Skip to content
verify mcp Beta VerifyMCP is currently in beta. If you notice any issues, get in touch and we’ll put it right.

Claudexor

NPM · CLAUDEXOR · SCANNED SEP 20

Route coding work across Claude Code, Codex, Cursor, and OpenCode with shared context.

Available components

0 this week 92 Trust /100
Trust breakdown (7 categories)

How this component scores in each security and reliability category. Every signal is checked automatically from public evidence about the published package, including repeated runs of it in an isolated sandbox, and we only credit what we can confirm. How we score → Why this is hard to score →

Supply Chain Security100
  • No malware found by supply-chain analysis.Pass
  • No known CVEs affecting this package version or its production dependencies.Pass
  • No install/post-install scripts declared.Pass
  • 4 of 45 dependencies flagged as unhealthy. View diagnostics → Partial
Provenance & Transparency100
  • Source repository is publicly reachable at the declared URL. View diagnostics → Pass
  • Cryptographically verified build provenance (signed, bound to razzant/claudexor). View diagnostics → Pass
  • Clear OSI-approved license (MIT).Pass
  • Actively maintained (last published 1 days ago).Pass
  • Publishes a security disclosure policy (SECURITY.md).Pass
Schema Quality & AI Usability69
  • AI-judged instruction clarity (good).Pass
  • Context-footprint check failed: tool/resource definitions use about 2426 tokens (~134/item across 18 items; 18 tools + 0 resources), over budget; trim descriptions and params. See how to fix → Fail
  • Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management83
  • Stability observed for 25 of 30 days with no destabilising changes; credit accrues until the full window elapses.Partial
Tool Coverage97
  • 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
  • 91% of tool parameters carry a description.Partial
  • Structured output schemas are declared (56% of tools); any adoption earns full credit.Pass
Tool Safety100
  • No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
  • We read all 18 captured tool definition(s), and no name or description among them implies an irreversible operation.Pass
  • An AI judge read all 18 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
  • Implements a current MCP spec version (2026-07-28).Pass
Install

How do I install the Claudexor MCP server?

Claudexor runs locally as an npm package, launched with npx -y claudexor. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.

npm · claudexor

# add to Claude Code
claude mcp add razzant-claudexor -- npx -y claudexor
// .cursor/mcp.json
{
  "mcpServers": {
    "razzant-claudexor": {
      "command": "npx",
      "args": [
        "-y",
        "claudexor"
      ]
    }
  }
}
// .vscode/mcp.json
{
  "servers": {
    "razzant-claudexor": {
      "command": "npx",
      "args": [
        "-y",
        "claudexor"
      ]
    }
  }
}
# add to Codex CLI
codex mcp add razzant-claudexor -- npx -y claudexor
// opencode.json
{
  "$schema": "https://opencode.ai/config.json",
  "mcp": {
    "razzant-claudexor": {
      "type": "local",
      "command": [
        "npx",
        "-y",
        "claudexor"
      ],
      "enabled": true
    }
  }
}
# add to OpenClaw
openclaw mcp add razzant-claudexor --command npx --arg -y --arg claudexor
# ~/.hermes/config.yaml
mcp_servers:
  razzant-claudexor:
    command: "npx"
    args: ["-y", "claudexor"]
// ~/.netclaw/config/netclaw.json
{
  "McpServers": {
    "razzant-claudexor": {
      "Transport": "stdio",
      "Command": "npx",
      "Arguments": [
        "-y",
        "claudexor"
      ]
    }
  }
}
# add to Vellum
assistant mcp add razzant-claudexor -t stdio -c npx -a -y claudexor
// mcp.json
{
  "mcpServers": {
    "razzant-claudexor": {
      "command": "npx",
      "args": [
        "-y",
        "claudexor"
      ]
    }
  }
}
Changelog

Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.

  • 20 Sept 26 +1

    No change was recorded against any check on this day. Stability & Change Management went from 80 to 83. That category is still filling its 30-day observation window: 24 days of observed history at the previous scan, 25 at this one. The score rises as the window fills, whether or not the server changes.

  • 19 Sept 26 −3
    • Stability: pass → 0.80 functional
  • 18 Sept 26 0
    • Stability: 0.97 → pass security
  • 17 Sept 26 +1

    No change was recorded against any check on this day. Stability & Change Management went from 93 to 97. That category is still filling its 30-day observation window: 28 days of observed history at the previous scan, 29 at this one. The score rises as the window fills, whether or not the server changes.

