MCP servercom.nittim/nittim
Production-safety audits for AI-generated code, with a fix for every finding.
Overview
Score?
UNRATED 0.662
of what a free look can see, on 27 looks
Looks
27
last 2 hr ago
Tools
15
changed 22 hr ago
More info
URL
nittim.com/api/mcp
streamable-http
Says it is
nittim 0.2.0+6125d24
protocol 2025-06-18
In the record since
25 days ago
Among servers18,413 with a card
0median 0.606 · this server 0.662 · highest on record 0.8561
Toolsfrom sha256:f06961ffb3…811524 · +0 −0 22 hr ago
| Tool | Schema |
|---|---|
| audit_repo Paid nittim AI audit of a GitHub repository: one structured pass over the highest-signal source; the only tool here that returns scores and a verdict. Answers with the audit's id, |
input · no output |
| audit_source Paid nittim AI audit of source files you post, for a project with no GitHub remote. Send SOURCE files, not build output — no node_modules or dist. On nittim's own key this answers |
input · no output |
| describe_protocol How this server works, in full: how a paid call quotes and charges, the two audit tiers, the Nittim Loop and its reward rules and caps, and dispute guidance. Free, no key, no charg |
input · no output |
| dispute_finding NEEDS A KEY: mint one at https://nittim.com/keys. Records that a finding from a prior audit is wrong (stance:'dispute') or genuinely real (stance:'confirm'), backed by evidence fro |
input · no output |
| estimate_audit Price an audit before buying one: give a GitHub repository URL, or a manifest of paths and byte sizes — no file content, nothing uploaded — and get the tier (Audit or Full Audit), |
input · no output |
| get_audit Retrieve a nittim audit by its UUID, at any stage: the finished markdown digest (verdict, scores, top findings) plus its report link, or — no error, nothing charged — that it is st |
input · no output |
| get_loop Returns the current text of nittim's free, tool-agnostic self-review checklist — the same content served at https://nittim.com/selfcheck.md. Reviews a codebase against the public s |
input · no output |
| judge_output Run a cross-vendor judge model over any text you post: code, a document, another model's output, anything. Returns findings + rationale ONLY — never a score, never a pass/fail verd |
input · no output |
| list_modules List every audit module nittim can run: the two deterministic scanners (secret scan + OSV dependency CVE check) and the LLM-reasoned checks. Returns each module's key, tier, and a |
input · no output |
| mint_key For a client that cannot sign in over OAuth: a short, one-time link to https://nittim.com/keys/claim/<token>. Opening it, signed in, mints a real nittim API key and shows it once — |
input · no output |
| preview_upload NEEDS A KEY: mint one at https://nittim.com/keys. Send the paths and sizes of the files you would post — no content leaves your machine to ask this — and get back the list, the byt |
input · no output |
| report_loop NEEDS A KEY: mint one at https://nittim.com/keys. Records anonymised counts from a Nittim Loop the developer has finished and agreed to send: pass numbers, a findings-by-category t |
input · no output |
| run_module Run ONE nittim audit module against a GitHub repository, never producing scores or a verdict. The two deterministic modules (secret-scan, dependency-cve) return scanner evidence di |
input · no output |
| scan_source Free nittim look: committed secrets and known CVEs over posted source files. No account, no key, no nittim credits. Hard evidence only: never scores, never a production verdict. Se |
input · no output |
| verify_fix NEEDS A KEY: mint one at https://nittim.com/keys. Re-checks ONE finding from a finished audit against the repository's current code, or a commit named in the call, and answers fixe |
input · no output |
Verify it yourself
npx teppi-check https://nittim.com/api/mcpcurl -s https://api.teppi.xyz/v1/trust/mcp/mcs_01M22BHHC4FSBC5JWMHDDEDM5W