Back to Browse

Opchain Skills MCP Server

Developer ToolsModerate7.2MCP RegistryLocalRemote
Free

Server data from the Official MCP Registry

Claude Code / MCP skills for the dev pipeline: discover, spec, design, build, ship, operate.

About

Claude Code / MCP skills for the dev pipeline: discover, spec, design, build, ship, operate.

Remote endpoints: streamable-http: https://opchain.dev/mcp

Security Report

7.2
Moderate7.2Low Risk

opchain is a well-architected developer skill coordination system with strong security fundamentals in its core plugin hooks. The code demonstrates sophisticated defensive programming (fail-closed gates, tree binding, hermetic tests) and appropriate permissions for its purpose. Minor code quality observations exist but do not represent security vulnerabilities. Permissions align with category norms for developer tools.

6 files analyzed · 4 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

File System Read

Reads files on your machine. Normal for tools that analyze or process local data.

File System Write

Writes or modifies files on your machine. Check that this is expected for the tool.

env_vars

Check that this permission is expected for this type of plugin.

Shell Command Execution

Runs commands on your machine. Be cautious — only use if you trust this plugin.

process_spawn

Check that this permission is expected for this type of plugin.

How to Install & Connect

Available as Local & Remote

This plugin can run on your machine or connect to a hosted endpoint. during install.

Documentation

View on GitHub

From the project's GitHub README.

opchain

skills that ship.

A coordinated set of Claude skills covering the full software development pipeline — discover, spec, design, build, audit, ship, scale. One skill per phase. A shared JSON checkpoint protocol carries context across sessions and skills, so work resumes where you left off.

Site & docs: https://opchain.dev


install

Claude Code — plugin (recommended)

Ships the skills plus the hooks that enforce them: a commit gate bound to the code being committed, pipeline state at session start, and a pointer to the next skill when one finishes.

/plugin marketplace add asfbay-bit/opchain-skills
/plugin install opchain

Claude Code — zip (skills only, no hooks)

curl -L https://opchain.dev/opchain-skills.zip -o opchain-skills.zip
unzip opchain-skills.zip -d .claude/skills/
claude
> /oc-discover

Claude.ai / Claude Desktop

  1. Download any SKILL.md from skills/
  2. Open Claude → Settings → Customize → Skills
  3. Upload the file
  4. Start a new conversation and trigger it by name

Team (check into git)

git add .claude/skills/
git commit -m "chore: add opchain skills"
git push

Upgrade

# .checkpoints/ is a sibling of .claude/ — never touched by this swap
rm -rf .claude/skills/
curl -L https://opchain.dev/opchain-skills.zip -o opchain-skills.zip
unzip opchain-skills.zip -d .claude/skills/
rm opchain-skills.zip

Verify the installed version against the published one:

curl -sS https://opchain.dev/api/health | jq .version

skills

skillwhat it does
oc-app-architectDiscover → spec → build, with Generator/Evaluator QA loop
oc-stack-forgeStack advisor across Cloudflare, Vercel, AWS, Supabase, etc.
oc-ux-engineerDesign Planner → Generator → Evaluator harness
oc-dash-forgeDashboards and dense-data UIs (spec + React prototype)
oc-integrations-engineerThird-party API integrations (Slack, Stripe, OAuth)
oc-api-devFirst-party API design (OpenAPI, GraphQL, SDKs)
oc-claude-apiClaude API apps: model routing, prompt caching, tool use
oc-rag-forgeRAG systems: vector DBs, embeddings, chunking, retrieval eval
oc-agent-forgeClaude Agent SDK apps: topology, tool budgets, harness loops
oc-prompt-opsPrompts as code: versioning, eval datasets, regression detection
oc-qa-opsTest-pyramid design: coverage budgets, contract-test matrix, load plans
oc-data-opsData pipelines: ingestion, dbt layering, observable data contracts
oc-signal-forgeQuestion → trustworthy metric: instrument, harvest, verify, wire
oc-code-auditorAuditor → Fixer → Verifier; 5-layer pre-deploy sweep
oc-security-auditorThreat modeling, OWASP hardening, attack-surface review
oc-security-hardeningExecutes the fixes + per-deploy hardening gate (/oc-harden)
oc-compliance-opsControl register + audit-ready evidence bundles at deploy time
oc-bug-checkPre-commit QA gate: types, lint, tests, anti-patterns, secrets
oc-docs-forgePR documentation packets, README/changelog/ADR upkeep
oc-repo-opsRepo hygiene + PR readiness gate: catalogs, generated files
oc-git-opsBranches, commits, PRs, sync
oc-deploy-opsAudit gate → staging → production with rollback
oc-fleet-opsSelf-managed fleets: IaC, multi-container rollouts, day-2 ops
oc-modularize-opsLive-monolith decomposition with golden-fixture proof
oc-monitoring-opsPost-deploy observability — uptime, errors, alerts
oc-scale-opsLoad tests, perf budgets, caching, capacity planning
oc-migration-opsDB / framework / auth / platform migrations
oc-cost-opsLLM cost attribution, budget gates, model-tier routing
oc-telemetry-opsOpt-in local usage metering, anonymized dashboard aggregates
oc-reverse-specReverse-engineer existing code into spec docs
oc-release-opsVersion bumps, changelogs, release announcements
oc-orchestratorCross-skill status and routing (/oc-ops)
oc-checkpoint-protocolShared session-persistence schema (bundled in every skill)

Full descriptions, triggers, and examples: https://opchain.dev/skills


the checkpoint protocol

Every skill writes a JSON checkpoint to .checkpoints/ in your project. Skills read each other's checkpoints to make informed decisions — context flows forward without manual handoffs.

  • oc-deploy-ops reads oc-code-auditor — CRITICAL findings block deploy
  • The build evaluator reads oc-ux-engineer — grades frontend against the approved design spec
  • oc-git-ops reads oc-app-architect — names branches by sprint

Schema lives in skills/oc-checkpoint-protocol/SKILL.md.


this repository

This is a public, force-push snapshot mirror of the skill source. The site, build system, and internal tooling live in a private upstream repo; only the product (this directory) is published here, refreshed on every change to main upstream.

See CONTRIBUTING.md for how issues and PRs flow back into the upstream repo.


license

Apache-2.0 — see LICENSE and NOTICE. Releases up to and including v1.8.2 were published under MIT.

Reviews

No reviews yet

Be the first to review this server!