  • 15 Sept 26 +1

    No change was recorded against any check on this day. Stability & Change Management went from 87 to 90. That category is still filling its 30-day observation window: 26 days of observed history at the previous scan, 27 at this one. The score rises as the window fills, whether or not the server changes.

  • 13 Sept 26 +1

    No change was recorded against any check on this day. Stability & Change Management went from 80 to 83. That category is still filling its 30-day observation window: 24 days of observed history at the previous scan, 25 at this one. The score rises as the window fills, whether or not the server changes.

  • 12 Sept 26 −3
    • Stability: pass → 0.80 functional
  • 11 Sept 26 0
    • Stability: 0.97 → pass security
Diagnostics

Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.

Captured 20 Sept 2026 · Analysed npm/claudexor@3.9.5

Provenance Verified

A signed build attestation was found and verified, binding this exact artifact to the source repository it claims to come from.

Result Verified
Ecosystem npm
Reason Verified
Discovered via Registry attestation endpoint
Source repo razzant/claudexor
Certificate issuer https://token.actions.githubusercontent.com
Certificate SAN https://github.com/razzant/claudexor/.github/workflows/release.yml@refs/tags/v3.9.5
Rekor log index 2675999542
Predicate type https://slsa.dev/provenance/v1
Subject digest sha512:24f968e6c103d928a3bb68169f58a50644e23f864ece63c2a75f2c8537a090cbb9a8253298d3fdc214296f374fa7d5472a071b0088d0dcbf96ccb8437

Background: How many MCP packages publish verified provenance →

Dependencies 45 packages
Packages resolved 45
Stale 4
Tree resolution Complete

Background: SBOMs and build attestations, explained →

MCP tools · 18 exposed · ~2,426 tokens

The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →

Tool Tokens
claudexor_accounts ~164

Return the read-only Accounts view: registered profiles, readiness, quota freshness, and routing identity. Default reads the server's CACHED listing (cheap; at most ~15s stale). fresh:true requests the atomic snapshot instead — an EXPENSIVE explicit refresh (a live probe per registered profile, a full harness doctor sweep, and the vendor quota fan-out, which honors per-vendor rate-limit cooldowns and discloses skipped vendors in quota.refresh_skipped). Use fresh:true only when acting on staleness matters; never poll with it. This tool never starts login or changes account state.

NameTypeReqDescription
freshbooleantrue = the expensive atomic Accounts snapshot (fresh probes + doctor + vendor quota fan-out); false/absent = the cached listing.

Structured output declared, but exposes no named fields.

No examples provided.

claudexor_answer_interaction ~58

Answer a daemon-persisted run interaction; success is reported only after the control API acknowledges the journal mutation.

NameTypeReqDescription
answersarrayyes
interactionIdstringyes
runIdstringyes

No output schema declared.

No examples provided.

claudexor_apply_check ~58

Dry-check whether a run's patch would apply cleanly to its original project (no mutation).

NameTypeReqDescription
runIdstringyesDaemon run id (from a run tool's runId trailer or claudexor_runs).

No output schema declared.

No examples provided.

claudexor_ask ~306

Enqueue a read-only Claudexor answer; pass deepScan:true for a bounded multi-scout research sweep with synthesis. Returns a durable run handle, not terminal output; use claudexor_run_status/result for the final answer.

