Enterprise DNA Enterprise DNA
M MCP Servers Developer low

swnotmetal/Project-Koma

by Various

Lightweight, agent-friendly AI security toolkit for Node.js & TypeScript. Check if your agent has loaded the skill, Stop prompt injection, audio hallucinations, and RAG data scrapi

MCP

swnotmetal/Project-Koma

Added 8 Sept 2026

#ai-firewall #ai-governance #ai-security #ai-tools #guardrails #llm-security #middleware #nodejs

Overview

Lightweight security toolkit for AI agents built in Node.js and TypeScript. It verifies that an agent has loaded a skill, and provides protections against prompt injection, audio hallucinations, and RAG data scraping. The package has zero dependencies and is released under the MIT license.

Best for

Best for
Node.js developers building secure AI agents

Use cases

  • Verify that an agent has loaded a required skill before execution
  • Block prompt injection attempts in agent conversations
  • Prevent RAG data scraping from agent memory stores

How to use

Install

npx koma-miko init --host claude

Tested with

Claude Code, VS Code, ChatGPT

Notes

Lightweight security toolkit for AI agents built in Node.js and TypeScript. It verifies that an agent has loaded a skill, and provides protections against prompt injection, audio hallucinations, and RAG data scraping. The package has zero dependencies and is released under the MIT license.

12 stars on GitHub. Last updated 2026-09-07. Licensed MIT.

Use cases

  • Verify that an agent has loaded a required skill before execution
  • Block prompt injection attempts in agent conversations
  • Prevent RAG data scraping from agent memory stores

Pros

  • Zero dependencies keeps the toolkit lightweight
  • MIT license allows free use and modification
  • TypeScript native for type-safe integration

Cons

  • Low star count suggests limited community validation
  • Focused on Node.js and TypeScript only
  • Specific to agent security, not a general-purpose toolkit

Indexed from awesome-mcp-servers-punkpeye and enriched against its public facts.

Pros

  • Zero dependencies keeps the toolkit lightweight
  • MIT license allows free use and modification
  • TypeScript native for type-safe integration

Cons

  • Low star count suggests limited community validation
  • Focused on Node.js and TypeScript only
  • Specific to agent security, not a general-purpose toolkit
Free 27-page guide

Get the free Developer’s Field Guide

A 27-page field guide to the AI coding workflow with Claude. Claude Code, MCP servers, the prompt patterns that work, and what to delegate. Free.

Enter your work email. We send it straight over, plus a few short notes worth knowing. Unsubscribe any time.

No spam. Unsubscribe any time.

Running a business, not writing the code? See the MCP servers picked for operators, and get your first one wired up with us.

Operator picks