================================================================================ ELLMOS-AI / ELLMOS-FILECOMMANDER-MCP — DISCOVERABILITY & MARKETING LOG ================================================================================ Repository: https://github.com/ellmos-ai/ellmos-filecommander-mcp Project Name: ellmos-filecommander-mcp (npm: ellmos-filecommander-mcp) Umbrella Ecosystem: open-bricks (https://github.com/open-bricks) Architecture Domain: Comprehensive Local Filesystem & Process Automation MCP Server Audit Date: 2026-09-11 Status: ACTIVE / PFAD A HYGIENE & PFAD B DISCOVERABILITY VERIFIED ================================================================================ 1. PRODUCT IDENTITY & MISSION -------------------------------------------------------------------------------- ellmos-filecommander-mcp is a production-grade, 50-tool Model Context Protocol (MCP) server that empowers AI assistants with full filesystem access, bounded multi-file content search, process management, interactive REPL shell sessions, cloud-lock-safe operations, and format conversion over local stdio transport. Key architectural highlights: 1. 50 Specialized Tools: Comprehensive filesystem coverage spanning reading, bounded 1 MiB inline preview, writing, atomic editing, and safe deletion. 2. Safe Delete & Recovery: Preserves deleted files in Windows Recycle Bin, macOS Trash, and Linux FreeDesktop Trash via fc_safe_delete and global Safety Mode (fc_set_safe_mode). 3. Resilient Cloud-Lock Handling: Automatic copy + SHA-256 verify + unlink fallback when cloud synchronization filters (OneDrive, Dropbox, iCloud) lock destinations with EPERM/EBUSY. 4. Bounded Content Search: fc_search_content searches up to 50 explicit text files without recursive glob explosions, automatically redacting secrets. 5. Interactive REPL Sessions: Start and control stateful Python, Node.js, bash, and PowerShell sessions via stdio without process leaks. 6. Lossless Format Engine: Bi-directional conversion across 7 structured formats (JSON, YAML, TOML, XML, CSV, INI, TOON). 7. 6-Language Runtime i18n: Dynamic runtime switching and introspection for German (de), English (en), Spanish (es), Chinese (zh), Japanese (ja), and Russian (ru). 2. TARGET PERSONAS & AUDIENCE MAPPING -------------------------------------------------------------------------------- Persona 1: Autonomous Coding & AI Agent Frameworks (Claude Code / Antigravity) - Need: Dependable local file I/O, multi-file search, and process execution without catastrophic context window overflow or unhandled file locks. - Value: Bounded 1 MiB inline preview (fc_preview_file), bounded multi-file search (fc_search_content), and atomic cloud-lock-safe move (fc_move). Persona 2: Enterprise IT & Security Officers - Need: Verifiable local-first boundaries, accidental data loss protection, and automatic secret leak prevention. - Value: Local stdio transport (no telemetry, no open listening ports), Recycle Bin safety protection, automated API key redaction, and strict unprivileged user execution (zero elevation). Persona 3: Data Engineers & Automation Specialists - Need: Seamless configuration manipulation across varied formats and background directory scanning. - Value: Declarative format conversion (fc_convert_format), ZIP archive management (fc_archive), checksum verification (fc_checksum), and async background search. Persona 4: Cross-Platform & Multilingual Development Teams - Need: Uniform file handling across Windows, Linux, and macOS with native language support for international development environments. - Value: Verified cross-OS parity and dynamic runtime i18n support across 6 languages with localized system responses. 