NameTypeReqDescription
accessstringOptional access profile for this run.
deepScanbooleanWiden the answer into a bounded multi-scout research sweep with synthesis.
effortstringOptional effort override for the primary harness. Expects a reasoning-effort level the resolved harness/model advertises (a lowercase slug; each vendor lists its own levels, weakest to strongest); an…
externalContextPolicystringAlias of web for control-api parity.
harnessstringOptional harness id to force for this one-shot run.
modelstringOptional model override for the primary harness.
nintegerOptional best-of-N width for candidate races (or deep-scan scout width).
paidBudgetIncremental-cash budget: explicitly unlimited or a finite non-negative USD cap.
primaryHarnessstringOptional primary harness id for this run.
promptstringyesThe user task or question to run through Claudexor.
repoPathstringAbsolute path of the target project. Defaults to the MCP server cwd.
webstringExternal context policy for this run.
NameTypeReqDescription
applyEligibilityyesApply-gate verdict for mutating runs; null for read-only routes or when no patch exists.
councilCouncil membership + merge disclosure (QA-023b); null for solo/non-plan tools or deferred handles.
delegatedFromRunIdstring|null
delegationEngine-owned Delegate requested/effective/used receipt; surfaces project it without parsing model output.
detailProblemTyped post-terminal detail-read problem (the run result survives; its detail projections are absent for this reason); null when the detail read succeeded.
failureTyped terminal failure detail and recovery actions; null for non-failed runs.
outcomeBannerstring|nullServer-owned outcome headline (D18); the single honest one-line verdict, null while non-terminal or unavailable.
outcomeFactsThe D8 terminal outcome axes (checks/review/reason/noChanges); null for non-terminal or read-only routes.
parentRunIdstring|null
planReadinessDerived plan readiness for plan tools (D17); null for non-plan tools.
runDirstring|nullyesArtifact directory of the run; null when not persisted.
runFactsValidated canonical terminal RunFacts receipt; null while active, unavailable, or for legacy runs.
runIdstring|nullyesDaemon run id (recovery handle for inspect/follow/apply/decision); null for in-process read-only runs.
statusstring|nullyesTerminal run LIFECYCLE (succeeded | failed | cancelled | interrupted).
summarystringyesHuman-readable outcome summary (same text as the tool's text content).

No examples provided.

claudexor_best_of ~346

Enqueue a best-of-N Claudexor run with cross-family review. Returns a durable run handle; use claudexor_run_status/result for terminal output.

NameTypeReqDescription
accessstringOptional access profile for this run.
effortstringOptional effort override for the primary harness. Expects a reasoning-effort level the resolved harness/model advertises (a lowercase slug; each vendor lists its own levels, weakest to strongest); an…
externalContextPolicystringAlias of web for control-api parity.
harnessstringOptional harness id to force for this one-shot run.
modelstringOptional model override for the primary harness.
nintegerOptional best-of-N width for candidate races (or deep-scan scout width).
paidBudgetIncremental-cash budget: explicitly unlimited or a finite non-negative USD cap.
primaryHarnessstringOptional primary harness id for this run.
promptstringyesThe user task or question to run through Claudexor.
protectedPathApprovalsarrayTyped approvals for existing protected path edits.
repoPathstringAbsolute path of the target project. Defaults to the MCP server cwd.
reviewerEffortsobjectPer-provider reviewer effort overrides.
reviewerModelsobjectPer-provider reviewer model overrides.
reviewerPanelarrayExplicit reviewer panel entries, preserving order and duplicates.
testsarrayTyped-argv deterministic gate commands for this run.
webstringExternal context policy for this run.
NameTypeReqDescription
applyEligibilityyesApply-gate verdict for mutating runs; null for read-only routes or when no patch exists.
councilCouncil membership + merge disclosure (QA-023b); null for solo/non-plan tools or deferred handles.
delegatedFromRunIdstring|null
delegationEngine-owned Delegate requested/effective/used receipt; surfaces project it without parsing model output.
detailProblemTyped post-terminal detail-read problem (the run result survives; its detail projections are absent for this reason); null when the detail read succeeded.
failureTyped terminal failure detail and recovery actions; null for non-failed runs.
outcomeBannerstring|nullServer-owned outcome headline (D18); the single honest one-line verdict, null while non-terminal or unavailable.
outcomeFactsThe D8 terminal outcome axes (checks/review/reason/noChanges); null for non-terminal or read-only routes.
parentRunIdstring|null
planReadinessDerived plan readiness for plan tools (D17); null for non-plan tools.
runDirstring|nullyesArtifact directory of the run; null when not persisted.
runFactsValidated canonical terminal RunFacts receipt; null while active, unavailable, or for legacy runs.
runIdstring|nullyesDaemon run id (recovery handle for inspect/follow/apply/decision); null for in-process read-only runs.
statusstring|nullyesTerminal run LIFECYCLE (succeeded | failed | cancelled | interrupted).
summarystringyesHuman-readable outcome summary (same text as the tool's text content).

