Turbo Flow logo

Turbo Flow

Claimed

by marcuspat

SUPERSEDED by Turbo Rig (marcuspat/rig) — retained as the DevPod/Codespaces devcontainer seed. Was: one-command agentic dev environment w/ Ruflo orchestration.

Set up this server

This server needs project-specific setup. Follow the project instructions; no reusable public launch command is available yet.

Project instructions
agentic-aiagentic-engineeringagentic-frameworkagentic-ragagentic-workflowai-assistantai-toolsanthropic-claudeautonomous-agentsclaude-codecodexhugging-facejulesmcp-servermodel-context-protocolmulti-agentmulti-agent-systemsnpxswarmswarm-intelligence

More in Automation

Browse the full directory

Badge

Show this listing on your README and website

Get verified and your listing links back to your site with a do-follow link. The badge is optional while first-100 launch spots remain.

Security profile

Exposure: Extensive

Reaches several sensitive areas at once. Read the list before installing.

What this server can reach, from a static read of the shipped code. Nothing was executed and nothing here is a verdict: a browser tool has to run commands and an API wrapper has to call its API. Decide what fits your setup.

NVIDIA SkillSpector v2.11.0, MCPVault MCP-server policy. Scanned yesterday @ 7574df8.

Detected

  • Talks to external services1 places

    Makes outbound requests. The hosts are listed so you can see where data goes.

    raw.githubusercontent.com

  • Sends conversation content outward1 places

    Logs or forwards prompts, messages or tool results to a service outside your machine.

  • Runs shell commands27 places

    Spawns processes on your machine. Expected for command, browser and build tools.

  • Loads code at runtime2 places

    Uses eval, dynamic imports or encoded payloads, which static review cannot fully follow.

  • Reads or writes other agents' configuration25 places

    Touches folders such as ~/.claude, ~/.codex or ~/.cursor, which hold settings and sometimes keys.

  • Accesses credential files16 places

    References SSH keys, cloud credential files or token stores.

  • Reads local configuration files10 places

    Loads a .env, .npmrc or config file. Normal for a server that needs an API key.

  • Uses elevated privileges34 places

    sudo, the Docker socket or a privileged container appear in shipped code.

  • Installs itself to run later7 places

    Writes startup entries, cron jobs or state files that outlive the session.

  • Contains instructions aimed at AI agents1 places

    Text in code or agent-facing files that steers a model. Worth reading before you trust it.

  • Runs unpinned packages at runtime119 places

    Executes npx or uvx without a version, so a compromised upstream release would run.

Not detected: reads environment variables in bulk, matches a known malicious pattern.

Dependencies with known advisories

None found in the lockfiles and manifests checked against OSV.dev.

Left out of the profile

125 pattern matches in documentation, configuration or CI files were recorded but are not part of the profile, because they do not run when the server does. The owner dashboard lists them.

How the profile works Maintainers see file, line and a fix for each item in their dashboard.

Tool change history

Compared across complete checks of the same configuration. Tools were listed, not invoked. Input-schema changes are not measured here.

No complete tool checks yet.

FAQ

Questions about Turbo Flow MCP Server

How do I connect Turbo Flow MCP Server to Claude?
The project does not publish a launch command that MCPVault could verify. Open the repository linked on this page for its install steps; the listing names Claude Code, VS Code as compatible clients.
Is Turbo Flow MCP Server free?
The listed licence is MIT. Check the upstream terms for permitted use and commercial requirements; a public repository does not by itself mean the software is free or open source. Connected APIs and hosted services may have separate charges.
What can Turbo Flow MCP Server do?
MCPVault has not yet recorded the tool list for Turbo Flow MCP Server; it is captured when the server passes a live MCP handshake. The description above is what the project publishes.