ellmos CodeCommander

Developer MCP server: code analysis, JSON repair, imports, diffs, regex, format conversion.

OtherTypeScriptv1.3.16

ellmos CodeCommander MCP Server

🇩🇪 Deutsche Version

Part of the ellmos-ai family.

License: MIT npm version CI Tests Tests Node.js Platform Privacy Security Security: RunAsInvoker Security SLA Third-Party Audited Marketing Log Attribution: NOTICE Verified: 2026-09-26 Ecosystem Umbrella LLM Indexing

[!NOTE] For AI Assistants & LLMs: Machine-readable indexing documentation for this repository is available at llms.txt. The server exposes 23 specialized tools under the cc_ prefix.

A developer-focused Model Context Protocol (MCP) server that gives AI assistants code analysis, structural Python editing, JSON repair, encoding fix, import organization, format conversion, file diff, and regex testing capabilities.

23 tools optimized for developers - the coding companion to FileCommander.

Discoverability: Published on npm as ellmos-codecommander-mcp, visible on Glama, and prepared for the official MCP Registry with server.json under io.github.ellmos-ai/ellmos-codecommander-mcp. Registry and directory manifests server.json, glama.json, smithery.yaml, and llms.txt are maintained in full parity.


Quick Navigation

  1. Overview & Highlights
  2. Target Personas & Discoverability
  3. Comparative Matrix vs. Alternatives
  4. Architecture & System Overview
  5. Safe Structural Edit Lifecycle
  6. Governance & Runtime Invariants
  7. Developer Tool Suite (23 Tools)
  8. Shared Tools with FileCommander
  9. Installation & Quickstart
  10. Configuration & MCP Client Setup
  11. Multi-Language Support (i18n)
  12. Development & Quality Assurance
  13. Sibling Ecosystem & Partner Matrix
  14. Third-Party Licenses & Transparency
  15. Security Policy & Response SLA
  16. Changelog & Version History
  17. License & Legal Attribution
  18. Statutory Notice, Liability Limitation & SLA (§ 521 BGB)

1. Overview & Highlights

While FileCommander handles filesystem operations and system processes, CodeCommander focuses specifically on code intelligence and developer precision:

  • Python, JavaScript & TypeScript Analysis — Extension-dispatched classes, methods, functions, complexity metrics, and import analysis; JS/TS analysis is regex-based and read-only.
  • BACH-derived Python Helpers — Runtime import diagnostics, structural edits, indentation checks, and template-based code generation.
  • Explicit Language Gates — Python-only path tools reject non-.py files explicitly instead of producing Python-shaped false findings.
  • JSON Repair & Validation — Automatically repair broken JSON (trailing commas, single quotes, BOM, comments) with precise error locations.
  • PEP 8 Import Organization — Sort and deduplicate Python imports per PEP 8 guidelines.
  • Encoding & Mojibake Repair — Fix Mojibake and double-encoded UTF-8 (27+ patterns) and broken German characters (70+ umlaut patterns).
  • Universal Format Conversion — Convert between JSON, CSV, INI, YAML, TOML, XML, and TOON formats losslessly.
  • Unified File Diff — Compare two files with LCS unified diff output and configurable context lines.
  • Regex Testing Workbench — Test regular expressions with match details, capturing groups, and replace previews.
  • Markdown Export — Convert Markdown to standalone HTML or PDF with syntax-styled code blocks, tables, and blockquotes.
  • Cross-Platform Native — Full support on Windows, macOS, and Linux.

2. Target Personas & Discoverability

CodeCommander MCP is engineered to address key bottlenecks in modern autonomous AI coding, local multi-agent swarms, and safety-compliant developer tooling:

Target Audience & Stakeholder Personas

  • [PERSONA-01] ([PERSONA-1]) Autonomous AI Coding Agents & LLM Pair-Programmers

    • Profile: Agents such as Claude Code, Antigravity, Codex, Cursor, and Windsurf performing automated code refactoring, test repair, and feature development.
    • Pain Point: Standard LLM code outputs frequently suffer from hallucinated imports, broken indentation in complex Python control flows, invalid JSON configs, or syntax corruption during naive chunk edits.
    • Solution: Native AST extraction (cc_extract_classes, cc_analyze_methods), preview-safe structural editing with unified diffs (cc_python_structural_edit), automatic indentation checking (cc_check_indentation), and deterministic JSON repair (cc_fix_json).
  • [PERSONA-02] ([PERSONA-2]) Full-Stack & Python/TypeScript Software Engineers

