This release includes 1 security fix for security teams reviewing exposed deployments.
Topics
+14 more
Affected surfaces
Summary
AI summaryDart and Flutter detection now correctly distinguishes apps from CLI projects via composed faf-cli Turbo-Cat.
Full changelog
claude-faf-mcp now reads Dart & Flutter — it knows a Flutter app from a pure-Dart CLI. Detection by composition: because CFM composes faf-cli's Turbo-Cat (The Sourced Edition), faf-cli 6.13.0's content-aware, pubspec-driven Dart classifier arrives by construction — no forked parser, no drift.
What's new
- Dart & Flutter detection, by composition —
faf_formats/faf_autosurface Dart and Flutter correctly via faf-cli's single-source Turbo-Cat: a Flutter app reads as Flutter, a pure-Dart CLI reads as Dart (not mis-flagged), a Dart MCP server / backend surfaces itsapi_type+ framework. No forked pubspec parser — the doctrine-pure fix for the drift a Dart/Flutter expert flagged publicly. - Composes
faf-cli^6.13.0(from^6.10.1). - Security —
npm audit fix:hono→ 4.12.25,js-yaml→ 4.2.0. The 🔒 Security Audit CI gate is cleared;npm auditreports 0 vulnerabilities.
Zero-Config — one-click .mcpb, no terminal, no JSON config. 35 tools. 572 tests / 26 suites, 0 fail.
FAF defines. MD instructs. AI codes.
Security Fixes
- `npm audit fix` upgraded `hono` to 4.12.25 and `js-yaml` to 4.2.0; npm audit now reports 0 vulnerabilities.
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About Wolfe-Jam/claude-faf-mcp
First & only persistent project context MCP. Provides .faf (Foundational AI-context Format) Project DNA with 33+ tools, Podium scoring (0-100%), and format-driven architecture. Official Anthropic Registry. 10k+ npm downloads.
Related context
Related tools
Earlier breaking changes
- v5.9.1 Registry namespace changes to `one.faf/*`
Beta — feedback welcome: [email protected]