Atlas / MCP servers / pratikjadhav2726 / Unified Tool Graph

Unified Tool GraphCAUTION

mcp/pratikjadhav2726/unified-tool-graph

Instead of dumping 1000+ tools into a model’s prompt and expecting it to choose wisely, the Unified MCP Tool Graph equips your LLM with structure, clarity, and relevance. It fixes tool confusion, prevents infinite loops, and enables modular, intelligent agent workflows.

Verdict
CAUTION
Grade
B
Trust score
87 /100
Exposed tools
3 3r · 0w · 0d
Transport
stdio · streamable-http
License
MIT
Stars
27
01

Overview

From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.

[](https://mseep.ai/app/pratikjadhav2726-unified-mcp-tool-graph)

Unified MCP Tool Graph is a research-driven project that aggregates and structures tool APIs from diverse Model Context Protocol (MCP) servers into a centralized Neo4j graph database. This graph functions as an intelligent infrastructure layer that enables large language models (LLMs) and agentic AI systems to dynamically retrieve the most relevant tools for any task — without being overwhelmed by redundant or confusing options.

🚀 Recent Updates: This has been integrated into SmarterMCP in the preview mode.

Dynamic MCP Server Spin-Up & Minimal Tool Context

🟢 Dynamic MCP Server Orchestration

  • The system now spins up only the MCP servers required for a given user query. Five popular MCP servers (including the Dynamic Tool Retriever MCP) are kept warm by default; others are started on demand and kept alive for 10 minutes after last use.
  • Dynamic Tool Retriever MCP returns not just tool metadata, but also the config needed to run/connect to the MCP server for each tool (fetched from the vendor's GitHub README automatically).
  • Automatic MCP Config Extraction: Uses the vendor's GitHub repo to extract the MCP server config (from README) for each tool, so agents can spin up/connect to the right server on the fly.
  • Error Handling: If config extraction fails, the system logs a warning and continues, ensuring robust tool retrieval.

🟢 Minimal Tool Context for LLMs/Agents

  • Only the exact tools required for the user query are loaded into the agent's context (not all tools from all MCP servers). This prevents LLM confusion and infinite tool loops.
Read from source at commit 1afe13b7bd63OBSERVED · 2026-10-08
02

Connect

Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control. Replace the environment placeholders with a token scoped to the least it needs.

claude-code
claude mcp add unified-mcp-tool-graph --env GROQ_API_KEY=${GROQ_API_KEY} --env NEO4J_PASSWORD=${NEO4J_PASSWORD} -- uvx unified-mcp-tool-graph
claude-desktop
{
  "mcpServers": {
    "unified-mcp-tool-graph": {
      "command": "uvx",
      "args": [
        "unified-mcp-tool-graph"
      ],
      "env": {
        "GROQ_API_KEY": "${GROQ_API_KEY}",
        "NEO4J_PASSWORD": "${NEO4J_PASSWORD}"
      }
    }
  }
}
03

Exposed tools (3)

3 read · 0 write · 0 destructive.

ToolRiskDescription
dynamic_tool_retrieverread
get_available_toolsread
health_checkread
04

Trust audit

CAUTIONgrade B · trust 87/100 Install with care. The audit found things worth knowing before you trust its output.

LayerWhat it checksResult
L0Provenance & inventoryWARN
L1Static analysis of the codeWARN
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
none-observed
Network
declared (2 observation(s))
Shell
declared (2 observation(s))
Dependencies
not all pinned
Secrets in source
none-found

Findings (11)

MEDIUMInventory / provenance · inv.binary · CWE-1104
.DS_Store
.DS_Store
Why it matters. a compiled or binary member cannot be reviewed from source
Fix. ship source, or explain the binary in the README
MEDIUMCode injection · code.dynamic_import · CWE-78, CWE-94, CWE-95
start_unified_gateway.py:77
__import__(import_name)
MEDIUMCode injection · code.dynamic_import · CWE-78, CWE-94, CWE-95
start_unified_gateway.py:83
__import__(package.replace("-", "_"))
LOWInventory / provenance · inv.hidden_file · CWE-1104
.DS_Store
.DS_Store
Why it matters. hidden member outside the usual dotfiles
Fix. review its purpose
LOWSupply chain · supply.unpinned · CWE-829, CWE-1357
package.json
@modelcontextprotocol/sdk
Why it matters. 1 dependency range(s) float
Fix. pin exact versions or ship a lockfile
INFOInventory / provenance · inv.oversize · CWE-1104
Data/Glama/all_servers.json
Data/Glama/all_servers.json
Why it matters. 23556038 bytes not read
INFOInventory / provenance · inv.oversize · CWE-1104
Data/Smithery/Smithery_Servers.json
Data/Smithery/Smithery_Servers.json
Why it matters. 2807471 bytes not read
INFOInventory / provenance · inv.oversize · CWE-1104
Data/Smithery/smithery_servers_with_tools.json
Data/Smithery/smithery_servers_with_tools.json
Why it matters. 7349672 bytes not read
INFOInventory / provenance · inv.oversize · CWE-1104
Ingestion_pipeline/multi_label_vendors.json
Ingestion_pipeline/multi_label_vendors.json
Why it matters. 3156380 bytes not read
INFOSupply chain · prompt.pipe_to_shell · CWE-829, CWE-1357
CONTRIBUTING.md:16
curl -LsSf https://astral.sh/uv/install.sh | sh
INFOSupply chain · prompt.pipe_to_shell · CWE-829, CWE-1357
GETTING_STARTED.md:23
curl -LsSf https://astral.sh/uv/install.sh | sh

Gates applied: no_behavioural_pass.

Audited 2026-10-08 · audit v0.4.1 · source sha 1afe13b7bd63full audit observations/trust-audit/mcp-server/pratikjadhav2726__unified-tool-graph.json · Report an issue / request a re-scan
05

Audit history

Every audit this server has had. A grade with a past is a grade somebody is still checking.

DateSourceVerdictGradeScoreChange
2026-10-081afe13b7bd63CAUTIONB87first audit
06

Questions

What is the Unified Tool Graph MCP server?

Instead of dumping 1000+ tools into a model’s prompt and expecting it to choose wisely, the Unified MCP Tool Graph equips your LLM with structure, clarity, and relevance. It fixes tool confusion, prevents infinite loops, and enables modular, intelligent agent workflows.

What tools does Unified Tool Graph expose?

3 in total: 3 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.

Is Unified Tool Graph safe to connect to an agent?

With care. The audit graded it B (87/100) and found 11 things worth knowing before you trust this server, listed below with the exact line each was found on.

What credentials does Unified Tool Graph need?

It reads GROQ_API_KEY and NEO4J_PASSWORD from the environment. Give it a token scoped to the least it needs — an agent that can be talked into calling a tool can be talked into calling it with your credentials.

How does Unified Tool Graph run?

It speaks stdio and streamable-http, so it runs as a local process your client starts. It is published on PyPI as unified-mcp-tool-graph.

How current is this page?

The grade is for one exact copy of the source (1afe13b7bd63), read on 2026-10-08. The repository is watched and re-audited when it changes.

Advertisement