    • Profile: Developers maintaining polyglot projects, CLI utilities, and data pipelines requiring cross-language AST analysis and rapid configuration format transitions.
    • Pain Point: Tedious manual format conversions (JSON ↔ YAML ↔ TOML ↔ TOON ↔ XML), broken German umlauts or Mojibake from legacy encodings, and circular runtime imports.
    • Solution: Universal format converter (cc_convert_format), non-destructive encoding and umlaut repair (cc_fix_encoding, cc_fix_umlauts), isolated runtime import diagnostics (cc_runtime_import_diagnose), and interactive regex tester (cc_regex_test).
  • [PERSONA-03] ([PERSONA-3]) Enterprise AI Safety, SecOps & Code Governance Officers

    • Profile: Security auditors, compliance engineers, and enterprise architects evaluating MCP toolchains for developer workstations and CI/CD runners.
    • Pain Point: Risk of confidential code leakage via cloud telemetry, unauthorized process elevation, or destructive in-place file overwrites by AI assistants.
    • Solution: 100% Zero-Egress local stdio transport (INV-LOCAL-01), unprivileged user-space execution (INV-SEC-02), mandatory timestamped .bak backups before mutations (INV-BAK-04), dry-run diff preview safety (INV-PREV-03), and isolated subprocess timeouts (INV-ISOL-05).
  • [PERSONA-04] ([PERSONA-4]) Open-Source Ecosystem Architects & MCP Tool Developers

    • Profile: Maintainers building, publishing, and indexing MCP servers across Glama, Smithery, npm, and GitHub.
    • Pain Point: Fragmented directory manifests, missing third-party license disclosures, and lack of machine-readable indexing context for AI agents.
    • Solution: 100% manifest parity across package.json, server.json, glama.json, smithery.yaml, and llms.txt, verified by automated contract tests and a complete open-source license audit (THIRD_PARTY_LICENSES.md).

High-Intent Search Queries (SEO & Discoverability)

  • mcp code analysis server
  • model context protocol python ast tools
  • mcp server codecommander
  • python structural edit mcp
  • claude code developer mcp server
  • mcp json repair and encoding fix
  • local-first mcp tools for coding
  • mcp python runtime import diagnose
  • format converter mcp json yaml toml toon
  • offline code intelligence mcp server

3. Comparative Matrix vs. Alternatives

The following matrix compares CodeCommander MCP against alternative developer tooling approaches across 10 critical operational dimensions:

Dimension / CapabilityGeneric File MCPRaw Shell / Ad-Hoc ScriptsHeavyweight Cloud LLMOpsTraditional IDE Pluginsellmos CodeCommander MCP
1. AST Code IntelligenceNone (raw text reads)Requires custom python scriptsCloud parser requiredBuilt-in (GUI only)Native AST & regex JS/TS (cc_analyze_code)
2. Safe Structural Edit PreviewNone (blind overwrite)High risk (sed/awk)Cloud gateway dependentInteractive dialogPreview-safe diffs (mode: "preview")
3. Mandatory Pre-Mutation BackupsNoneManual scriptingNoneLocal history (opaque)Automatic .bak creation (INV-BAK-04)
4. Runtime Import DiagnosticsNoneUnsafe direct executionNonePartial / static onlyIsolated subprocess + timeout (INV-ISOL-05)
5. Encoding & Mojibake RecoveryNoneFragile iconv callsNoneBasic encoding switch27+ Mojibake, 70+ Umlauts (cc_fix_encoding)
6. Universal Format ConversionNoneMultiple disparate CLI toolsSaaS conversion APIMulti-plugin setupLossless 7 formats (JSON/YAML/TOML/XML/TOON)
7. Diff Engine & Regex WorkbenchNoneBasic diff/grepNoneGUI panel onlyLCS Unified Diff & Regex with groups/replace
8. Local-First & Zero-EgressHost-dependentLocalCloud egress / telemetryOften connects to cloud100% Offline Stdio JSON-RPC (INV-LOCAL-01)
9. Multi-Language (i18n) SupportEnglish onlyNoneEnglish onlyLanguage packsDynamic 6 languages (cc_set_language)
10. Registry & Manifest ParityMinimalNoneProprietaryMarketplace specificnpm, Glama, Smithery, MCP Registry, llms.txt

