Safely reviews NixOS changes with security grading, vulnerability attestation, and human approval.
Copy the install command and let the AI configure it · recommended for beginners
No copy-paste install info for "mcp-nixreview" yet — see the docs or source repo.
Please use mcp-nixreview to review this NixOS config change, highlight security-relevant option deltas, and give an approval recommendation.
A security-focused diff, risk rating, and whether human approval is needed.
Please attest the current NixOS closure for vulnerabilities, list any known issues found, and identify changes that should be blocked.
A closure vulnerability status and the risky items to block.
Please preserve an auditable record for this NixOS change approval so it remains traceable and tamper-evident.
An approval record with tamper-evident audit details.
Ops or engineering teams can check security-relevant diffs before accepting agent-generated NixOS changes, reducing risky misconfigurations. It also requires human approval, making it suitable for tightly controlled environments.
Before release or merge, teams can attest the system closure for vulnerabilities to confirm whether the build has known security issues. It fits workflows that embed security checks into change management.
When configuration changes must leave a traceable record, the tamper-evident audit ledger supports the approval workflow. It is useful in compliance-heavy or accountability-sensitive settings.
It is a safety gate for NixOS configuration changes. It evaluates security-relevant option deltas, attests closures for vulnerabilities, and requires human approval with a tamper-evident audit record.
No. The description explicitly requires human approval, so it is meant to gate, score, and audit changes rather than auto-approve them.
It mainly focuses on security-relevant NixOS option deltas and known-vulnerability signals in the closure. For further implementation details, see the source repository.
Enforce permissions, approvals, sanitization, and audit for AI agent MCP calls.
Review MCP servers for quality, security, scores, and improvement plans.
Perform file tasks, manage npm packages, and check configuration security via MCP.
Inspect Nexus catalogs and proposals, and run governance actions securely.
Automatically review code changes for bugs, security risks, and style issues.
Gate MCP agent actions through compliance policies before execution.