No examples provided.

claudexor_capabilities ~51

Return the derived AgentCapabilityCatalog: per-harness live capabilities (doctor-backed), canonical modes, the mutability matrix, run-control keys, CLI verbs, and the run-apply-state vocabulary.

Input schema present but exposes no named parameters.

NameTypeReqDescription
availableHarnessesarrayyesConvenience: ids with doctor status ok.
cliCommandsarrayyesCLI verbs with mutability/stability (full flag detail via `claudexor help --json`).
generatedAtstringyesISO timestamp when the catalog was composed.
gitobjectyesExecution-location Git readiness. Read-only and valid non-Git in-place flows do not require it.
harnessesarrayyesLive per-harness capabilities (doctor-backed).
mcpToolsarrayyesMCP tool names `claudexor mcp serve` exposes.
modesarrayyesCanonical run modes; strategy controls are separate schema-owned fields, never modes.
mutabilityobjectyesThe mutability matrix: every way a Claudexor run can (or cannot) touch a tree, from the schema's closed vocabularies.
okbooleanyesEnvelope marker (matches the CLI JSON convention).
outputSchemaDialectsarrayyesSupported structured-output JSON Schema dialects and canonical $schema URIs.
runApplyStatesarrayyesRunApplyState vocabulary an agent can encounter on run results (not_applied | applied | applied_review_blocked | reverted) — distinct from the ApplyEligibility verdict object on run details.
runControlKeysarrayyesAccepted POST /runs request keys (derived from the ControlRunStartRequest schema; the CLI/MCP/ACP surfaces project subsets of these).
versionstringyesClaudexor version serving this catalog (compare with CLAUDEXOR_PLUGIN_VERSION to detect plugin skew).

No examples provided.

claudexor_create ~342

Enqueue a create-from-scratch Claudexor run. Returns a durable run handle; use claudexor_run_status/result for terminal output.

NameTypeReqDescription
accessstringOptional access profile for this run.
effortstringOptional effort override for the primary harness. Expects a reasoning-effort level the resolved harness/model advertises (a lowercase slug; each vendor lists its own levels, weakest to strongest); an…
externalContextPolicystringAlias of web for control-api parity.
harnessstringOptional harness id to force for this one-shot run.
modelstringOptional model override for the primary harness.
nintegerOptional best-of-N width for candidate races (or deep-scan scout width).
paidBudgetIncremental-cash budget: explicitly unlimited or a finite non-negative USD cap.
primaryHarnessstringOptional primary harness id for this run.
promptstringyesThe user task or question to run through Claudexor.
protectedPathApprovalsarrayTyped approvals for existing protected path edits.
repoPathstringAbsolute path of the target project. Defaults to the MCP server cwd.
reviewerEffortsobjectPer-provider reviewer effort overrides.
reviewerModelsobjectPer-provider reviewer model overrides.
reviewerPanelarrayExplicit reviewer panel entries, preserving order and duplicates.
testsarrayTyped-argv deterministic gate commands for this run.
webstringExternal context policy for this run.
NameTypeReqDescription
applyEligibilityyesApply-gate verdict for mutating runs; null for read-only routes or when no patch exists.
councilCouncil membership + merge disclosure (QA-023b); null for solo/non-plan tools or deferred handles.
delegatedFromRunIdstring|null
delegationEngine-owned Delegate requested/effective/used receipt; surfaces project it without parsing model output.
detailProblemTyped post-terminal detail-read problem (the run result survives; its detail projections are absent for this reason); null when the detail read succeeded.
failureTyped terminal failure detail and recovery actions; null for non-failed runs.
outcomeBannerstring|nullServer-owned outcome headline (D18); the single honest one-line verdict, null while non-terminal or unavailable.
outcomeFactsThe D8 terminal outcome axes (checks/review/reason/noChanges); null for non-terminal or read-only routes.
parentRunIdstring|null
planReadinessDerived plan readiness for plan tools (D17); null for non-plan tools.
runDirstring|nullyesArtifact directory of the run; null when not persisted.
runFactsValidated canonical terminal RunFacts receipt; null while active, unavailable, or for legacy runs.
runIdstring|nullyesDaemon run id (recovery handle for inspect/follow/apply/decision); null for in-process read-only runs.
statusstring|nullyesTerminal run LIFECYCLE (succeeded | failed | cancelled | interrupted).
summarystringyesHuman-readable outcome summary (same text as the tool's text content).