4. Architecture & System Overview

graph TD
    Client["MCP Clients<br/>(Claude Desktop / Claude Code / Cursor / Windsurf)"]
    Server["ellmos CodeCommander MCP Server<br/>(stdio transport • Node.js)"]

    subgraph Tools["Developer Tool Suites (23 Tools)"]
        subgraph CodeIntel["Code & Python Intelligence"]
            C1["cc_analyze_code"]
            C2["cc_analyze_methods"]
            C3["cc_extract_classes"]
            C4["cc_check_indentation"]
            C5["cc_generate_python_code"]
            C6["cc_python_structural_edit"]
        end

        subgraph Imports["Import Management"]
            I1["cc_organize_imports"]
            I2["cc_diagnose_imports"]
            I3["cc_runtime_import_diagnose"]
        end

        subgraph Repair["Text, JSON & Encoding Repair"]
            R1["cc_fix_json"]
            R2["cc_validate_json"]
            R3["cc_fix_encoding"]
            R4["cc_cleanup_file"]
            R5["cc_fix_umlauts"]
        end

        subgraph Utility["Utilities & Conversion"]
            U1["cc_convert_format (JSON/CSV/YAML/TOML/XML/TOON)"]
            U2["cc_diff_files (Unified Diff)"]
            U3["cc_regex_test (Regex Tester)"]
            U4["cc_scan_emoji"]
            U5["cc_generate_licenses"]
        end

        subgraph Export["Export & i18n"]
            E1["cc_md_to_html"]
            E2["cc_md_to_pdf"]
            E3["cc_set_language"]
            E4["cc_get_language"]
        end
    end

    Client -->|Stdio JSON-RPC| Server
    Server --> CodeIntel
    Server --> Imports
    Server --> Repair
    Server --> Utility
    Server --> Export

5. Safe Structural Edit Lifecycle

sequenceDiagram
    autonumber
    actor Developer as Developer / LLM Client
    participant Stdio as CodeCommander Server (stdio)
    participant Core as AST & Code Intelligence Core
    participant Disk as Local Filesystem

    Developer->>Stdio: cc_python_structural_edit (mode: "preview" / "apply")
    Stdio->>Core: Parse Python AST & Validate Syntax
    alt Validation Failed
        Core-->>Stdio: Syntax / Parsing Diagnostics
        Stdio-->>Developer: Error Diagnostics & Line References
    else Validation Passed
        Core->>Disk: Read Original File
        Core->>Core: Compute Unified Structural Diff
        alt Mode == "preview"
            Core-->>Stdio: Return Diff Preview (Zero File Mutations)
            Stdio-->>Developer: Structural Diff Preview
        else Mode == "apply"
            Core->>Disk: Create .bak Backup File
            Core->>Disk: Write Modified AST Code In-Place
            Core-->>Stdio: Confirmation with Applied Diff & Backup Path
            Stdio-->>Developer: Success Payload
        end
    end

6. Governance & Runtime Invariants

ellmos-codecommander-mcp guarantees 10 core architectural and runtime invariants across all platforms:

Invariant IDClassificationArchitectural Guarantee & Verification Mechanism
INV-LOCAL-01Zero-Egress PrivacyPure local stdio JSON-RPC transport; zero network telemetry, cloud beacons, or remote egress.
INV-SEC-02Unprivileged SecurityStandard user-space execution (RunAsInvoker) requiring zero root or administrative elevation.
INV-PREV-03Preview SafetyStructural edits default to non-mutating preview mode (mode: "preview") with unified diff generation.
INV-BAK-04Automatic BackupsFile modifications automatically generate timestamped .bak files before in-place disk writes.
INV-ISOL-05Subprocess IsolationPython runtime import diagnosis executes in isolated, timeout-bounded child processes.
INV-GATE-06Explicit Language GatesPython-specific path tools reject non-.py files explicitly; JS/TS analysis is read-only and regex-based.
INV-ENC-07Non-Destructive EncodingRepaired text restores 27+ Mojibake and 70+ German umlaut patterns without loss or binary corruption.
INV-FMT-08Format Interchange ParityLossless format conversions across JSON, CSV, INI, YAML, TOML, XML, and TOON with schema preservation.
INV-I18N-09Runtime Multi-LanguageDynamic runtime language switching across 6 languages (EN, DE, ES, ZH, JA, RU) via cc_set_language.
INV-SLA-1048h Security Response SLAVerified across Ubuntu, Windows, macOS on Node 20, 22, 24 with public 48h response / 5-day triage commitment.

