ScratchRun runs on your own machine — the client starts it, so there is no endpoint to ping. 30 installs a week from npm. Last commit 4 Aug 2026.
Ephemeral MicroVM-isolated code execution for AI agents. Fresh VM per call, hard-purged after.
Today is the operative word: we check ScratchRun every 15 minutes and re-read its code on every release. Watch it and you find out the day that stops being true.
This server runs on your own machine — install it with the package manager and the client starts it for you. Package name taken from the official registry entry.
claude mcp add mcp -- npx -y @scratchrun/mcp-server
{
"mcpServers": {
"mcp": {
"args": [
"-y",
"@scratchrun/mcp-server"
],
"command": "npx"
}
}
}
[mcp_servers.mcp]
command = "npx"
args = ["-y", "@scratchrun/mcp-server"]
{
"mcpServers": {
"mcp": {
"args": [
"-y",
"@scratchrun/mcp-server"
],
"command": "npx"
}
}
}
{
"mcpServers": {
"mcp": {
"args": [
"-y",
"@scratchrun/mcp-server"
],
"command": "npx"
}
}
}
This one needs environment variables set before it will start:
SCRATCHRUN_API_KEY (ScratchRun API key — get one at https://scratchrun.dev).
The author declared them in the registry entry; get the values from the project itself.
Run AI-generated code safely. gVisor-isolated Python/JS sandboxes for any MCP client. Pay per run.
Code security scanner for AI agents. 45+ vulnerability patterns, AST analysis, Solana micropayments.
Pay-per-call cybersecurity for AI agents: vuln scans, threat intel, compliance, code security.
Scan any codebase, generate CONVENTIONS.md, expose conventions as MCP tools for AI agents.
Source code plagiarism, peer similarity, and AI-generated-code detection for AI agents.
50+ pay-per-call APIs for AI agents — images, LLM, code, crypto, travel & more via x402
Pre-computed astrology YAML via Swiss Ephemeris. Calculation is code, interpretation is AI.
Real email inboxes for AI agents: create inboxes, catch verification codes, extract OTPs, reply.
Answers built from our own checks of this server.