FREEYour first GitHub repository audit is free. No card, every finding included.

MCP CONNECTORS & PLUGINS COMING SOON

Aster inside
your AI coding tools.

Soon you’ll ask Claude, Cursor or VS Code to audit a repository, explain a finding or draft a fix, with Aster’s checks behind the answer. It isn’t available yet. Here is how it will work.

Illustration: in an AI coding tool, you ask it to audit demo/storefront. The tool calls Aster’s planned audit_repository tool, Aster reads the repository read-only and returns three findings, and the assistant summarises the high-severity one and offers to draft a fix that asks before anything is written.

Preview of a planned integration with an example repository. Tool names may change before launch.

WHAT IS MCP

One standard plug
between AI apps and tools.

The Model Context Protocol is an open standard. An AI app (the host) runs a small client for each server it connects to. A server, like Aster’s, describes what it can do, and the model calls it when your question needs it.

Connect. You add Aster once. Your AI app starts an MCP client for it and you sign in with OAuth, so there are no keys to paste.

Tools

Actions the model can call, like audit_repository or list_findings.

Resources

Context it can read, like your latest saved report.

Prompts

Ready-made starters, like “Review my last audit”.

LOCAL · STDIO runs on your machine REMOTE · HTTP + OAUTH hosted, sign in once. Aster plans a hosted server.

PLANNED TOOLS · ILLUSTRATION

Just ask.
Aster does the checking.

Pick a question to see the tool call behind it. Reading tools run without changing anything; anything that could change code asks you first.

audit_repositoryREAD-ONLY
tools/call · request
{ "repo": "demo/storefront" }

RETURNS

  • Pinned commit, 94 files read
  • 1 HIGH1 MEDIUM1 LOW
  • A saved report, same as your dashboard

Planned tools, shown as an illustration. Names, inputs and plan availability may change before launch.

WHERE IT WILL WORK · PLANNED

Your tools speak MCP.
Aster will plug in.

Most AI coding tools can add an MCP server in a minute. Here is where we plan to support Aster, and how you’d add it.

  • Claudeclaude.ai & desktop

    Settings → Connectors → add a custom connector

    PLANNED
  • Claude Codeterminal & IDE

    claude mcp add, or the Aster plugin

    PLANNED
  • Cursoreditor

    Settings → MCP, or .cursor/mcp.json

    PLANNED
  • VS CodeGitHub Copilot agent mode

    .vscode/mcp.json in your workspace

    PLANNED
  • WindsurfCascade

    Cascade → MCP servers

    PLANNED
  • ChatGPTdeveloper mode

    Connectors → add a remote server

    PLANNED
  • Copilot CLIterminal

    Add a server to its MCP config

    PLANNED
  • Any MCP clientopen standard

    Remote server URL + OAuth sign-in

    PLANNED

Product names and logos belong to their owners and show where we plan to support Aster. No partnership is implied, and none of these connections is available yet.

CLAUDE CODE PLUGIN · PLANNED

One install.
Commands, agents, server.

A Claude Code plugin is a folder that bundles skills, slash commands, subagents, hooks and MCP servers. You install it from a marketplace with /plugin, and everything arrives together.

Select a file to see what it would add.

aster/ · PLANNED PLUGINILLUSTRATION
MANIFESTNames the plugin “aster”

Version and description, so your marketplace shows what you’re installing.

Plugins run with your permissions. Install only from sources you trust.

SAFE BY DESIGN

Reads by default.
Then you decide.

The same rules as the dashboard, wherever you use Aster.

  • Reading tools only read: audits never write to GitHub
  • OAuth sign-in: no API keys to paste, revoke any time
  • Tokens are issued for Aster’s server only
  • Only the repositories you already shared with Aster
  • Fixes show the model and cost first; draft PRs need Aster Fixes
  • Never merged automatically

Illustration: reading tools run straight away; the draft_fix tool stops and asks you to allow it, showing the model and credit cost.

Illustration of a planned flow. Your AI app’s own approval prompt may look different.

SETUP PREVIEW

About a minute to add.
When it ships.

A sneak peek at the setup in each tool. It won’t connect yet: the address below is an example.

PREVIEW · NOT AVAILABLE YET
Terminal · preview, address published at launch
claude mcp add --transport http aster <ASTER_MCP_URL — published at launch>

Then run /mcp in Claude Code and sign in with Aster.

QUESTIONS

Coming soon.
Clear answers.

Can I use Aster from my AI coding tool today?

Not yet. The MCP server and the Claude Code plugin are planned and not available. Today you run audits and fixes in the Aster dashboard, and you can paste a finding into any assistant.

What is MCP, in one sentence?

An open standard that lets AI apps such as Claude, Cursor and VS Code connect to outside tools through one common interface, so a tool built once works in many apps.

Will it change my code?

Not on its own. Reading tools only read. Drafting a fix shows the model and cost and asks you first, and publishing a draft pull request still needs the separate Aster Fixes authorization. Nothing is merged automatically.

Which tools will it support, and when?

We plan to start with tools that support remote MCP servers with OAuth, such as Claude, Claude Code, Cursor and VS Code. We don’t publish dates; get notified and we’ll email you when it’s ready.

Will it need a paid plan?

We’ll share plan details at launch. Today, audits start free and AI-assisted fixes are part of paid plans; we expect the same split.

Is it safe to add MCP servers?

Add servers only from sources you trust, check what each tool can do, and keep your AI app’s approval prompts on. Aster’s server will be read-only by default and use OAuth, so you can revoke it any time.

Want it first?
Get notified.

Email us and we’ll write when Aster’s MCP server and plugin are ready. Until then, your first audit is free in the dashboard.

Aster

CHECKING

YOUR GUIDE TO ASTER

Hi, I’m Aster.
Ask me anything about securing your app.

I can’t see your code from here. Please don’t paste secrets or private code.

Prepared answers are always available.