What it does
A local static analysis tool that finds dead code, security issues, secrets and vulnerable dependencies in Python, TypeScript and Go. It also checks whether a change made by a coding agent is really finished, and the MCP server lets an assistant run these checks.
Use cases
- 01Find unused functions before a cleanup pull request
- 02Scan a repository for leaked secrets
- 03Check that an agent's branch did not skip or delete tests