‹ The Index
Korext: AI Code Governance
npm
Governance copilot for AI-assisted coding. 72 packs, 532 rules, proof bundles.
Works with: Claude Code, Cursor, Claude Desktop, Codex CLI, Gemini CLI, Cline, Windsurf, VS Code (installable)
installable: each client documents how to load an MCP server of this type — that is the client's promise, not a claim verified against this capability
Category: Security — see all ranked ›
Install (Claude Code):
claude mcp add governance -- npx -y korext- tashan score: 41.0
- Adoption: 49/wk
- Upkeep: 61.0
- Freshness: 67.0
- Evidence coverage: 100% of the inputs this score can use
- Health: active
Security audit
scanned 2026-07-30Every finding is shown in full — which advisory, the version that fixes it, and the exact command run at install time. Nothing in this audit is behind a licence.
No known advisoriesclearchecked against OSV for 1.0.1
Reads and writes files · Makes network requestsfrom declared dependencies
Can carry remote content into your agentit can pull third-party text into the model's context — treat what it returns as untrusted input
No build provenanceno attestation — the published artifact cannot be traced to its source
Already running this? npx tashan-cli doctor checks your whole config against the Index — how it works ›
Measured 2026-08-03 · scorer s5 · how · something wrong here?