Rigour
MCP server by Rigour Labs
Run quality gates on AI coding agent output: catch leaked secrets, fake imports and bugs while the agent writes code.
Install Rigour
Runs on your machine. Your client starts it with this command:
Needs Node.js on your computer. The setup steps below show where the command goes in each client.
Share this server
Opens this page, with the install command and setup steps.
mcp.tc/i/rigourAbout
Rigour checks the code an AI coding agent writes, while it writes it. It looks for leaked secrets, imports of packages that do not exist and bugs it can prove, and it asks the agent to fix them before moving on. It also keeps lessons from fixed mistakes so agents are told about them before writing similar code.
The MCP server runs locally over stdio through the npm package @rigour-labs/mcp, started with npx. It works with Claude Code, Cursor, Codex, Cline and Windsurf. No sign-in is needed. A model API key is only needed for reviewing code written without an agent and for the pull request bot.
What you can do
- Catch leaked secrets and nonexistent imports as the agent edits code
- Run lint, test and build checks on current changes
- Review a change or branch before opening a pull request
- Persist lessons from fixed mistakes for future agent sessions
- Point the agent at risky changes before it reports done
Tools
Local servers list their tools once they’re running, and this one doesn’t publish its list in advance. Your client shows them after you add it.
Example prompts
Run Rigour on my current changes before I open a pull request
Check this branch for leaked secrets and imports that don't exist
Review the risky parts of my last edit and fix what Rigour finds
Run the quality gates for this repository
Set up
Every client starts Rigour on your machine with the same command. Pick yours; the page remembers your choice.
Claude Code
- Run this in a terminal, in your project folder:
claude mcp add --transport stdio rigour -- npx -y @rigour-labs/mcp- Start Claude Code and type
/mcp. rigour should show as connected.
Add --scope user to make it available in every project.
Claude Desktop
- Open Settings → Developer → Edit Config. It opens
claude_desktop_config.json. Add:
{
"mcpServers": {
"rigour": {
"command": "npx",
"args": [
"-y",
"@rigour-labs/mcp"
]
}
}
}- Save the file and restart Claude Desktop.
Needs Node.js on your computer. The file lives in ~/Library/Application Support/Claude/ on macOS and %APPDATA%\Claude\ on Windows.
Cursor
Add to Cursor (opens in a new tab)
Or add it by hand to ~/.cursor/mcp.json (all projects) or .cursor/mcp.json (this project):
{
"mcpServers": {
"rigour": {
"command": "npx",
"args": [
"-y",
"@rigour-labs/mcp"
]
}
}
}Needs Node.js on your computer.
VS Code
Install in VS Code (opens in a new tab)
Or from a terminal:
code --add-mcp '{"name":"rigour","type":"stdio","command":"npx","args":["-y","@rigour-labs/mcp"]}'Or commit it to the repo in .vscode/mcp.json:
{
"servers": {
"rigour": {
"type": "stdio",
"command": "npx",
"args": [
"-y",
"@rigour-labs/mcp"
]
}
}
}Needs Node.js on your computer.
Devin Desktop
- Add it to
~/.config/devin/mcp_config.json(macOS and Linux) or%APPDATA%\devin\mcp_config.json(Windows):
{
"mcpServers": {
"rigour": {
"command": "npx",
"args": [
"-y",
"@rigour-labs/mcp"
]
}
}
}- Refresh the MCP server list in Cascade.
Devin Desktop is the new name for Windsurf.
Codex
codex mcp add rigour -- npx -y @rigour-labs/mcpOr edit ~/.codex/config.toml directly:
[mcp_servers.rigour]
command = "npx"
args = ["-y", "@rigour-labs/mcp"]Needs Node.js on your computer.
Gemini CLI
gemini mcp add rigour npx -- -y @rigour-labs/mcpThis adds it to the current project. Add -s user to use it everywhere.
Any client
Most clients that start local servers accept this shape:
{
"mcpServers": {
"rigour": {
"command": "npx",
"args": [
"-y",
"@rigour-labs/mcp"
]
}
}
}Zed puts servers under context_servers in its settings, with the same command, args and env fields.
Needs Node.js on your computer.
FAQ
Can I paste mcp.tc/i/rigour into my MCP client?
No. Rigour runs on your own computer, started by your client, so it has no web address to connect to. The quick link is the page to share; the install command is npx -y @rigour-labs/mcp.
Does Rigour need an API key?
No. It doesn’t declare any keys or environment variables. It runs with your user account’s permissions, so check what its tools can reach.
Is Rigour a remote or a local server?
Local. Your client starts it as a process on your computer with npx -y @rigour-labs/mcp, which needs Node.js.
What can Rigour do?
You can catch leaked secrets and nonexistent imports as the agent edits code, run lint, test and build checks on current changes and review a change or branch before opening a pull request.
Which clients can use it?
Any client that starts local servers: Claude Code, Claude Desktop, Cursor, VS Code, Devin Desktop, Codex, Gemini CLI, Zed and others. claude.ai and ChatGPT only connect to remote servers.
Who wrote this page?
mcp.tc’s robot read Rigour’s public metadata (its package and repository pages), and an AI model drafted the text from it. A person reviews anything the checks can’t confirm. The text can still be wrong, so if you spot a mistake, use Report this listing on this page.
Embed
Show Rigour in a README or on your site. Each embed links to this page, uses the server’s own install command, and sets no cookies. How embeds work
README badge
[](https://mcp.tc/i/rigour)<a href="https://mcp.tc/i/rigour"><img src="https://mcp.tc/i/rigour/badge.svg" alt="Rigour on mcp.tc" height="20"></a>It follows the reader’s light or dark mode. Add ?theme=light or ?theme=dark to fix it, or ?style=compact to show the mark without the word.
Website card
<script src="https://mcp.tc/w/rigour.js" async></script>The card appears where the tag is. Add data-theme="dark" or data-size="compact" to the tag to change it. The file holds everything it needs, so it makes no other requests and sets no cookies.
iframe
<iframe src="https://mcp.tc/embed/rigour" title="Rigour on mcp.tc" width="420" height="200" loading="lazy" allow="clipboard-write" style="border:0;border-radius:8px;max-width:100%"></iframe>Use it on pages that don’t allow scripts. Add ?theme=light or ?theme=dark to the address to fix the colors.
JSON
The listing as data for your own pages and tools: name, tagline, install command, tools and the “Add to” links. Any site can read it (CORS is open).
https://mcp.tc/i/rigour.jsonmcp.tc isn’t affiliated with Rigour Labs. This page was built from Rigour’s public metadata, last checked on 4 Oct 2026, and an AI model wrote the description, so it can be wrong. Names and marks belong to their owners. Something off? Report this listing.