AI Software ArchitectSAFE
AI-powered architecture documentation framework with ADRs, reviews, and pragmatic mode. Now available as Claude Code Plugin for easiest installation.
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
A markdown-based framework for implementing rigorous software architecture practices in any project, with specialized AI assistant integration.
Introducing AI Software Architect 🚀 - Watch Video
Overview
This framework provides a structured approach to:
- Architecture Documentation - Templates and processes for documenting architectural decisions
- Architecture Reviews - A multi-perspective review process with specialized reviewers
- Architecture Recalibration - Process for translating reviews into concrete implementation plans
- Progress Tracking - Tools for monitoring the implementation of architectural changes
- AI Integration - Seamless collaboration with AI coding assistants
For detailed usage instructions, see USAGE.md. For troubleshooting and advanced usage, see TROUBLESHOOTING.md.
Installation
Choose the installation method for your AI assistant:
Claude Code Installation
Claude Code supports three installation methods:
Option 1: Claude Code Plugin (Recommended) 🆕
Install via the Claude Code plugin system with automatic updates:
# In Claude Code, run these commands: /plugin marketplace add codenamev/ai-software-architect /plugin install ai-software-architect@ai-software-architect
That's it! The framework is now available in all your projects — including the seven skills, MCP server, and generated subagents as a single unit.
See USAGE-WITH-CLAUDE-PLUGIN.md for detailed installation guide, troubleshooting, and comparison with other methods.
Benefits: Simplest installation, automati
2be21bd5acc8OBSERVED · 2026-10-07Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.
claude mcp add architecture-tools -- npx -y [email protected]
{
"mcpServers": {
"architecture-tools": {
"command": "npx",
"args": [
"-y",
"[email protected]"
]
}
}
}Exposed tools (6)
3 read · 3 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
configure_pragmatic_mode | write | Enable and configure Pragmatic Mode (YAGNI Enforcement) to prevent over-engineering |
create_adr | write | Create an Architectural Decision Record (ADR) |
get_architecture_status | read | Get the current status of architecture documentation and decisions |
get_implementation_guidance | read | Get implementation methodology, influences, and practices configuration for |
list_architecture_members | read | List all available architecture team members and their specialties |
setup_architecture | write | Set up the AI Software Architect framework in the current project |
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- not all pinned
- Secrets in source
- none-found
Findings (13)
.coding-assistants/claude-code/claude-code.md
cp -r ../../.architecture ./.architecture
cp -r ../../.coding-assistants ./.coding-assistants
import { ArchitectureServer } from '../../mcp/index.js';const result = generateSubagent({ ...SAMPLE_MEMBER, id: '../../.claude/hooks/evil' });@modelcontextprotocol/sdk, yaml, fs-extra, @types/node
yaml
- **Security**: No tool restrictions (implicit full access)
- Issue: No `allowed-tools` in frontmatter means implicit full access
Our Claude Skills currently have implicit unlimited access to all available tools (Read, Write, Edit, Bash, Glob, Grep, etc.). When a skill is activated, it can use any tool without restriction. This
- Implicit full access to Read, Write, Edit, Bash, Glob, Grep, etc.
# setup-architect - Full access (installation requires broad permissions)
Gates applied: no_behavioural_pass, no_license.
2be21bd5acc8full audit observations/trust-audit/mcp-server/codenamev__ai-software-architect.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-07 | 2be21bd5acc8 | SAFE | B | 89 | first audit |
Questions
What is the AI Software Architect MCP server?
AI-powered architecture documentation framework with ADRs, reviews, and pragmatic mode. Now available as Claude Code Plugin for easiest installation.
What tools does AI Software Architect expose?
6 in total: 3 read-only, 3 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is AI Software Architect safe to connect to an agent?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.
What credentials does AI Software Architect need?
No credential environment variables were found in its source, so it appears to need none.
How does AI Software Architect run?
It speaks stdio, so it runs as a local process your client starts. It is published on npm as architecture-tools at 1.0.0.
How current is this page?
The grade is for one exact copy of the source (2be21bd5acc8), read on 2026-10-07. The repository is watched and re-audited when it changes.