npm package discovery and stats viewer.

Discover Tips

  • General search

    [free text search, go nuts!]

  • Package details

    pkg:[package-name]

  • User packages

    @[username]

Sponsor

Optimize Toolset

I’ve always been into building performant and accessible sites, but lately I’ve been taking it extremely seriously. So much so that I’ve been building a tool to help me optimize and monitor the sites that I build to make sure that I’m making an attempt to offer the best experience to those who visit them. If you’re into performant, accessible and SEO friendly sites, you might like it too! You can check it out at Optimize Toolset.

About

Hi, 👋, I’m Ryan Hefner  and I built this site for me, and you! The goal of this site was to provide an easy way for me to check the stats on my npm packages, both for prioritizing issues and updates, and to give me a little kick in the pants to keep up on stuff.

As I was building it, I realized that I was actually using the tool to build the tool, and figured I might as well put this out there and hopefully others will find it to be a fast and useful way to search and browse npm packages as I have.

If you’re interested in other things I’m working on, follow me on Twitter or check out the open source projects I’ve been publishing on GitHub.

I am also working on a Twitter bot for this site to tweet the most popular, newest, random packages from npm. Please follow that account now and it will start sending out packages soon–ish.

Open Software & Tools

This site wouldn’t be possible without the immense generosity and tireless efforts from the people who make contributions to the world and share their work via open source initiatives. Thank you 🙏

© 2026 – Pkg Stats / Ryan Hefner

@tenetvault/mcp-server

v0.9.12

Published

Local-first memory and rules layer for AI coding agents — MCP server and CLI.

Readme

@tenetvault/mcp-server

npm version

Local-first memory and rules layer for AI coding agents — via Model Context Protocol.

Quick Start (advanced npm package)

npx -y @tenetvault/mcp-server@latest setup cursor

This npm package is the developer/advanced fallback. The ordinary-user release format is a verified per-platform standalone archive that includes Node and native production dependencies and installs in the user's own directory without global npm or sudo. This initializes the vault and configures Cursor MCP in one step. Replace cursor with claude, codex, or all.

On macOS this default setup installs and verifies one persistent per-user login service. After login or reboot the daemon starts automatically, but the encrypted Vault intentionally remains locked until you unlock it. --no-service is an advanced opt-out. Windows and Linux currently use a session daemon and require tenetvault start after login/reboot; an equivalent persistent service is not yet claimed.

The repository's current docs/04-operations/PLATFORM_SUPPORT.md is authoritative for distribution, service, manual-unlock, and Quick Unlock support. Historical build notes do not broaden that matrix.

Verify with:

npx -y @tenetvault/mcp-server@latest doctor

Features

  • 37 MCP tools: memories, rules, collections, review queue, merge, context approval, decisions, tasks, enforcement, compliance, vault status, governance, and tool-call control
  • Human-in-the-loop: all AI-created memories start as candidates until you approve
  • Feature flags: mcp_write_enabled (default off) guards all write operations
  • Local-first: SQLite database, zero cloud dependency, your data stays on your machine
  • Sensitive data protection: auto-scans for API keys, tokens, passwords before storing

CLI Commands

tenetvault setup <ide>    # Configure MCP + service + encrypted Vault (cursor|claude|codex|all)
tenetvault doctor [ide]   # Diagnose activation issues (--json for CI)
tenetvault init           # Initialize an encrypted vault at ~/.tenetvault/
# Non-interactive: tenetvault init --passphrase-file <private-0600-file>
tenetvault capture --title <t> --content <c>  # Save a candidate growth memory
pbpaste | tenetvault capture --title <t> --kind lesson
tenetvault review today --approve 1,3 --reject 2 --complete
tenetvault start          # Start daemon (Local API + vault runtime) + Web UI
tenetvault open           # Start if needed and open the dashboard
tenetvault vault unlock   # Unlock interactively in this terminal
tenetvault vault quick-unlock enable  # macOS opt-in; stores a device key, never your passphrase
tenetvault vault quick-unlock         # User-triggered system authentication after a restart
tenetvault vault quick-unlock status  # Inspect non-sensitive configuration state
tenetvault vault quick-unlock forget  # Remove this Mac's device slot and Keychain item
tenetvault vault quick-unlock downgrade # Verify both recovery paths, remove device slots, return to v2
tenetvault vault rotate-key --confirm # Rekey SQLCipher and every active key slot
tenetvault version        # Show version
tenetvault flags list     # List feature flags
tenetvault flags set <key> <on|off>  # Toggle a feature flag

The daemon can be healthy while the encrypted Vault is locked. Agents cannot read protected data in that state. Unlock from the local dashboard or a trusted local terminal; agents never receive or submit your passphrase. Quick Unlock is an explicit macOS convenience feature and never runs automatically. It is available only in releases whose app-like Keychain helper is formally signed and provisioned; the current release retains the code but ships it disabled and fail-closed until those Apple release materials are available. Manual passphrase and recovery unlock remain supported.

The MCP initialize response instructs Agents to load relevant memories, active rules, and decisions before non-trivial work. If that context is unavailable or locked, the Agent must stop the entire task, wait for the human to recover through a trusted local interface, and reload context before resuming. The Agent never receives or submits a Vault credential.

Documentation

Full documentation is included in the source repository. The GitHub link is usable only when that repository is publicly available or the reader has access: github.com/tenetvault/tenetvault.

License

MIT