Revit Mcp — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Revit Mcp (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Revit integration via Autodesk Platform Services — Extract elements, parameters, run schedules, detect clashes, export IFC.
| Tool | Description |
|---|---|
revit_upload | Upload Revit file to APS and translate |
revit_get_elements | Get elements by category |
revit_get_parameters | Get element parameters |
revit_run_schedule | Extract schedule data |
revit_clash_detect | Clash detection with VDC rules |
revit_export_ifc | Export model as IFC |
revit_get_sheets | List all sheets |
revit_get_views | List all views |
{
"mcpServers": {
"revit": {
"url": "https://revit-mcp.itmartin24.workers.dev/mcp"
}
}
}MIT — ScanBIM Labs LLC
Two accepted header formats. Use one, do NOT mix:
x-scanbim-api-key: <your_user_key> — value is the user_key verbatim.Authorization: Bearer sk_scanbim_<your_user_key> — value is the entire string including the sk_scanbim_ prefix; the D1 user_key column must match this full string.Mixing formats auto-creates a fresh free-plan row for the alternate key (you'll silently get a new 50-credit account on each switch).
Get your user_key at scanbim.app/settings/billing.
curl -X POST https://mcp.scanbimlabs.io/unified/mcp \
-H "content-type: application/json" \
-H "x-scanbim-api-key: $SCANBIM_USER_KEY" \
-d '{"jsonrpc":"2.0","id":1,"method":"tools/call","params":{"name":"list_models","arguments":{}}}'200 — tool call proceeded; credits debited.401 — missing or malformed auth header (middleware returns JSON-RPC error code -32001).402 — insufficient credits; response body includes checkout_urls for all 5 credit packs and top_up_url for the billing page.~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.