Vericore

MCP / AI-Agent Integration

Connect a trusted local AI agent to Vericore’s deterministic repository intelligence and verification boundary.

Purpose

Vericore exposes a local stdio MCP server for agents that need repository evidence, architecture signals, planning, and change verification.

Vericore is the evidence and verification layer, not the coding agent. It does not autonomously modify repository source files.

Quick start

Build/install Vericore, then launch:

vericore mcp

The process uses newline-delimited JSON-RPC over stdin/stdout. stdout is reserved for protocol messages; do not pipe human-readable CLI output into the MCP process.

Client configuration uses the stable executable boundary:

command: /absolute/path/to/vericore
args: ["mcp"]

For the complete CLI command contract, see CLI Reference.

Tool catalog

Tool What it does Mutates source?
vericore_analyze_repository Repository structure, dependency graph, hotspots, and deterministic analysis No
vericore_impact_analysis Dependency-aware impact for changed paths No
vericore_architecture_analysis Architecture Intelligence No
vericore_pr_intelligence Working-tree or revision-pair change intelligence No
vericore_get_engineering_reality Repository-state-bound Engineering Reality No
vericore_get_context_snapshot Versioned engineering-context snapshot No
vericore_get_context_diff Deterministic snapshot diff No
vericore_get_architecture_drift Baseline/current architecture drift No
vericore_get_architecture_contract Architecture governance evaluation No
vericore_prepare_change Evidence + engineering plan + persisted change contract Writes artifacts under output/
vericore_get_change_contract Retrieves the persisted output/agent-change-contract.json No
vericore_get_evidence Bounded grounded repository evidence No
vericore_change_safety Current working-tree scope signal No
vericore_verify_change Verifies the persisted Agent Change Contract and plan No

All repository arguments use repoPath. Remote repository URLs are rejected.

Compatibility

The canonical MCP tool namespace is vericore_*. Retained codecontext_* aliases are legacy compatibility paths only; they emit a deprecation warning and should be migrated to the corresponding vericore_* tool.

Request examples

Repository analysis

{"repoPath":"/absolute/path/to/repository"}

Impact analysis

{
  "repoPath":"/absolute/path/to/repository",
  "changedPaths":["src/main/kotlin/com/example/PaymentService.kt"]
}

The server accepts at most 100 changed paths per call.

PR Intelligence

Working tree:

{"repoPath":"/absolute/path/to/repository"}

Revision pair:

{
  "repoPath":"/absolute/path/to/repository",
  "baseRevision":"main",
  "headRevision":"feature/payment-retry"
}

Both revisions must be supplied together.

Prepare

{
  "repoPath":"/absolute/path/to/repository",
  "changeSummary":"Add payment retry validation"
}

Preparation persists repository-scoped artifacts, including:

output/engineering-context.json
output/engineering-plan.json
output/agent-change-contract.json

Change-safety workflow

Engineering Reality
        ↓
Context / architecture / impact
        ↓
Grounded evidence
        ↓
Prepare change
        ↓
Persist Agent Change Contract
        ↓
Agent modifies repository
        ↓
Verify ORIGINAL persisted contract
        ↓
Tests / human review

The contract binds repository identity and prepared Git HEAD to planned paths, expected components, verification commands, evidence IDs, architecture expectations, and a SHA-256 fingerprint.

Contract retrieval vs. contract preparation

These operations have intentionally different responsibilities:

This distinction prevents an agent from replacing the verification boundary after it has prepared a change.

Security boundary

The MCP server is intended for trusted local use.

For a shared or remote deployment, put an authenticated service boundary in front of Vericore rather than exposing the stdio process directly.

Compatibility and lifecycle

The current implementation targets the 2025-11-25 MCP lifecycle and implements initialize, notifications/initialized, ping, tools/list, and tools/call for the current Vericore tool surface. Legacy codecontext_* aliases are accepted only for migration and emit deprecation warnings on stderr.

Modern MCP lifecycle behavior is intentionally deferred until the server can implement the required request/discovery model correctly rather than advertising unsupported behavior.