Command Palette

Search for a command to run...

Home / Servers

gitpin

Updated today

by shmindmaster

GitPin

Validate License: MIT Node.js Version MCP Protocol npm

Make agent-authored changes show exact evidence before merge.

GitPin is an agent-delivery assurance gate with a local evidence MCP. It makes material PR claims cover the actual diff and point to exact committed line slices. The local MCP supplies index-free, read-only, multi-repo evidence that humans and CI can re-check with git show.

Agent claim
    → pin.search_*   (candidates only)
    → pin.prove      (evidence pack: path + line + full SHA + content hash)
    → pin.verify     (git show re-check; HEAD match report)
    → you run: git show <sha>:<path>
Crowded categoryGitPin product
Vector / SQLite “repo context” serversNo embeddings, no DB, no reindex
Filesystem MCP (writes)Never writes indexed repos
One-shot repo dumpsLive prove → verify MCP loop
Grep hits as “the answer”Candidates → evidence pack → verification report
GitHub platform MCPLocal Git roots (private/offline)

Formerly RepoContext 0.3.x. See migration.

Required PR evidence gate

gitpin gate --base <full-base-sha> --head <full-head-sha>

The gate reads policy only from the trusted base commit, reads the submitted manifest only from the head commit, compares the merge-base diff, and verifies exact line-slice hashes. It never executes PR code and never labels a locator match as proof of semantic correctness. Use the GitPin GitHub Action setup to make it a required check. That guide also documents an optional, separate CrewScore check for teams that want written-control coverage alongside GitPin evidence verification.

Current release: GitPin 0.6.2 is published on npm, the MCP Registry, GitHub Releases, and Pages. Install with npx -y [email protected]. Node 20+.

GitPin is maintained by Sarosh Hussain, who leads the project's technical direction. Pendoah is his company and operating context; GitPin remains the product and repository.

Five-minute path

# From a committed Git repository
npx -y [email protected] init --client codex

init creates ~/.gitpin/repositories.yaml outside the repo, runs doctor, prints a first evidence line with full SHA, and paste-ready MCP config. It never edits the indexed repository.

# Independently verify any claim (same contract as pin.verify)
npx -y [email protected] verify \
  --repository my-service \
  --path docs/architecture.md \
  --line 42 \
  --sha <full-or-short-hex>

Product job

When agents invent file contents, mix dirty worktrees, or cite the wrong branch
You want every fact re-checkable with git show <sha>:<path>
GitPin registers local Git roots, serves HEAD-only docs/code, flags stale tracked docs, returns path / line / SHA, and closes the loop with pin.verify.

Agent tool surface (pin.*) — 12 read-only tools

JobTools
Discoverpin.catalog
Find candidatespin.search_docs, pin.search_code
Provepin.prove (primary), pin.prove_set (1–8 cites), pin.get_doc, pin.read
Verifypin.verify, pin.verify_set
Decidepin.analyzeEvidenceBrief
Inspect / diffpin.inspect, pin.compare

Related servers

n8n

Updated today

by n8n-io

Fair-code workflow automation platform with native AI capabilities. Combine visual building with custom code, self-host or cloud, 400+ integrations.

204,501

mcp-server-fetch

OfficialUpdated 14d ago

by modelcontextprotocol

A Model Context Protocol server providing tools to fetch and convert web content for usage by LLMs

90,371

@modelcontextprotocol/server-everything

OfficialUpdated 14d ago

by modelcontextprotocol

MCP server that exercises all the features of the MCP protocol

90,371

mcp-server-git

OfficialUpdated 14d ago

by modelcontextprotocol

A Model Context Protocol server providing tools to read, search, and manipulate Git repositories programmatically via LLMs

90,371