No examples provided.

claudexor_inspect ~64

Inspect a daemon-tracked run: status, summary, decision verdict, and the derived applyEligibility (what unblocks apply).

NameTypeReqDescription
runIdstringyesDaemon run id (from a run tool's runId trailer or claudexor_runs).
NameTypeReqDescription
applyEligibilityDerived apply-gate verdict; null for read-only runs or when no patch exists.
budgetRun budget snapshot (cash + subscription valuation, QA-023c); null when unavailable.
councilCouncil membership + merge disclosure (QA-023b); null for solo/non-plan runs.
decisionStatusstring|nullThe arbitration decision status, when the run reached arbitration.
delegatedFromRunIdstring|nullClaudexor Delegate parent id; null for ordinary runs and native subagents.
delegationTyped Delegate receipt; null when unavailable or legacy.
detailProblemTyped post-terminal detail-read problem (the durable run handle survives); null when the detail read succeeded.
failureTyped terminal failure detail and recovery actions; null for non-failed runs.
outcomeBannerstring|nullServer-owned outcome headline (D18); null while non-terminal.
outcomeFactsThe D8 terminal outcome axes (checks/review/reason/noChanges), when terminal.
parentRunIdstring|nullServer-owned ordinary parent/follow-up run id, when present.
pendingInteractionsCount of questions still awaiting answers, when known.
planReadinessDerived plan readiness (plan runs only, D17); null otherwise.
runDirstring|nullArtifact directory; null when absent.
runFactsValidated canonical terminal RunFacts receipt; null while active, unavailable, or for legacy runs.
runIdstring|nullThe daemon run id, when known.
statusstring|nullThe run's terminal or in-flight lifecycle state, when known.
summarystringyesHuman-readable outcome/status text (same as the tool's text content).

No examples provided.

claudexor_journal_recovery ~42

Inspect, validate, or export one durable journal partition through v2.

NameTypeReqDescription
actionstringyes
partitionstringyes

No output schema declared.

No examples provided.

claudexor_plan ~290

Enqueue a read-only Claudexor implementation plan. Returns a durable run handle; use claudexor_run_status/result for the final plan.

NameTypeReqDescription
accessstringOptional access profile for this run.
councilbooleanDraft n (2..4) plans in parallel, then merge one plan and question set.
effortstringOptional effort override for the primary harness. Expects a reasoning-effort level the resolved harness/model advertises (a lowercase slug; each vendor lists its own levels, weakest to strongest); an…
externalContextPolicystringAlias of web for control-api parity.
harnessstringOptional harness id to force for this one-shot run.
modelstringOptional model override for the primary harness.
nintegerOptional best-of-N width for candidate races (or deep-scan scout width).
paidBudgetIncremental-cash budget: explicitly unlimited or a finite non-negative USD cap.
primaryHarnessstringOptional primary harness id for this run.
promptstringyesThe user task or question to run through Claudexor.
repoPathstringAbsolute path of the target project. Defaults to the MCP server cwd.
webstringExternal context policy for this run.
NameTypeReqDescription
applyEligibilityyesApply-gate verdict for mutating runs; null for read-only routes or when no patch exists.
councilCouncil membership + merge disclosure (QA-023b); null for solo/non-plan tools or deferred handles.
delegatedFromRunIdstring|null
delegationEngine-owned Delegate requested/effective/used receipt; surfaces project it without parsing model output.
detailProblemTyped post-terminal detail-read problem (the run result survives; its detail projections are absent for this reason); null when the detail read succeeded.
failureTyped terminal failure detail and recovery actions; null for non-failed runs.
outcomeBannerstring|nullServer-owned outcome headline (D18); the single honest one-line verdict, null while non-terminal or unavailable.
outcomeFactsThe D8 terminal outcome axes (checks/review/reason/noChanges); null for non-terminal or read-only routes.
parentRunIdstring|null
planReadinessDerived plan readiness for plan tools (D17); null for non-plan tools.
runDirstring|nullyesArtifact directory of the run; null when not persisted.
runFactsValidated canonical terminal RunFacts receipt; null while active, unavailable, or for legacy runs.
runIdstring|nullyesDaemon run id (recovery handle for inspect/follow/apply/decision); null for in-process read-only runs.
statusstring|nullyesTerminal run LIFECYCLE (succeeded | failed | cancelled | interrupted).
summarystringyesHuman-readable outcome summary (same text as the tool's text content).

