elicitation auditor for Windsurf
io.github.4hmetuyar/elicitation-auditor
MCP elicitation anti-patterns: secrets in forms, third-party authorize URLs, credentials in URLs
client:Windsurf
transport:stdio
runtime:npm
Install elicitation auditor in Windsurf
~/.codeium/windsurf/mcp_config.json · windows: %USERPROFILE%\.codeium\windsurf\mcp_config.json
{
"mcpServers": {
"elicitation-auditor": {
"command": "npx",
"args": [
"-y",
"@guardbee/mcp-elicitation-auditor"
]
}
}
}
Global only — Windsurf has no per-project MCP config. Refresh Cascade after saving. Windsurf docs