7. Developer Tool Suite (23 Tools)

Code Analysis (3 tools)

ToolDescription
cc_analyze_codeRead-only Python or regex-based JavaScript/TypeScript analysis: classes, functions, imports, LOC, complexity
cc_analyze_methodsRead-only Python or regex-based JavaScript/TypeScript method analysis; Python retains its BACH guardrails
cc_extract_classesExtract Python classes/functions as separate text blocks, optionally including pycutter-style inline content

Import Management (3 tools)

ToolDescription
cc_organize_importsSort & deduplicate Python imports per PEP 8
cc_diagnose_importsRead-only Python or regex-based JavaScript/TypeScript import diagnostics
cc_runtime_import_diagnoseRun isolated Python runtime imports with timeouts, __init__.py analysis, and circular-import hints

JSON Tools (2 tools)

ToolDescription
cc_fix_jsonRepair broken JSON (BOM, trailing commas, comments, single quotes)
cc_validate_jsonValidate JSON with detailed error position and context

Encoding & Text (3 tools)

ToolDescription
cc_fix_encodingFix Mojibake / double-encoded UTF-8 (27+ patterns)
cc_cleanup_fileRemove BOM, NUL bytes, trailing whitespace, normalize line endings
cc_fix_umlautsRepair broken German umlauts (70+ patterns, HTML entities, escapes)

Scanning (1 tool)

ToolDescription
cc_scan_emojiScan files for emojis with codepoint info

Format & Documentation (2 tools)

ToolDescription
cc_convert_formatConvert between JSON, CSV, INI, YAML, TOML, XML, and TOON formats
cc_generate_licensesGenerate third-party license file (npm/pip)

Developer Utilities (2 tools)

ToolDescription
cc_diff_filesCompare two files with unified diff output (configurable context lines)
cc_regex_testTest regex patterns against text/files with match details, groups, and replace preview

Python Assistance (3 tools)

ToolDescription
cc_check_indentationDetect missing colons, unindented return/yield statements, and mixed tab/space indentation
cc_generate_python_codeGenerate Python functions, classes, dataclasses, CLI stubs, tests, exceptions, and modules from templates
cc_python_structural_editInspect and apply structural Python edits with preview, test-file, syntax-check and backup modes

Export (2 tools)

ToolDescription
cc_md_to_htmlMarkdown to standalone HTML with CSS styling (headers, code blocks, tables, nested lists, blockquotes, images, checkboxes)
cc_md_to_pdfMarkdown to PDF via headless browser (Edge/Chrome). Falls back to HTML if no browser is available

Runtime Language Management (2 tools)

ToolDescription
cc_set_languageSwitch active runtime language (en, de, es, zh, ja, ru)
cc_get_languageQuery currently active language and supported locale codes

Total: 23 developer tools available under the cc_ prefix.


8. Shared Tools with FileCommander

7 tools exist in both FileCommander and CodeCommander for convenience:

FileCommanderCodeCommanderFunction
fc_fix_jsoncc_fix_jsonJSON repair
fc_validate_jsoncc_validate_jsonJSON validation
fc_fix_encodingcc_fix_encodingEncoding repair
fc_cleanup_filecc_cleanup_fileFile cleanup
fc_convert_formatcc_convert_formatFormat conversion (JSON/CSV/INI/YAML/TOML/XML/TOON)
fc_md_to_htmlcc_md_to_htmlMarkdown to HTML export
fc_md_to_pdfcc_md_to_pdfMarkdown to PDF export

All tools in CodeCommander use the cc_ prefix to guarantee seamless coexistence with FileCommander's fc_ namespace.


