InceptionSAFE
Call another MCP client from your MCP client. Offload context windows, delegate tasks, split between models
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
Ok this is a difficult one. Will take some setting up unfortunately. However, if you manage to make this more straightforward, please send me PR's.
mcp-inception MCP Server
Call another mcp client from your mcp client. Delegate tasks, offload context windows. An agent for your agent!
This is a TypeScript-based MCP server that implements a simple LLM query system.
- MCP Server and Client in one
- Made with use of mcp-client-cli
- Offload context windows
- Delegate tasks
- Parallel and map-reduce execution of tasks
Features
Tools
execute_mcp_client- Ask a question to a separate LLM, ignore all the intermediate steps it takes when querying it's tools, and return the output.- Takes question as required parameters
- Returns answer, ignoring all the intermediate context
- executeparallelmcp_client - Takes a list of inputs and a main prompt, and executes the prompt in parallel for each string in the input.
E.G. get the time of 6 major cities right now - London, Paris, Tokyo, Rio, New York, Sidney.
- takes main prompt "What is the time in this city?"
- takes list of inputs, London Paris etc
- runs the prompt in parallel for each input
- note: wait for this before using this feature
execute_map_reduce_mcp_client- Process multiple items in parallel and then sequentially reduce the results to a single output.- Takes
mapPromptwith{item}placeholder for individual item processing - Takes
reducePromptwith{accumulator}and{result}placeholders for combining results - Takes list of
itemsto process - Optional
initialValuefor the accumulator - Processes items in parallel, then sequentially reduces results
- Example use case
4c2edc02a74eOBSERVED · 2026-10-08Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.
claude mcp add mcp-inception -- npx -y [email protected]
{
"mcpServers": {
"mcp-inception": {
"command": "npx",
"args": [
"-y",
"[email protected]"
]
}
}
}Exposed tools (3)
0 read · 3 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
execute_map_reduce_mcp_client | write | Process multiple items in parallel then sequentially reduce the results to a single output. |
execute_mcp_client | write | Offload certain tasks to AI. Used for research purposes, do not use for code editing or anything code related. Only used to fetch data. |
execute_parallel_mcp_client | write | Execute multiple AI tasks in parallel, with responses in JSON key-value pairs. |
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- not all pinned
- Secrets in source
- none-found
Findings (1)
@modelcontextprotocol/sdk, @types/node, typescript
Gates applied: no_behavioural_pass.
4c2edc02a74efull audit observations/trust-audit/mcp-server/tanevanwifferen__inception.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-08 | 4c2edc02a74e | SAFE | B | 89 | first audit |
Questions
What is the Inception MCP server?
Call another MCP client from your MCP client. Offload context windows, delegate tasks, split between models
What tools does Inception expose?
3 in total: 0 read-only, 3 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is Inception safe to connect to an agent?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.
What credentials does Inception need?
No credential environment variables were found in its source, so it appears to need none.
How does Inception run?
It speaks stdio, so it runs as a local process your client starts. It is published on npm as mcp-inception at 0.1.0.
How current is this page?
The grade is for one exact copy of the source (4c2edc02a74e), read on 2026-10-08. The repository is watched and re-audited when it changes.