Agent skill

MCP Server Tools

by samugit83 in samugit83/redamon

Adding, removing or changing a tool on RedAmon's INBOUND MCP server, where external agents connect in with a personal access token.

MITAuto-check passedSecurity

Install MCP Server Tools

skills CLI
$ npx skills add samugit83/redamon --skill mcp-server-tools -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install samugit83/redamon mcp-server-tools --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/samugit83/redamon.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/mcp-server-tools .claude/skills/mcp-server-tools && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
mcp-server-tools
GitHub stars
3k
Token cost
~1.8k tokens
SKILL.md length
747 words
Files
1
Skills in repo
15
Repo updated
First seen
Licence
MIT

At a glance

Adding, removing or changing a tool on RedAmon's INBOUND MCP server, where external agents connect in with a personal access token.

  • Tasks that involve MCP servers
  • SKILL.md covers When to Use, Critical Rules, Pattern: registering a tool and Commands, plus 1 more section
  • Calls npm, git and npx
  • Tasks that involve Penetration testing

What it does

MCP Server Tools is an agent skill from samugit83/redamon. Adding, removing or changing a tool on RedAmon's INBOUND MCP server, where external agents connect in with a personal access token. The wiki API reference is generated from the server's live tools/list and goes stale silently, and each tool's annotations and declared scopes are published to connected clients. Trigger: editing a registerTool call in webapp/src/lib/mcp/server.ts; editing tools.ts, writeTools.ts, scopeCopy.ts or apiReference.ts in webapp/src/lib/mcp/; changing the scope list, default scopes, expiry…

Its SKILL.md is about 1.8k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Security, covering MCP servers and Penetration testing. It works with Model Context Protocol. The repository describes itself as: Open-source, self-hosted AI penetration testing framework: maps your attack surface into a graph, autonomously exploits it from a Kali sandbox with human approval gates, and… The licence is MIT.

When your agent uses it

  • Tasks that involve MCP servers
  • Tasks that involve Penetration testing

Example prompts

  • “s live tools/list and goes stale silently, and each tool”
  • “/mcp-server-tools”

Requirements

  • Node.js

What it can do on your machine

Read from SKILL.md and the folder at commit d90c940. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • npm
    • git
    • npx

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use npm, git and npx, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

MCP Server Tools loads about 1.8k tokens when it runs. Until then it costs about 147 tokens; SKILL.md has 747 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~147
When it runs · the whole SKILL.md, loaded when a task matches
~1.8k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from samugit83/redamon at commit d90c940, republished under its MIT licence (© samugit83). 747 words, ~1,758 tokens.

Download SKILL.mdSave it as .claude/skills/mcp-server-tools/SKILL.md (or your agent's skills folder).
name
mcp-server-tools
description
Adding, removing or changing a tool on RedAmon's INBOUND MCP server, where external agents connect in with a personal access token. The wiki API reference is generated from the server's live tools/list and goes stale silently, and each tool's annotations and declared scopes are published to connected clients. Trigger: editing a registerTool call in webapp/src/lib/mcp/server.ts; editing tools.ts, writeTools.ts, scopeCopy.ts or apiReference.ts in webapp/src/lib/mcp/; changing the scope list, default scopes, expiry presets or token prefix in webapp/src/lib/mcpAuth.ts.
license
MIT
metadata.author
redamon
metadata.version
1.0.0
metadata.scope
webapp
metadata.auto_invoke
Adding, removing or changing a tool on the inbound MCP server, Changing MCP token scopes, their UI wording, or the MCP API reference generator

When to Use

  • Adding, removing or renaming an inbound MCP tool, or changing its description, arguments, annotations or scopes.
  • Changing a token scope, its label or blurb, the expiry presets or the token prefix.

For a tool RedAmon's OWN agent calls (outbound, mcp/servers/), use agentic-tool-integration. For making a recon setting writable over MCP, use project-settings-cascade. The tools that exist are listed by the server itself and by the generated reference page, never by this skill.