9. Installation & Quickstart

Prerequisites

  • Node.js 20 or higher
  • npm 9 or higher

Option 1: Install from NPM (Recommended)

npm install -g ellmos-codecommander-mcp

Option 2: Install from Source

git clone https://github.com/ellmos-ai/ellmos-codecommander-mcp.git
cd ellmos-codecommander-mcp
npm install
npm run build

10. Configuration & MCP Client Setup

Claude Desktop

Add to your claude_desktop_config.json:

  • Windows: %APPDATA%\Claude\claude_desktop_config.json
  • macOS: ~/Library/Application Support/Claude/claude_desktop_config.json
Global NPM Install:
{
  "mcpServers": {
    "codecommander": {
      "command": "ellmos-codecommander"
    }
  }
}
From Source Build:
{
  "mcpServers": {
    "codecommander": {
      "command": "node",
      "args": ["/absolute/path/to/ellmos-codecommander-mcp/dist/index.js"]
    }
  }
}

Coexistence with FileCommander

FileCommander and CodeCommander are designed to run concurrently:

{
  "mcpServers": {
    "filecommander": {
      "command": "ellmos-filecommander"
    },
    "codecommander": {
      "command": "ellmos-codecommander"
    }
  }
}

11. Multi-Language Support (i18n)

CodeCommander natively supports 6 languages for all tool descriptions, output notices, and diagnostic messages:

  • en — English (Default)
  • de — Deutsch (German)
  • es — Español (Spanish)
  • zh — 简体中文 (Chinese Simplified)
  • ja — 日本語 (Japanese)
  • ru — Русский (Russian)

Use cc_get_language to check the current language or cc_set_language to dynamically change it during an active MCP session.


12. Development & Quality Assurance

npm install
npm run dev               # TypeScript watch mode
npm run build             # Compile TypeScript to dist/
npm start                 # Run built server via stdio
npm test                  # Run Vitest unit suite (201 tests)
npm run test:integration  # Real MCP stdio test suite (52 assertions, build first)
npm run test:i18n         # Translation parity test suite (43 assertions)
npm run test:all          # Run full QA pipeline (build + vitest + integration + i18n)

The test gates are deliberately separated and automated in CI across Ubuntu, macOS, and Windows on Node.js 20, 22, and 24 (totaling 296 automated assertions, 100% green).


13. Sibling Ecosystem & Partner Matrix

Part of the ellmos-ai and open-bricks family of local-first tools:

MCP Server Family

ServerToolsFocusnpm
FileCommander50Filesystem, process management, interactive sessions, cloud-lock-safe operationsellmos-filecommander-mcp
CodeCommander23Code analysis, AST edits, JSON repair, diff, regexellmos-codecommander-mcp
Clatcher12File repair, format conversion, batch operationsellmos-clatcher-mcp
n8n Manager19n8n workflow management via AI assistantsn8n-manager-mcp
ControlCenter34MCP stack discovery, profile management, control planeellmos-controlcenter-mcp
Homebase51Local-first LLM memory, knowledge, state, routing, swarm orchestrationellmos-homebase-mcp (alpha)
ServerCommander8Server operations: health checks, log analysis, deploy dry-runs, mail diagnosticsellmos-servercommander-mcp (alpha)
Blender Use4Headless Blender asset QA and FBX reimport verificationellmos-blender-use-mcp (alpha)
Open Compute16Model-agnostic computer use: capture, safety-gated actions, Windows UIAopen-compute-mcp (alpha)

Sibling Developer, File & Document Tools

EcosystemTool / ProjectFocus & Capabilities
ellmos-aisqlite-transit-syncOffline SQLite change distribution with HMAC verification
ellmos-aipolicy-registryCryptographically signed delegation policies for AI agents
ellmos-aiclutchProvider-neutral LLM orchestration with auto-routing and budget tracking
ellmos-aiBACHLocal-first text-based OS for LLM agents — 113+ handlers, 550+ tools
dev-bricksDevCenterPySide6 Developer Desktop Suite & offline secret vault
dev-bricksCodeBoxFast desktop code snippet manager & local AST indexing
dev-bricksMethodenAnalyserMethod flow & complexity diagnostic engine
doc-bricksPDFtoPDFocrDesktop OCR pipeline for searchable PDFs with Tesseract
doc-bricksDokuReaderMulti-format document workspace & offline PDF export
file-bricksProFilerMulti-pane file management & bulk batch operations
open-bricksopen-bricksUmbrella organization for AI-native desktop applications

14. Third-Party Licenses & Transparency

This project strictly adheres to open-source transparency:

  • All runtime and development dependencies are audited in THIRD_PARTY_LICENSES.md.
  • The current production dependency audit (npm audit --omit=dev --json, checked 2026-09-20) reports 5 vulnerable package nodes (3 high, 2 moderate); remediation is tracked in TASKPLAN #2198.
  • Distributed exclusively under permissive open-source licenses (MIT, BSD-2-Clause, BSD-3-Clause, Apache-2.0).
  • Comprehensive discoverability, personas, and marketing metrics are documented in MARKETING-LOG.txt.
  • Zero proprietary tracking, zero telemetric beacons, and zero viral copyleft dependencies.

