Atlas / MCP servers / tanevanwifferen / Inception

InceptionSAFE

mcp/tanevanwifferen/inception

Call another MCP client from your MCP client. Offload context windows, delegate tasks, split between models

Verdict
SAFE
Grade
B
Trust score
89 /100
Exposed tools
3 0r · 3w · 0d
Transport
stdio
License
MIT
Stars
28
01

Overview

From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.

Ok this is a difficult one. Will take some setting up unfortunately. However, if you manage to make this more straightforward, please send me PR's.

mcp-inception MCP Server

Call another mcp client from your mcp client. Delegate tasks, offload context windows. An agent for your agent!

This is a TypeScript-based MCP server that implements a simple LLM query system.

  • MCP Server and Client in one
  • Made with use of mcp-client-cli
  • Offload context windows
  • Delegate tasks
  • Parallel and map-reduce execution of tasks

Features

Tools

  • execute_mcp_client - Ask a question to a separate LLM, ignore all the intermediate steps it takes when querying it's tools, and return the output.
  • Takes question as required parameters
  • Returns answer, ignoring all the intermediate context
  • executeparallelmcp_client - Takes a list of inputs and a main prompt, and executes the prompt in parallel for each string in the input.

E.G. get the time of 6 major cities right now - London, Paris, Tokyo, Rio, New York, Sidney.

  • takes main prompt "What is the time in this city?"
  • takes list of inputs, London Paris etc
  • runs the prompt in parallel for each input
  • note: wait for this before using this feature
  • execute_map_reduce_mcp_client - Process multiple items in parallel and then sequentially reduce the results to a single output.
  • Takes mapPrompt with {item} placeholder for individual item processing
  • Takes reducePrompt with {accumulator} and {result} placeholders for combining results
  • Takes list of items to process
  • Optional initialValue for the accumulator
  • Processes items in parallel, then sequentially reduces results
  • Example use case
Read from source at commit 4c2edc02a74eOBSERVED · 2026-10-08
02

Connect

Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.

claude-code
claude mcp add mcp-inception -- npx -y [email protected]
claude-desktop
{
  "mcpServers": {
    "mcp-inception": {
      "command": "npx",
      "args": [
        "-y",
        "[email protected]"
      ]
    }
  }
}
03

Exposed tools (3)

0 read · 3 write · 0 destructive.

ToolRiskDescription
execute_map_reduce_mcp_clientwriteProcess multiple items in parallel then sequentially reduce the results to a single output.
execute_mcp_clientwriteOffload certain tasks to AI. Used for research purposes, do not use for code editing or anything code related. Only used to fetch data.
execute_parallel_mcp_clientwriteExecute multiple AI tasks in parallel, with responses in JSON key-value pairs.
04

Trust audit

SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.

LayerWhat it checksResult
L0Provenance & inventoryPASS
L1Static analysis of the codePASS
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
none-observed
Network
none-observed
Shell
none-observed
Dependencies
not all pinned
Secrets in source
none-found

Findings (1)

LOWSupply chain · supply.unpinned · CWE-829, CWE-1357
package.json
@modelcontextprotocol/sdk, @types/node, typescript
Why it matters. 3 dependency range(s) float
Fix. pin exact versions or ship a lockfile

Gates applied: no_behavioural_pass.

Audited 2026-10-08 · audit v0.4.1 · source sha 4c2edc02a74efull audit observations/trust-audit/mcp-server/tanevanwifferen__inception.json · Report an issue / request a re-scan
05

Audit history

Every audit this server has had. A grade with a past is a grade somebody is still checking.

DateSourceVerdictGradeScoreChange
2026-10-084c2edc02a74eSAFEB89first audit
06

Questions

What is the Inception MCP server?

Call another MCP client from your MCP client. Offload context windows, delegate tasks, split between models

What tools does Inception expose?

3 in total: 0 read-only, 3 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.

Is Inception safe to connect to an agent?

The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.

What credentials does Inception need?

No credential environment variables were found in its source, so it appears to need none.

How does Inception run?

It speaks stdio, so it runs as a local process your client starts. It is published on npm as mcp-inception at 0.1.0.

How current is this page?

The grade is for one exact copy of the source (4c2edc02a74e), read on 2026-10-08. The repository is watched and re-audited when it changes.

Advertisement