3. ARCHITECTURAL INVARIANTS & GOVERNANCE -------------------------------------------------------------------------------- The project strictly enforces 10 runtime invariants (INV-LOCAL-01 to INV-SLA-10): - INV-LOCAL-01: Local Stdio & Explicit Egress (zero telemetry, outbound HTTP(S) strictly gated through explicit client calls to fc_web_fetch). - INV-SAFE-02: Safe Deletion & Trash Protection (fc_safe_delete and fc_set_safe_mode route file removals to OS Recycle Bin / Trash). - INV-LOCK-03: Cloud-Lock Resilient Move (fc_move automatic copy + SHA-256 verify + unlink fallback when sync filters block standard rename). - INV-DIAG-04: Cloud-Lock Diagnosis (fc_check_cloud_lock provides read-only inspection of static sync paths and reparse points). - INV-SRCH-05: Bounded Multi-File Content Search (fc_search_content caps at 50 explicit files, 10 MB per file, max 200 matches, no glob recursion). - INV-MASK-06: Automated Secret & Token Redaction (API keys, bearer tokens, AWS credentials automatically masked in search excerpts). - INV-PREV-07: Bounded Inline Preview & Safe Open (fc_preview_file metadata- first with 1 MiB ceiling; fc_open_path invokes default OS handler safely). - INV-REPL-08: Interactive REPL & Session Isolation (stateful sessions with bounded circular ring buffers preventing unconstrained memory growth). - INV-PROC-09: Unprivileged RunAsInvoker Non-Elevation (runs entirely in standard unprivileged user mode; zero administrative elevation required). - INV-SLA-10: 48h Security Response & 5-Day Triage SLA (binding commitment with multi-channel security contacts across ellmos-ai and open-bricks). 4. SIBLING ECOSYSTEM & PARTNER MATRIX -------------------------------------------------------------------------------- ellmos-filecommander-mcp serves as the foundational filesystem layer for partner tools across ellmos-ai, dev-bricks, file-bricks, and open-bricks: - ellmos-ai/ellmos-codecommander-mcp: AST analysis, structural edits, diffs - ellmos-ai/ellmos-controlcenter-mcp: Control plane, profiles, stack discovery - ellmos-ai/ellmos-homebase-mcp: Persistent memory, routing, swarm coordination - ellmos-ai/n8n-manager-mcp: Automated workflow management via AI assistants - ellmos-ai/open-compute-mcp: Model-agnostic computer use & desktop perception - ellmos-ai/bach: Local-first text-based OS (primary consumer of 50 tools) - ellmos-ai/clutch: Provider-neutral LLM orchestration and budget tracking - ellmos-ai/swarm-ai: Multi-agent consensus, stigmergy, and team locks - ellmos-ai/system-explorer: System discovery and evidence reporting - dev-bricks/DevCenter: Integrated developer suite and code generation - dev-bricks/MethodenAnalyser: Static code analysis, metrics & refactoring - dev-bricks/CodeBox: Code snippet repository and workspace tools - file-bricks/ProFiler: Advanced dual-pane file manager with AI integration - file-bricks/ExplorerPro: Intelligent file explorer with smart filters - doc-bricks/FormularErstellen: Automated form and document generation - open-bricks/open-bricks: Umbrella organization for AI-native desktop apps 5. VERIFICATION & METADATA CONTRACTS -------------------------------------------------------------------------------- - 291 automated tests (220 Vitest tests + 71 standalone i18n assertions). - Strict metadata parity across package.json, server.json, glama.json, llms.txt, and src/index.ts. - Multi-OS GitHub Actions CI workflow (Ubuntu, Windows, macOS on Node 20-24). - Comprehensive bilingual README architecture (README.md & README_de.md) with complete 16-point quick navigation and anchor parity. - Machine-readable LLM context specification (llms.txt) updated to 2026-09-13. 6. HIGH-INTENT KEYWORD MATRIX & DISCOVERABILITY TARGETS -------------------------------------------------------------------------------- English Search Queries: - "mcp filesystem server" - "model context protocol file manager" - "safe delete mcp recycle bin trash" - "async background search mcp" - "multi file content search mcp" - "interactive repl session mcp server" - "cloud lock safe mcp file operations" - "mojibake encoding fix mcp" - "json repair mcp tool" - "markdown to pdf html mcp" Deutsche Suchanfragen: - "mcp dateisystem server" - "model context protocol dateiverwaltung" - "sicheres loeschen mcp papierkorb" - "asynchrone hintergrundsuche mcp" - "mehrdatei inhaltssuche mcp" - "interaktive repl sitzung mcp server" - "cloud lock sichere dateioperationen mcp" - "mojibake zeichensatz reparatur mcp" - "json reparatur mcp tool" - "markdown zu pdf html mcp konverter" 7. 5-WAY COMPARATIVE ARCHITECTURE MATRIX (10 OPERATIONAL DIMENSIONS) -------------------------------------------------------------------------------- 1. Tool Breadth & Scope: 50 unified tools vs ~11 basic tools vs ~15 tools vs unconstrained CLI vs fragmented ad-hoc scripts. 2. Safe Deletion & Recovery: Native OS Recycle Bin / Trash (fc_safe_delete, Safety Mode) vs Permanent unlink (rm -rf) vs Permanent unlink vs Irreversible shell delete vs Custom routines. 