15. Security Policy & Response SLA

Please review SECURITY.md for full vulnerability disclosure procedures.

  • Zero-Egress Guarantee: Completely local execution over stdio.
  • Preview & Backup Safety: Destructive operations create .bak backups and support non-mutating preview.
  • Unprivileged User Mode: Runs under standard unprivileged user permissions (RunAsInvoker).
  • Dedicated Response Channels: Contact security@ellmos.ai and support@lukasgeiger.com with a guaranteed 48-hour initial response SLA and 5-day triage commitment.

16. Changelog & Version History

See CHANGELOG.md for release notes and version history.


17. License & Legal Attribution

This project is licensed under the MIT License — Copyright © 2026 Lukas Geiger (ellmos-ai).

See NOTICE for open-bricks umbrella attribution and THIRD_PARTY_LICENSES.md for the Level 1 SBOM invariant inventory.


18. Statutory Notice, Liability Limitation & SLA (§ 521 BGB)

Dieses Projekt ist eine unentgeltliche Open-Source-Schenkung im Sinne der §§ 516 ff. BGB (Gefälligkeitsrecht). Die Haftung des Urhebers und der Mitwirkenden ist gemäß § 521 BGB auf Vorsatz und grobe Fahrlässigkeit beschränkt. Ergänzend gilt der Haftungsausschluss der MIT-Lizenz.

Nutzung auf eigenes Risiko. Keine Wartungszusage, keine Verfügbarkeitsgarantie, keine Gewähr für Fehlerfreiheit oder Eignung für einen bestimmten Zweck.

Sicherheitsrelevante Vorfälle und Schwachstellen werden über das verbindliche 48-Stunden-SLA unter security@open-bricks.org, security@ellmos.ai und support@lukasgeiger.com entgegengenommen und innerhalb von 5 Werktagen triagiert.

This project is an unpaid open-source donation under German law (§§ 516 et seq. BGB). Liability is strictly limited to intent and gross negligence (§ 521 German Civil Code). The MIT license disclaimer applies complementarily. Use at your own risk. No warranty, no maintenance guarantee, no fitness-for-purpose assumed.

Security incidents and vulnerabilities are handled under a binding 48-hour response SLA via security@open-bricks.org, security@ellmos.ai and support@lukasgeiger.com with formal triage within 5 business days.

Installation

Source-derived launch command. Check the maintainer’s required arguments and credentials before running:

bash
npx -y ellmos-codecommander-mcp

Set up in your AI client

Merge this template into ~/Library/Application Support/Claude/claude_desktop_config.json. Keep existing servers. Add any arguments, credentials, and permissions required by the maintainer; this template has not been install-tested.

json
{
  "mcpServers": {
    "io-github-ellmos-ai-ellmos-codecommander-mcp": {
      "command": "npx",
      "args": [
        "-y",
        "ellmos-codecommander-mcp"
      ]
    }
  }
}

Restart Claude Desktop completely for changes to take effect. Confirm the server appears connected in the client’s tool list, then try a read-only example from its documentation.

Claude Desktop setup reference

Package

ellmos-codecommander-mcpnpm

Compatible MCP Clients

ellmos CodeCommander works with any MCP-compatible client. Copy the config snippet from the Configuration section above and add it to the file shown for your client, then restart the application.

  • Claude Desktop~/Library/Application Support/Claude/claude_desktop_config.jsonRestart Claude Desktop completely for changes to take effect.
  • Cursor~/.cursor/mcp.jsonRestart Cursor for changes to take effect.
  • VS Code.vscode/mcp.jsonReload VS Code window for changes to take effect.
  • Windsurf~/.codeium/windsurf/mcp_config.jsonRestart Windsurf for changes to take effect.
  • Claude Code.mcp.jsonSave at the project root, then start Claude Code in that project and review the MCP server approval prompt. Keep real credentials out of shared files.

Learn More