Critical Rules

  • ALWAYS run npm run docs:mcp in webapp/ after any change this skill's trigger names, and commit MCP-API-Reference.md inside the redamon.wiki repo. A main-repo commit moves only the submodule pointer. The page is rendered by apiReference.ts; a hand edit is overwritten by the next run.
  • NEVER set destructiveHint: false on a tool that overwrites or aborts existing state. In the MCP spec false means only additive updates, and clients use it to decide when to ask the user first. No test checks this.
  • ALWAYS add an EXAMPLE_EXTRA_ARGS entry in apiReference.ts when a tool's body requires an argument its JSON Schema marks optional. The generated example sends only schema-required arguments, and the test calls every example.
  • ALWAYS give a new tool an ONBOARDING_PLAYBOOK entry and a capability area in playbook.ts. The Agent Onboarding pack is generated from the live tools/list, and a coverage test in onboarding.test.ts fails the moment a tool ships without whenToUse + gotchas, or sits in zero or two capability areas. Also decide whether any profile in profiles.ts should leansOn it; that half is editorial and is not enforced.
  • A tool that reads NO backend must be added to BACKEND_FREE_TOOLS in apiReference.test.ts. That file proves a tool's declared scopes are enough by calling it and expecting the generic database failure, because every Prisma model is mocked away. A tool derived purely from constants (describe_recon_settings, list_recon_presets) SUCCEEDS instead, and would otherwise read as a failure. Do not relax the assertion; name the tool.
  • When a capability flips from "cannot" to "can", sweep the old claims. Add the old claim's phrasing to STALE_CLAIMS in toolNameDrift.test.ts, and make sure every file carrying agent-facing strings is in its AGENT_FACING list: the "nothing here can mute" lines outlived the feature in server.ts and profiles.ts, which were outside it.
  • Keep agent op names out of agent-facing files. TOOL_SHAPED only knows the verbs it lists, so a new tool's verb goes there; an op literal such as list_muted or mute_many in an agent-facing file then reads as an unknown tool. Wrap ops in triageGraph.ts helpers instead.
  • Watch the write bucket headroom. apiReference.test.ts calls every tool with ONE token inside one test, against the write limit (10/min by default). A new write tool that overflows it must raise that test's limit, not drop a call.
  • A required ARRAY argument needs an EXAMPLE_EXTRA_ARGS entry. placeholderFor has no array branch, so the generated example would name no item (mute_findings' findingIds).
  • A new scope gates writes; reads go under an existing read scope. Every ScopeAccess in scopeCopy.ts is read or write except kali:exec, the one read-write scope. A tool that only reads what a write needs (get_finding_evidence for submit_finding_review) belongs under the read scope, so a read-only token can see what an agent would act on.
  • Order the body's checks: requireScope first, then no McpToolError before the first backend read. The apiReference test proves declared scopes by calling each example and expecting the mocked database failure; a refusal on the example's placeholder arguments ahead of that read looks like a scope gap. A tool that STARTS something checks access (and its own caps) before it spends a rate token, so a refused start costs the caller nothing.
  • Free text a caller writes goes in UNAUDITED_ARGS in server.ts. auditDetail copies every other string argument into the audit row, which also prints as a console line; a quote is target text, and a reason is recorded, better, by the tool that owns it.
Show full SKILL.md (100 more words)Show less

Pattern: registering a tool

Copy the shape of an existing registerTool call in server.ts: annotations, _meta: scopesMeta({ required, conditional }) naming exactly the scopes the tool body enforces with requireScope, and inputSchema. A scope that applies only to a particular argument goes under conditional, and the arguments that trigger it need a CONDITIONAL_TRIGGERS entry in apiReference.test.ts.


Commands

bash
cd webapp
npm run docs:mcp                 # rewrites ../redamon.wiki/MCP-API-Reference.md
npx vitest run src/lib/mcp/      # scope, example-call, onboarding-coverage and stale-page checks

cd ../redamon.wiki
git add MCP-API-Reference.md
git commit -m "docs: regenerate MCP API reference"

Resources

  • MCP-Server.md, section "Regenerating the API reference" - what the page is built from, and the stale-page test
  • README.MCP.SERVER.md - security model, settings allowlist, deploy wiring; §3.1-3.2 cover Agent Profiles (never an authorization input) and how the onboarding pack is generated
  • Related skills: agentic-tool-integration, project-settings-cascade, redamon-testing

© samugit83, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/mcp-server-tools of samugit83/redamon.

Open the folder on GitHubat commit d90c940

Compare with similar skills

MCP Server Tools next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

MCP Server Tools compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
MCP Server Tools this skillsamugit83/redamon3k—~1.8kAutomated safety check: PassMIT
Burp Scansix2dez/burp-ai-agent1.5k—~6.4kAutomated safety check: WarnMIT
Burp MCP Vuln Checklangbyyi/CyberStrikeAI-SRC134—~3.1kAutomated safety check: PassApache-2.0
Hunt BurpEncod3d-Sec/TORCH3291 repos~3.1kAutomated safety check: PassMIT
Golang Pkg Go Devcontext-labs/whip1.1k2 repos~3kAutomated safety check: PassMIT
Forensifyalexgreensh/repo-forensics188—~2.5kAutomated safety check: NotesCustom licence

Similar skills

  • Burp Scan

    six2dez/burp-ai-agent

    Burp Suite scanning via MCP tools — passive traffic analysis, active payload testing, OOB verification, and vulnerability reporting using Burp's proxy, HTTP sender, Collaborator, and scanner APIs.

    1.5k GitHub stars~6.4k tokensUpdated 1 mo ago
    SecurityAuto-check: warnings
  • Burp MCP Vuln Check

    langbyyi/CyberStrikeAI-SRC

    Automate low-impact web vulnerability verification through Burp MCP.

    134 GitHub stars~3.1k tokensUpdated yesterday
    SecurityAuto-check passed
  • Hunt Burp

    Encod3d-Sec/TORCH

    Drive Burp Suite over its MCP server as an AI triage + attack layer - review proxy history for signals, replay via Repeater/send, OOB-gate blind bugs with Collaborator, fuzz via Intruder (RoE-safe)…

    329 GitHub starsUsed in 1 repo~3.1k tokens
    SecurityAuto-check passed
  • Golang Pkg Go Dev

    context-labs/whip

    Golang package/module docs via godig, a pkg.go.dev API client (CLI + MCP) — APIs, symbols, versions, importers, licenses, vulnerabilities.

