aspex
v0.9.1
Published
See what your AI agents actually did, then scan what they could do. MCP security from logs, no proxy. Offline, one binary.
Maintainers
Readme
aspex
See what your AI agents actually did, then scan what they could do.
npx aspexShows a 30-day snapshot of every MCP tool call your agents made (from the logs Claude Code, Claude Desktop, Cursor, Windsurf, Cline and Roo already write), how many went to servers no scan has checked, and the security score of every configured server. Then a menu.
npm install -g aspex
aspex # snapshot + menu
aspex share # privacy-safe card to paste anywhere
aspex-scan # audit every configured MCP server, 140+ rules
aspex-trace # full audit trail from your clients' logsThis package downloads the prebuilt binary for your platform from the matching GitHub release and verifies its SHA-256 against the release's checksums.txt. It fetches nothing else. Aspex itself runs fully offline: no account, no telemetry, nothing leaves your machine.
Docs: https://aspex.mintlify.site
