@legnaos/legnacode
BMCP server package @legna-lnc/legnacode
Install
agr install @legnaos/legnacode --target claudeThis artifact does not publish files for Claude.
Document
{ "name": "@legna-lnc/legnacode", "version": "2.1.9", "description": "LegnaCode — legna.lnc's official CLI for coding assistance", "type": "module", "bin": { "legna": "npm/bin/legna.cjs" }, "files": [ "npm/", "README.md", "CHANGELOG.md" ], "repository": { "type": "git", "url": "https://github.com/LegnaOS/LegnaCode-cli.git" }, "homepage": "https://github.com/LegnaOS/LegnaCode-cli", "keywords": [ "cli", "ai", "claude", "coding", "assistant", "legnacode", "anthropic" ], "scripts": { "postinstall": "node npm/postinstall.cjs", "build": "bun run scripts/build.ts && python3 scripts/postbuild-fix.py", "compile": "bun run scripts/compile.ts", "compile:all": "bun run scripts/compile-all.ts", "publish:all": "bun run scripts/publish.ts", "dev": "bun --watch src/main.tsx", "typecheck": "tsc --noEmit", "lint": "eslint src/", "clean": "rm -rf dist legna" }, "dependencies": { "@alcalzone/ansi-tokenize": "^0.1.3", "@anthropic-ai/bedrock-sdk": "^0.26.4", "@anthropic-ai/claude-agent-sdk": "^0.1.0", "@anthropic-ai/foundry-sdk": "^0.2.3", "@anthropic-ai/sdk": "^0.52.0", "@anthropic-ai/vertex-sdk": "^0.14.4", "@aws-sdk/client-bedrock": "^3.1020.0", "@aws-sdk/client-bedrock-runtime": "^3.700.0", "@aws-sdk/client-sts": "^3.1020.0", "@azure/identity": "^4.13.1", "@commander-js/extra-typings": "^13.1.0", "@growthbook/growthbook": "^1.3.0", "@modelcontextprotocol/sdk": "^1.12.0", "@opentelemetry/api": "^1.9.0", "@opentelemetry/api-logs": "^0.57.0", "@opentelemetry/core": "^1.30.0", "@opentelemetry/exporter-logs-otlp-grpc": "^0.214.0", "@opentelemetry/exporter-logs-otlp-http": "^0.214.0", "@opentelemetry/exporter-logs-otlp-proto": "^0.214.0", "@opentelemetry/exporter-metrics-otlp-grpc": "^0.214.0", "@opentelemetry/exporter-metrics-otlp-http": "^0.214.0", "@opentelemetry/exporter-metrics-otlp-proto": "^0.214.0", "@opentelemetry/exporter-prometheus": "^0.214.0", "@opentelemetry/exporter-trace-otlp-grpc": "^0.214.0", "@opentelemetry/exporter-trace-otlp-http": "^0.214.0", "@opentelemetry/exporter-trace-otlp-proto": "^0.214.0", "@opentelemetry/resources": "^2.0.0", "@opentelemetry/sdk-logs": "^0.57.0", "@opentelemetry/sdk-metrics": "^1.30.0", "@opentelemetry/sdk-trace-base": "^1.30.0", "@opentelemetry/semantic-conventions": "^1.30.0", "ajv": "^8.17.0", "asciichart": "^1.5.25", "auto-bind": "^5.0.1", "axios": "^1.7.0", "bidi-js": "^1.0.3", "chalk": "^5.4.0", "chokidar": "^4.0.0", "cli-boxes": "^3.0.0", "commander": "13", "diff": "^7.0.0", "emoji-regex": "^10.4.0", "env-paths": "^3.0.0", "execa": "^9.5.0", "fflate": "^0.8.2", "figures": "^6.1.0", "fuse.js": "^7.0.0", "get-east-asian-width": "^1.3.0", "google-auth-library": "^9.15.0", "highlight.js": "^11.11.0", "https-proxy-agent": "^7.0.0", "ignore": "^7.0.0", "indent-string": "^5.0.0", "ink": "^5.1.0", "jsonc-parser": "^3.3.0", "lodash-es": "^4.17.21", "lru-cache": "^11.0.0", "marked": "^15.0.0", "p-map": "^7.0.0", "picomatch": "^4.0.0", "proper-lockfile": "^4.1.2", "puppeteer-core": "^25.0.4", "qrcode": "^1.5.4", "react": "19", "react-compiler-runtime": "^1.0.0", "react-reconciler": "0.33.0", "semver": "^7.6.0", "sharp": "^0.34.5", "shell-quote": "^1.8.0", "signal-exit": "^4.1.0", "stack-utils": "^2.0.6", "strip-ansi": "^7.1.0", "supports-hyperlinks": "^3.1.0", "tree-kill": "^1.2.2", "turndown": "^7.2.2", "type-fest": "^4.30.0", "undici": "^7.3.0", "usehooks-ts": "^3.1.0", "vscode-jsonrpc": "^8.2.0", "vscode-languageserver-protocol": "^3.17.0", "vscode-languageserver-types": "^3.17.0", "wrap-ansi": "^9.0.0", "ws": "^8.18.0", "xss": "^1.0.15", "yaml": "^2.7.0", "zod": "^3.25.0" }, "devDependencies": { "@types/bun": "^1.2.0", "@types/diff": "^7.0.0", "@types/lodash-es": "^4.17.12", "@types/node": "^22.10.0", "@types/proper-lockfile": "^4.1.4", "@types/qrcode": "^1.5.5", "@types/react": "^18.3.0", "@types/react-reconciler": "^0.28.8", "@types/semver": "^7.5.8", "@types/shell-quote": "^1.7.5", "@types/stack-utils": "^2.0.3", "@types/ws": "^8.5.0", "typescript": "^5.7.0" }, "engines": { "bun": ">=1.2.0" }, "optionalDependencies": { "@legna-lnc/legnacode-darwin-arm64": "2.1.9", "@legna-lnc/legnacode-darwin-x64": "2.1.9", "@legna-lnc/legnacode-darwin-x64-baseline": "2.1.9", "@legna-lnc/legnacode-linux-x64": "2.1.9", "@legna-lnc/legnacode-linux-x64-baseline": "2.1.9", "@legna-lnc/legnacode-linux-arm64": "2.1.9", "@legna-lnc/legnacode-win32-x64": "2.1.9", "@legna-lnc/legnacode-win32-ia32": "2.1.9" } }
Trustgrade B
- passBody integrity
Whether the stored document is plausibly the kind of file the artifact declares, rather than something fetched by mistake.
- warnType matchbest-effort: server code not analyzed
Whether the artifact is really the kind of thing its metadata claims it is.
- passFreshness
How long since the source repository was last pushed to.
- passPrompt injection
Scans the artifact's own text for instructions aimed at your agent rather than at you.
- warnLicenseno SPDX license detected
Whether the source repository declares an SPDX license permissive enough to redistribute.
How the grade is calculated
Each check contributes 0 points when it passes, 1 when it warns, and 2 when it fails. The total maps to a letter:
- Aevery check passed
- Bone warning
- Ctwo warnings
- Dprompt injection or body integrity failed, or three warnings
- Fone of those failed, and something else is wrong
These are automated hygiene checks, not a security audit, and not a dependency or vulnerability scan. A grade of A means nothing was flagged — not that the artifact is safe.
Versions
git-597598d72c932026-08-06