    1.1k GitHub starsUsed in 2 repos~3k tokens
    SecurityAuto-check passed
  • Forensify

    alexgreensh/repo-forensics

    Cross-agent self-inspection of your AI-agent stack. An agent skill from alexgreensh/repo-forensics.

    188 GitHub stars~2.5k tokensUpdated 11 days ago
    SecurityAuto-check: notes
  • Review Security Report

    PrefectHQ/fastmcp

    Review FastMCP vulnerability reports before accepting, rejecting, patching, scoring, or publishing them.

    28k GitHub stars~1.2k tokensUpdated today
    SecurityAuto-check passed

More from samugit83/redamon

All 15 skills in this repo
  • Add Community Skill

    samugit83/redamon

    Adding a Community Agent Skill: a Markdown attack-workflow file that users import from the catalog, which then competes in the Intent Router and is injected into the agent's system prompt.

    3k GitHub stars~775 tokensUpdated yesterday
    Auto-check passed
  • Add Partial Recon

    samugit83/redamon

    Adding partial-recon support for a tool: running a single pipeline phase on demand from the workflow graph, reading its inputs from the existing Neo4j graph and merging results back.

    3k GitHub stars~1.1k tokensUpdated yesterday
    Auto-check passed
  • Agentic Tool Integration

    samugit83/redamon

    Wiring a new tool the AI agent can call (not the recon pipeline): the tool registry, the phase map, the hardcoded dispatch chokepoint, and the duplicated execution paths that make a tool work in…

    3k GitHub stars~1.3k tokensUpdated yesterday
    Auto-check passed
  • Builtin Agent Skill

    samugit83/redamon

    Adding a built-in Agent Skill (an attack technique like ssrf, xxe, rce) that ships hardcoded in RedAmon: classified by the Intent Router, injected into the agent prompt, toggled per project, badged…

    3k GitHub stars~1.4k tokensUpdated yesterday
    Auto-check passed
  • Graph DB Writes

    samugit83/redamon

    Writing to the Neo4j attack-surface graph in RedAmon: the tenant-isolation MERGE key every entity node must carry, where graph methods live (mixins, not the client), and the schema places that must…

    3k GitHub stars~2.2k tokensUpdated yesterday
    Auto-check passed
  • LLM Provider Integration

    samugit83/redamon

    Adding an LLM provider to RedAmon: the credential boundary (keys must never reach scan containers), prefix-routed model ids, and the provider registry.

    3k GitHub stars~1.1k tokensUpdated yesterday
    Auto-check passed

Questions about MCP Server Tools

What does MCP Server Tools do?

Adding, removing or changing a tool on RedAmon's INBOUND MCP server, where external agents connect in with a personal access token. MCP Server Tools is an agent skill from samugit83/redamon. Adding, removing or changing a tool on RedAmon's INBOUND MCP server, where external agents connect in with a personal access token.

When should I use MCP Server Tools?

MCP Server Tools fits situations like: tasks that involve MCP servers; tasks that involve Penetration testing.

How do I install MCP Server Tools in Claude Code?

Run `npx skills add samugit83/redamon --skill mcp-server-tools -a claude-code`. Or copy the skill folder (skills/mcp-server-tools in samugit83/redamon) into .claude/skills/mcp-server-tools in your project. Claude Code loads it when a task matches its description.

How do I install MCP Server Tools in Codex?

Run `npx skills add samugit83/redamon --skill mcp-server-tools -a codex`. Or copy the skill folder (skills/mcp-server-tools in samugit83/redamon) into .agents/skills/mcp-server-tools in your project. Codex loads it when a task matches its description.

Can I use MCP Server Tools in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add samugit83/redamon --skill mcp-server-tools -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/mcp-server-tools, .gemini/skills/mcp-server-tools, .github/skills/mcp-server-tools and .opencode/skills/mcp-server-tools in your project.

What does MCP Server Tools need to run?

Going by SKILL.md and its folder, MCP Server Tools needs the command-line tools its instructions call (npm, git and npx). Our summary lists: Node.js.

Does MCP Server Tools access the network?

SKILL.md contains no URLs. Its commands use npm, git and npx, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is MCP Server Tools safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does MCP Server Tools use?

MCP Server Tools is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does MCP Server Tools use?

About 1.8k tokens (SKILL.md is roughly 7k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to MCP Server Tools?

Skills that share tags, products or a category with MCP Server Tools: Burp Scan (six2dez/burp-ai-agent, 1.5k stars), Burp MCP Vuln Check (langbyyi/CyberStrikeAI-SRC, 134 stars), Hunt Burp (Encod3d-Sec/TORCH, 329 stars) and Golang Pkg Go Dev (context-labs/whip, 1.1k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains MCP Server Tools?

samugit83 (a GitHub user) maintains it in samugit83/redamon, which has 2,961 GitHub stars. The repository holds 15 skills in this directory. The repository was last updated on October 7, 2026.

Source: samugit83/redamon on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.