{"$schema":"https://wellknown.network/schemas/agent-record-v1.json","schemaVersion":"1","id":"ag_n4p6xh9hmdbb","handle":"command-vault-mcp","url":"https://wellknown.network/agents/command-vault-mcp","links":{"self":"https://wellknown.network/agents/command-vault-mcp/record.json","html":"https://wellknown.network/agents/command-vault-mcp","markdown":"https://wellknown.network/agents/command-vault-mcp/record.md","api":"https://wellknown.network/api/v1/agents/command-vault-mcp","status":"https://wellknown.network/api/v1/agents/command-vault-mcp/status","claim":"https://wellknown.network/agents/command-vault-mcp/claim","claimApi":"https://wellknown.network/api/v1/claims","claimDescriptor":"https://wellknown.network/agents/command-vault-mcp/claim.json","badge":"https://wellknown.network/agents/command-vault-mcp/badge.svg","openapi":"https://wellknown.network/openapi.json"},"ard":{"identifier":"urn:air::server:command-vault-mcp","type":"application/mcp-server-card+json"},"kind":"mcp_server","declared":{"name":"command-vault-mcp","summary":"Search and retrieve security commands, exploit scripts, and methodology from your pentest writeups and shell history. CLI + MCP server for AI assistants.","description":"# Command Vault (also MCP)\n\n> *\"What was that certipy command I used for ESC8?\"*\n> *\"How did I exploit that shadow credentials thing again?\"*\n\nCommand Vault indexes **commands**, **scripts**, and **prose** from your penetration testing writeups and shell history into a searchable database with full context — what tool, what technique, which box. MCP-ready for AI assistants.\n\n## Features\n\n- **Command search** — Ranked FTS across command text and its context, with tool/category/tag filters\n- **Prose search** — Search section-aware evidence, including methodology and fenced log/XML text; read source context by reference\n- **Script search & retrieval** — Find detected scripts by language/library and retrieve their indexed code by ID\n- **Ranked fallback** — Multi-word queries try AND first, then BM25-ranked OR if no AND matches exist; fallback is not a relevance guarantee\n- **Shell history** — Index `~/.zsh_history` or `~/.bash_history` with deduplication and selected redaction patterns; dates stay unknown when absent\n- **Tag filtering** — Search by extracted `#hashtags`; all requested tags must match\n- **Smart categorization** — 200+ tool names mapped to categories (recon, AD, web, privesc, etc.); unknown names fall back to `misc`\n- **Template generation** — Heuristic placeholders for recognized IPs, lab domains, and credential arguments; not comprehensive secret removal\n- **Multiple writeup types** — Boxes, challenges, and Sherlocks with unified or legacy directory modes\n\n## Installation\n\nRequires Python 3.11+. [uv](https://docs.astral.sh/uv/guides/projects/) is recommended for the source\ninstallation; it is not required by the installed runtime. To install from source:\n\n~~~bash\ngit clone https://github.com/x746b/command-vault.git\ncd command-vault\nuv sync --frozen\nsource .venv/bin/activate\n~~~\n\nIf an existing checkout uses `.venv-v2`, use `UV_PROJECT_ENVIRONMENT=.venv-v2 uv sync --frozen` and\nactivate `.venv-v2/bin/activate` instead. The examples below assume the sele…","publisher":null,"homepage":null,"repository":null,"version":"0.9.1","license":null,"protocols":["mcp"],"tags":["mcp"],"pricing":null,"endpoints":[{"url":"pypi:command-vault-mcp","type":"package_pypi","auth":null,"probeable":false}],"skills":null,"tools":null,"extra":null,"attribution":{"kind":"pypi","name":"pypi","summary":"pypi","version":"pypi","description":"pypi"}},"derived":{"capabilities":[{"slug":"security.secrets","name":"Secrets Management","confidence":1,"provenance":"derived"},{"slug":"security.scanning","name":"Security Scanning","confidence":0.848,"provenance":"derived"},{"slug":"dev.docs-lookup","name":"Documentation Lookup","confidence":0.791,"provenance":"derived"},{"slug":"dev.version-control","name":"Version Control","confidence":0.745,"provenance":"derived"},{"slug":"dev.terminal","name":"Terminal & Shell","confidence":0.745,"provenance":"derived"}],"categories":["dev","security"],"language":"en"},"observed":{"status":"unknown","statusReason":"Distributed as a package to run locally; no network endpoint to check.","lastOkAt":null,"lastProbedAt":null,"statusComputedAt":null,"reliability30d":null,"latestObservations":[],"tools":null,"package":{"name":"command-vault-mcp","registry":"pypi","observedAt":"2026-09-09T12:30:04.877Z","publishedAt":"2026-09-09T11:09:47.674069Z","latestVersion":"0.9.1"}},"verification":{"claimed":false,"claimedAt":null,"proofs":[]},"provenance":{"sources":[{"source":"pypi","key":"command-vault-mcp","url":"https://pypi.org/project/command-vault-mcp/","firstSeenAt":"2026-09-09T12:27:19.354Z","fetchedAt":"2026-09-09T13:20:06.156Z","normalizedAt":"2026-09-09T13:20:06.156Z"}]},"firstSeenAt":"2026-09-09T12:27:19.354Z","updatedAt":"2026-09-09T12:30:04.877Z"}