RepowireCAUTION
May the agents talk . Connect Claude Code, Opencode, Codex, Pi across projects, across machines and with your telegram
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
Repowire Let your coding agents talk to each other.
[](https://github.com/prassanna-ravishankar/repowire/releases) [](https://github.com/prassanna-ravishankar/repowire/actions/workflows/ci.yml) [](daemon-go/go.mod) [](LICENSE) [](https://docs.repowire.io/)
Repowire connects the coding agents you already have open. Claude Code in one repo, Codex in another, a dashboard in your browser, Telegram on your phone: Repowire gives them names and lets them pass messages without copy-paste.
It is a local control layer for multi-agent work: ask another agent a question, send a quick update, schedule a reminder, or run one session as the coordinator.
Use it when:
- One repo needs a concrete answer from an agent already working in another repo.
- You want a personal orchestrator session to dispatch tasks, collect status, or keep reviews moving.
- You want to monitor or nudge agent work from your phone or browser.
- A session should wake itself or another peer later with a scheduled check-in.
Repowire runs locally by default through a daemon on your machine. The hosted relay is optional and uses outbound connections for remote dashboard access a
6b63a2e7d25eOBSERVED · 2026-10-06Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control. Replace the environment placeholders with a token scoped to the least it needs.
claude mcp add web --env REPOWIRE_AUTH_TOKEN=${REPOWIRE_AUTH_TOKEN} -- npx -y [email protected]{
"mcpServers": {
"web": {
"command": "npx",
"args": [
"-y",
"[email protected]"
],
"env": {
"REPOWIRE_AUTH_TOKEN": "${REPOWIRE_AUTH_TOKEN}"
}
}
}
}Exposed tools (1)
1 read · 0 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
reply | read | Reply to a repowire query. Pass the correlation_id from the <channel> tag. |
Trust audit
CAUTIONgrade B · trust 84/100 Install with care. The audit found things worth knowing before you trust its output.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | WARN |
| L2 | Instruction surface (what it tells the agent) | WARN |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- declared (5 observation(s))
- Network
- declared (9 observation(s))
- Shell
- none-observed
- Dependencies
- not all pinned
- Secrets in source
- none-found
Findings (19)
curl -s http://127.0.0.1:8377/health 2>/dev/null | jq . || echo "Daemon not running"
curl -s http://127.0.0.1:8377/peers 2>/dev/null | jq '.peers[] | {name, status, circle}' || echo "No peers"curl -s http://127.0.0.1:8377/health >/dev/null 2>&1 && {curl -s http://127.0.0.1:8377/health || {curl -s http://127.0.0.1:8377/health | jq .
curl -sSfL https://raw.githubusercontent.com/prassanna-ravishankar/repowire/main/install.sh | sh
.cursorignore
AGENTS.md
@modelcontextprotocol/sdk, ws, zod, @types/ws, typescript
@tailwindcss/typography, clsx, lucide-react, react-markdown, remark-breaks, remark-gfm, tailwind-merge, @tailwindcss/postcss
- The dashboard authenticates to the relay with a cookie set after submitting the same API key at `/auth`. Possession of the key grants dashboard access; treat it like a password.
curl -sSL https://raw.githubusercontent.com/steveyegge/beads/main/scripts/install.sh | bash
curl -fsSL https://github.com/prassanna-ravishankar/repowire/releases/latest/download/install.sh | sh
curl -fsSL https://github.com/prassanna-ravishankar/repowire/releases/latest/download/install.sh | sh
curl -fsSL https://github.com/prassanna-ravishankar/repowire/releases/latest/download/install.sh | sh
`source` is how the peer reached the mesh: `hook` (a runtime hook in a tmux pane), `codex-app-server` (a thread the codex bridge registered from the Codex App Server, whether ChatGPT desktop, VS Code,
[Gas Town](https://github.com/steveyegge/gastown) is a coding-agent orchestrator released by Steve Yegge on January 1, 2026. A "mayor" agent oversees a "town" of coders, reviewers, and supervisors, al
[Happy](https://happy.engineering/) is a mobile and web client for Claude Code and Codex, with bidirectional realtime sync between the desktop CLI and the mobile app, end-to-end encrypted relay, voice
If `daemon.auth_token` is set in `~/.repowire/config.yaml`, the daemon requires a `Bearer` token on WebSocket connections. Hooks and the MCP server read the same config and present the token, so this
Gates applied: no_behavioural_pass.
6b63a2e7d25efull audit observations/trust-audit/mcp-server/prassanna-ravishankar__repowire.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-06 | 6b63a2e7d25e | CAUTION | B | 84 | first audit |
Questions
What is the Repowire MCP server?
May the agents talk . Connect Claude Code, Opencode, Codex, Pi across projects, across machines and with your telegram
What tools does Repowire expose?
1 in total: 1 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is Repowire safe to connect to an agent?
With care. The audit graded it B (84/100) and found 19 things worth knowing before you trust this server, listed below with the exact line each was found on.
What credentials does Repowire need?
It reads REPOWIRE_AUTH_TOKEN from the environment. Give it a token scoped to the least it needs — an agent that can be talked into calling a tool can be talked into calling it with your credentials.
How does Repowire run?
It speaks stdio and streamable-http, so it runs as a local process your client starts. It is published on npm as web at 0.1.0.
How current is this page?
The grade is for one exact copy of the source (6b63a2e7d25e), read on 2026-10-06. The repository is watched and re-audited when it changes.