Claude Code Organizer (CCO)
MCP server prompt injection is a real and underappreciated enterprise risk.
A zero-install (npx) dashboard that audits what your AI coding tool loads into context: it scans MCP servers for prompt injection, flags scope misconfigurations, tracks how much of your context-token budget each item consumes, and manages skill, memory, and hook scopes. Formerly Claude Code Organizer; now cross-harness, covering both Claude Code and Codex CLI.
- Audit what tools and data Claude loads into every session
- Spot security risks in third-party tool configurations
- Track how much of the context budget each tool consumes
MCP server prompt injection is a real and underappreciated enterprise risk. CCO is the only tool combining security scanning, context optimization, and scope management — a compelling governance story for enterprise clients.
Developers and IT admins deploying Claude Code at scale who need visibility into what Claude is loading, especially teams adopting third-party MCP servers.
https://github.com/mcpware/cross-code-organizer
By mcpware
How to Get It
npx @mcpware/cross-code-organizer
Tip: Paste this into a Claude Code conversation. Verify command matches your Claude Code version.
After installing, paste this into Claude:
Help me audit what tools and data Claude loads into every session
Trust Signals Reviewed
Community Pulse Growing
Discussed on Reddit
- Anthropic Left Its Unreleased AI Model Docs On A Public Server, And The Leaked F — Reddit · 2765 pts
- Claude Code can now /dream — Reddit · 2431 pts
- Claude Code Organized My Notes — Reddit · 331 pts
3 mentions across 1 sources
Reviewer notes
Reviewed review. These are observations, not a security certification.
catalog_hygiene stale-eval refresh: Scored from trust signals (evidence-eval-v1): 364 GitHub stars; 1 contributors; last commit 53d ago; license MIT.
2026-04-02: LIMITATION: Pre-1.0. MCP security scanner covers known injection patterns but cannot detect novel or obfuscated prompt injection techniques.
Things to check
- Requires npx and Node.js; dashboard visibility depends on how Claude Code is integrated into your IDE. Doesn't prevent injection at runtime, only audits configured scopes.
- Single maintainer. Consider the risk if this person stops maintaining the project.
How to evaluate tools before deploying →
Data shown here comes from public APIs and automated scanning. Reviewer notes reflect one person's experience. This is not a security certification or legal recommendation. Always evaluate tools according to your own organization's policies.
Evaluation
catalog_hygiene stale-eval refresh: Scored from trust signals (evidence-eval-v1): 364 GitHub stars; 1 contributors; last commit 53d ago; license MIT.