1. Conduid
  2. Security
  3. Flow Otter
MCP server · Security

Flow Otter

MCP server that lets AI agents author Node-RED flows a plant operator can read — computed layout, typed authoring, safety-spine staging and rollback.

34Low

Scored 2 hours ago · breakdown

About Flow Otter

Flow Otter is an MCP server published by jp5lab in the Security category: mCP server that lets AI agents author Node-RED flows a plant operator can read — computed layout, typed authoring, safety-spine staging and rollback. It has been installed 0 times through Conduid.

The repository has 1 stars and 0 forks.

Install

Clone
git clone https://github.com/jp5lab/flow-otter

This server has no ConduID identity, so agent calls to it are not receipted. Pin the version you install and review the source before granting it credentials.

Ask AI

Ask AI about Flow Otter

Powered by Claude · Grounded in docs

I know everything about Flow Otter. Ask me about installation, configuration, usage, or troubleshooting.

Security checks

  • ·README presentNot checked yet.
  • ·License declaredNot checked yet.
  • ·Tests presentNot checked yet.
  • ·Dependencies pinnedNot checked yet.
  • ·No dynamic code executionNot checked yet.
  • ·Scoped permissionsNot checked yet.

Releases

v1.2.0v1.2.0 — Security hardening + non-idempotent-retry guard + correctness audit · 17 May 2026Security hardening + correctness audit. Second-round review pass: closes path-traversal exposure on `set_target`, fixes a subflow-instance authoring bug that left every staged subflow failing validation, eliminates an audit race against…
v1.1.0v1.1.0 — Roundtrip fidelity + config-knob enforcement + tool-ID symmetry · 17 May 2026Correctness pass. The v0.3.0 schema additions (junction, tab `locked`/`env`, group `g`/`info`/`x/y/w/h`, comment `w/h`) were declared in `flows-json.ts` but never propagated through the decompile→compile pipeline, so any author tool…
v1.0.1v1.0.1 — Sealed release · 16 May 2026FlowOtter v1.0.1 — sealed release.** v1 is feature-frozen; bug & security fixes only. 60 MCP tools across read / author / deploy / dangerous tiers with byte-identical idempotent compilation, snapshot-before-deploy with hash-drift refusal,…
Questions

About Flow Otter

How do I install Flow Otter?

Run git clone https://github.com/jp5lab/flow-otter, then add the server to your MCP client's configuration. Conduid has recorded 0 installs, so the command is known to work with current clients.

Is Flow Otter safe to use with an AI agent?

Its trust score is 34 out of 100 (low). Conduid hasn't run static security checks on this repository yet, so review the source yourself before granting it credentials. It has no ConduID identity yet, so agent calls to it are not receipted.

Is Flow Otter still maintained?

Conduid hasn't recorded a commit date for this repository yet. Check the repository directly for recent activity.