No examples provided.

claudexor_quarantine_journal ~50

Quarantine a corrupt partition and start a fresh epoch after exact confirmation.

NameTypeReqDescription
confirmationstringyes
expectedFingerprintstringyes
partitionstringyes

No output schema declared.

No examples provided.

claudexor_run ~347

Enqueue an Agent-mode Claudexor run. Returns a durable run handle plus any immediate start facts; use claudexor_run_status/result for the terminal WorkProduct.

NameTypeReqDescription
accessstringOptional access profile for this run.
effortstringOptional effort override for the primary harness. Expects a reasoning-effort level the resolved harness/model advertises (a lowercase slug; each vendor lists its own levels, weakest to strongest); an…
externalContextPolicystringAlias of web for control-api parity.
harnessstringOptional harness id to force for this one-shot run.
modelstringOptional model override for the primary harness.
nintegerOptional best-of-N width for candidate races (or deep-scan scout width).
paidBudgetIncremental-cash budget: explicitly unlimited or a finite non-negative USD cap.
primaryHarnessstringOptional primary harness id for this run.
promptstringyesThe user task or question to run through Claudexor.
protectedPathApprovalsarrayTyped approvals for existing protected path edits.
repoPathstringAbsolute path of the target project. Defaults to the MCP server cwd.
reviewerEffortsobjectPer-provider reviewer effort overrides.
reviewerModelsobjectPer-provider reviewer model overrides.
reviewerPanelarrayExplicit reviewer panel entries, preserving order and duplicates.
testsarrayTyped-argv deterministic gate commands for this run.
webstringExternal context policy for this run.
NameTypeReqDescription
applyEligibilityyesApply-gate verdict for mutating runs; null for read-only routes or when no patch exists.
councilCouncil membership + merge disclosure (QA-023b); null for solo/non-plan tools or deferred handles.
delegatedFromRunIdstring|null
delegationEngine-owned Delegate requested/effective/used receipt; surfaces project it without parsing model output.
detailProblemTyped post-terminal detail-read problem (the run result survives; its detail projections are absent for this reason); null when the detail read succeeded.
failureTyped terminal failure detail and recovery actions; null for non-failed runs.
outcomeBannerstring|nullServer-owned outcome headline (D18); the single honest one-line verdict, null while non-terminal or unavailable.
outcomeFactsThe D8 terminal outcome axes (checks/review/reason/noChanges); null for non-terminal or read-only routes.
parentRunIdstring|null
planReadinessDerived plan readiness for plan tools (D17); null for non-plan tools.
runDirstring|nullyesArtifact directory of the run; null when not persisted.
runFactsValidated canonical terminal RunFacts receipt; null while active, unavailable, or for legacy runs.
runIdstring|nullyesDaemon run id (recovery handle for inspect/follow/apply/decision); null for in-process read-only runs.
statusstring|nullyesTerminal run LIFECYCLE (succeeded | failed | cancelled | interrupted).
summarystringyesHuman-readable outcome summary (same text as the tool's text content).

No examples provided.

claudexor_run_cancel ~60

Request cancellation of a daemon-owned run; success is returned only after the control API acknowledges the durable command.

NameTypeReqDescription
runIdstringyesDaemon run id (from a run tool's runId trailer or claudexor_runs).

No output schema declared.

No examples provided.

claudexor_run_interactions ~55

List daemon-persisted questions that are still awaiting answers for a run.

NameTypeReqDescription
runIdstringyesDaemon run id (from a run tool's runId trailer or claudexor_runs).

No output schema declared.

No examples provided.

claudexor_run_result ~63

Read a durable run's terminal result and apply eligibility; non-terminal runs report their current state without pretending to be complete.

