Tca Mcp Server — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Tca Mcp Server (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Official website (https://tca.tencent.com) MCP Server supporting MCP protocol for quickly starting code analysis and obtaining code analysis reports.
Tencent Cloud Code Analysis (TCA), which started in 2012 (internal code name: CodeDog), is a cloud-native, distributed, and high-performance comprehensive code analysis and tracking management platform integrating numerous code analysis tools. Its main functions are to continuously track and analyze code, observe project code quality, and support teams in inheriting code culture. For more information about Tencent Cloud Code Assistant, please visit the official website usage guide: https://tca.tencent.com/document/zh/guide/.
Official website: https://tca.tencent.com/




tca-mcp.ini configuration file in the code repositoryCreate a tca-mcp.ini configuration file in the code repository that needs code analysis. The configuration file is stored in the root directory of the code repository, and the content of the configuration file is as follows:
[config]
project_id=<project_id>
repo_id=<repo_id>
org_sid=<org_sid>
team_name=<team_name>Relevant parameters can be obtained from the route of the corresponding page, as shown in the following figure:

Where 4iYVpci9nAX corresponds to org_sid; 19485 corresponds to repo_id; 234521 corresponds to project_id; first corresponds to team_name. Fill in according to the actual situation.
{
"mcpServers": {
"tca-mcp-server": {
"command": "npx",
"args": ["-y", "-p", "tca-mcp-server@latest", "tca-mcp-stdio"],
"env": {
"TCA_TOKEN": "<TCA_TOKEN>",
"TCA_USER_NAME": "<TCA_USER_NAME>"
}
}
}
}The corresponding TCA_TOKEN and TCA_USER_NAME are obtained from the TCA official website, [Personal Center] -> [Personal Token], and can be accessed at https://tca.tencent.com/user/token.
Requirements: nodejs >= 22.0.0
1,npm run build 2, Manually add test configuration:
{
"mcpServers": {
"tca-mcp-server-test": {
"command": "node",
"args": ["/path/to/tca-mcp-server/dist/stdio.js"],
"env": {
"TCA_TOKEN": "<TCA_TOKEN>",
"TCA_USER_NAME": "<TCA_USER_NAME>",
}
}
}
}~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.