‹ The Index

Agentmemory · @agentmemory

npm

Standalone MCP server for agentmemory — thin shim that re-exposes @agentmemory/agentmemory's MCP entrypoint

Works with: Claude Code, Cursor, Claude Desktop, Codex CLI, Gemini CLI, Cline, Windsurf, VS Code (installable)
installable: each client documents how to load an MCP server of this type — that is the client's promise, not a claim verified against this capability

Install (Claude Code):

claude mcp add agentmemory-mcp -- npx -y @agentmemory/mcp

Security audit

scanned 2026-09-12

Every finding is shown in full — which advisory, the version that fixes it, and the exact command run at install time. Nothing in this audit is behind a licence.

No known advisoriesclearchecked against OSV for 0.9.29 — this package, not its dependency tree
4 vulnerable dependenciesinstalls@opentelemetry/[email protected], @opentelemetry/[email protected], [email protected] — GHSA-8988-4f7v-96qf, GHSA-45rx-2jwx-cxfr · found by resolving all 230 packages this installs and querying OSV at the version each resolves to, not by name
No access inferred from declared dependenciesnothing it depends on reaches files, shell or network. This reads declarations only — built-in APIs are invisible to it, so absence of a declaration is not absence of access
No build provenanceno attestation — the published artifact cannot be traced to its source

What changed recently

You are reading this because you came looking. tashan Pro gives tashan doctor the history behind it, so a run over your own config says which of YOURS moved.

You searched for one. Check the rest of your stack:

npx tashan-cli doctor

Reads the config already on your machine and names what is dead, deprecated or running code at install time. No account, nothing uploaded.

tashan Pro$6/mo

We recorded 1 change to Agentmemory · @agentmemory in the last 45 days. Pro tells you on the day — for the servers in your own config, not the ones you thought to look up.

Start a 7-day trial › Everything measured on this page stays free.

Show your score

Measured this well? Put the live badge in your README — it updates as the score does.

tashan badge for Agentmemory · @agentmemory
[![tashan](https://tashan.sh/badge/pkg-agentmemory-mcp.svg)](https://tashan.sh/capability/pkg-agentmemory-mcp.html)

npm ↗  ·  source ↗  ·  pkg:@agentmemory/mcp

Already running this? Check your whole config — free, in your browser, nothing installed. Or npx tashan-cli doctor locally, which sends nothing at all.

Measured 2026-09-13  ·  scorer s5  ·  how  ·  something wrong here?