NameTypeReqDescription
runIdstringyesDaemon run id (from a run tool's runId trailer or claudexor_runs).
NameTypeReqDescription
applyEligibilityDerived apply-gate verdict; null for read-only runs or when no patch exists.
budgetRun budget snapshot (cash + subscription valuation, QA-023c); null when unavailable.
councilCouncil membership + merge disclosure (QA-023b); null for solo/non-plan runs.
decisionStatusstring|nullThe arbitration decision status, when the run reached arbitration.
delegatedFromRunIdstring|nullClaudexor Delegate parent id; null for ordinary runs and native subagents.
delegationTyped Delegate receipt; null when unavailable or legacy.
detailProblemTyped post-terminal detail-read problem (the durable run handle survives); null when the detail read succeeded.
failureTyped terminal failure detail and recovery actions; null for non-failed runs.
outcomeBannerstring|nullServer-owned outcome headline (D18); null while non-terminal.
outcomeFactsThe D8 terminal outcome axes (checks/review/reason/noChanges), when terminal.
parentRunIdstring|nullServer-owned ordinary parent/follow-up run id, when present.
pendingInteractionsCount of questions still awaiting answers, when known.
planReadinessDerived plan readiness (plan runs only, D17); null otherwise.
runDirstring|nullArtifact directory; null when absent.
runFactsValidated canonical terminal RunFacts receipt; null while active, unavailable, or for legacy runs.
runIdstring|nullThe daemon run id, when known.
statusstring|nullThe run's terminal or in-flight lifecycle state, when known.
summarystringyesHuman-readable outcome/status text (same as the tool's text content).

No examples provided.

claudexor_run_status ~57

Read the current daemon-acknowledged state of a durable Claudexor run.

NameTypeReqDescription
runIdstringyesDaemon run id (from a run tool's runId trailer or claudexor_runs).
NameTypeReqDescription
applyEligibilityDerived apply-gate verdict; null for read-only runs or when no patch exists.
budgetRun budget snapshot (cash + subscription valuation, QA-023c); null when unavailable.
councilCouncil membership + merge disclosure (QA-023b); null for solo/non-plan runs.
decisionStatusstring|nullThe arbitration decision status, when the run reached arbitration.
delegatedFromRunIdstring|nullClaudexor Delegate parent id; null for ordinary runs and native subagents.
delegationTyped Delegate receipt; null when unavailable or legacy.
detailProblemTyped post-terminal detail-read problem (the durable run handle survives); null when the detail read succeeded.
failureTyped terminal failure detail and recovery actions; null for non-failed runs.
outcomeBannerstring|nullServer-owned outcome headline (D18); null while non-terminal.
outcomeFactsThe D8 terminal outcome axes (checks/review/reason/noChanges), when terminal.
parentRunIdstring|nullServer-owned ordinary parent/follow-up run id, when present.
pendingInteractionsCount of questions still awaiting answers, when known.
planReadinessDerived plan readiness (plan runs only, D17); null otherwise.
runDirstring|nullArtifact directory; null when absent.
runFactsValidated canonical terminal RunFacts receipt; null while active, unavailable, or for legacy runs.
runIdstring|nullThe daemon run id, when known.
statusstring|nullThe run's terminal or in-flight lifecycle state, when known.
summarystringyesHuman-readable outcome/status text (same as the tool's text content).

No examples provided.

claudexor_runs ~31

List recent daemon-tracked Claudexor runs (recovery: find a lost runId).

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

claudexor_status ~42

Return doctor-backed Claudexor runtime status: per-harness verdicts with enabled/disabled intents, doctor reasons and checks, and the configured model.

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

Common questions

What is the Claudexor MCP server?

Claudexor is an MCP server listed in the public MCP registry as io.github.razzant/claudexor. Route coding work across Claude Code, Codex, Cursor, and OpenCode with shared context. This page covers its npm package (claudexor).

Is the Claudexor MCP server safe to use?

Claudexor scores 92 out of 100 on VerifyMCP. We found no known CVEs affecting it as of 20 September 2026. It declares no install or post-install scripts. Its build provenance is signed and verified. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.

What tools does the Claudexor MCP server expose?

Claudexor exposes 18 tools: claudexor_ask, claudexor_run, claudexor_best_of, claudexor_plan, claudexor_create, and 13 more. Their descriptions and schemas cost roughly 2,426 tokens of context every time the server is loaded.

Is the Claudexor MCP server still maintained?

Claudexor is still listed as active in the MCP registry. We last reached this channel on 20 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.

What licence is the Claudexor MCP server under?

Claudexor declares the MIT licence, which is OSI-approved. That covers the source only, and says nothing about the cost of any service it calls.