get the full security audit report for a repository.

{ "owner": "anthropics", "repo": "claude-code" }

Returns trust score, verdict, findings, category scores, and recommendation.

get_skill_summary

Get a lightweight summary (score + verdict) without full findings.

{ "owner": "anthropics", "repo": "claude-code" }

Returns score, verdict, recommendation, and finding counts.

search_audits

Search completed audits by verdict or minimum trust score.

{ "verdict": "SAFE", "min_score": 80, "sort": "trust_score", "order": "DESC" }

Returns up to 100 results.

Configuration

Environment Variable Default Description
OATHE_API_BASE https://audit-engine.oathe.ai Override the API base URL

Setting an invalid OATHE_API_BASE will produce a clear error at startup.

License

MIT

Tools (5)

submit_auditSubmit a GitHub or ClawHub URL for a security audit.
check_audit_statusCheck the status of a submitted audit.
get_audit_reportGet the full security audit report for a repository.
get_skill_summaryGet a lightweight summary (score + verdict) without full findings.
search_auditsSearch completed audits by verdict or minimum trust score.

Environment Variables

OATHE_API_BASEOverride the API base URL

Configuration

claude_desktop_config.json
{"mcpServers": {"oathe": {"command": "npx", "args": ["-y", "oathe-mcp"]}}}

Try it

Check the security trust score for the repository at https://github.com/anthropics/claude-code.
Submit the repository https://github.com/owner/repo for a new security audit.
What is the current status of my audit with ID uuid-from-submit?
Find all AI agent skills that have a trust score of at least 80.
Get a summary of the security findings for the repository anthropics/claude-code.

Frequently Asked Questions

What are the key features of Oathe?

Runtime behavioral analysis for AI systems. Security scanning for MCP servers and AI agent skills. Trust score generation and verdict reporting. Audit progress tracking via unique IDs. Searchable database of completed security audits.

What can I use Oathe for?

Verifying the safety of a new MCP server before installation. Auditing third-party AI agent skills for potential security risks. Monitoring the security status of open-source AI tools. Filtering AI tools based on minimum trust score requirements.

How do I install Oathe?

Install Oathe by running: npx oathe-mcp

What MCP clients work with Oathe?

Oathe works with any MCP-compatible client including Claude Desktop, Claude Code, Cursor, and other editors with MCP support.

Turn this server into reusable context

Keep Oathe docs, env vars, and workflow notes in Conare so your agent carries them across sessions.

Need the old visual installer? Open Conare IDE.
Open Conare