MCPLow riskUnclaimed

dvalincode

Deterministic security scanning, no model or API key, plus offline-verifiable proof a fix worked.

arthurpanhkuarthurpanhku/dvalincode★ 120Updated Sep 7, 2026

server.json

{
  "$schema": "https://static.modelcontextprotocol.io/schemas/2025-09-29/server.schema.json",
  "name": "io.github.arthurpanhku/dvalincode",
  "description": "Deterministic security scanning, no model or API key, plus offline-verifiable proof a fix worked.",
  "repository": {
    "url": "https://github.com/arthurpanhku/dvalincode",
    "source": "github"
  },
  "version": "0.19.0",
  "packages": [
    {
      "registryType": "npm",
      "identifier": "dvalincode",
      "version": "0.19.0",
      "transport": {
        "type": "stdio"
      },
      "runtimeArguments": [
        {
          "isRequired": true,
          "value": "mcp-serve",
          "type": "positional"
        },
        {
          "description": "Workspace root the server is allowed to touch. Repeatable. Defaults to the working directory.",
          "type": "named",
          "name": "--workspace",
          "isRepeated": true
        },
        {
          "description": "Permission ceiling for dvalin_run_task: plan, auto, or bypass. Defaults to auto.",
          "type": "named",
          "name": "--max-permission-mode"
        }
      ]
    }
  ]
}

Permissions

DeclaredDetected
Runs code—node
Installs—npm:dvalincode@0.19.0
Runs install scripts—None
NetworkNoneNone
Needs credentialsNoneNone
Outside the workspace—None
Agent tools—None

Checks

Low risk · Nothing worth a warning was found.

Not reviewed by a person · Checked by rules; the model review is not switched on yet.

Versions

  1. #10.19.0latestOct 7, 2026