3. Cloud-Lock & Sync Resilience: Automatic fallback (copy + SHA-256 verify + unlink on EPERM/EBUSY) vs Fails on locked files vs Fails on locked files vs Blocks/crashes vs Sync conflict copies. 4. Bounded Search & Secret Redaction: Bounded search (max 50 files, 10 MB, auto API token redaction) vs Directory walk only vs Unbounded regex vs Unbounded grep leaking secrets vs Custom regex without redaction. 5. Async Long-Running Search: Token-paginated background scans (fc_start_search) vs Synchronous only vs Synchronous only vs Background jobs (&) vs Polling loops. 6. Interactive REPL & Session Control: Stateful REPLs (Node, Python, Shell) with circular buffers vs Not supported vs Basic terminal sessions vs Raw subprocesses (zombie risk) vs Complex IPC pipes. 7. Self-Healing & Data Repair: Built-in Mojibake fix (27+ patterns) & JSON repair vs Not supported vs Not supported vs Manual iconv/sed vs Custom error handling. 8. Multi-Format Transformation: Declarative conversion across 7 formats (JSON, YAML, TOML, XML, CSV, INI, TOON) vs Not supported vs Not supported vs External jq/yq CLI tools vs External python packages. 9. Document & Archive Utilities: Built-in ZIP lifecycle, OCR (Tesseract), Markdown to HTML/PDF vs Not supported vs Excel/PDF via desktop app vs Pandoc/zip CLI vs Fragmented libraries. 10. Governance & Security SLAs: Local stdio, zero telemetry, explicit egress, binding 48h SLA vs Reference stdio vs Stdio without SLA vs Shell injection risk vs Cloud egress. 8. PFAD B AUDIT & VERIFICATION SUMMARY (2026-09-13) -------------------------------------------------------------------------------- Audit Date: 2026-09-13 Actor: Antigravity (Gemini 3.8 / WORKSTATION-LG) Status: ACTIVE / PFAD B DISCOVERABILITY & ARCHITECTURE PARITY VERIFIED Measures Applied: 1. Synchronized 16-point Quick Navigation bars across README.md and README_de.md with 100% mutual link and anchor parity (#target-personas--discoverability, #zielgruppen--auffindbarkeit, #comparative-matrix--alternatives, #vergleichsmatrix--alternativen, #third-party-licenses--transparency). 2. Codified 4 dedicated target personas in English and German READMEs: Autonomous AI Coding Agents, DevOps & Multi-Host Automation Engineers, SecOps & Compliance Officers, Enterprise Platform Architects. 3. Deployed full 5-Way Comparative Architecture Matrix across 10 operational dimensions in both English and German documentation. 4. Updated llms.txt Last-checked timestamp to 2026-09-13. 5. Expanded automated contract test suite in test/metadata-parity.test.ts to assert 16-point navigation, target personas, 5-way comparative matrix, and updated llms.txt date, verifying 291 passed checks (220 Vitest + 71 i18n). 9. AI SECURITY & DEPENDENCY AUDIT SUMMARY (2026-09-19) -------------------------------------------------------------------------------- Audit Date: 2026-09-19 Actor: Antigravity (Gemini 3.8) Status: ACTIVE / 0 VULNERABILITIES VERIFIED & 30-DAY SLA CODIFIED Measures Applied: 1. Supply-Chain & Vulnerability Remediation: - Upgraded adm-zip from ^0.6.0 to ^0.6.1 (GHSA-vwc7-r8mq-g2x9, GHSA-7q85-xj36-vmfc). - Upgraded js-yaml from ^4.3.1 to ^4.3.2 (GHSA-2883-xcg3-v3hh). - Upgraded smol-toml from ^1.6.0 to ^1.8.0 (GHSA-7w5x-hrqm-74c2). - Updated hono override to ^4.13.8 (GHSA-gqvv-2mrq-wpjv, GHSA-g6gw-c38x-mqfc, GHSA-crvj-82cr-hjcx). - Upgraded vitest devDependency from ^4.1.9 to ^4.1.11 (GHSA-82fw-gwwq-j7x9). - npm audit verifies 0 vulnerabilities across 215 audited packages. 2. Gitignore Security & Hygiene Hardening: - Restored TODO.md to version control tracking. - Added explicit ignore patterns for certificates (*.crt, *.cert, *.csr), packaging credentials (.pypirc), auth tokens (*.token, *.secret, credentials.json), wildcard SSH keys (id_rsa*, id_ed25519*, id_ecdsa*, id_dsa*), and patch residues (*.orig, *.rej). 3. 30-Day Remediation SLA: - Formally added binding 30-day remediation SLA commitment in English and German in SECURITY.md. - Synchronized THIRD_PARTY_LICENSES.md audit date (2026-09-19) and version ranges. 4. Contract Test Verification: - Expanded test/metadata-parity.test.ts to 292 passed tests (221 Vitest + 71 i18n). ================================================================================