{
  "data": {
    "a": {
      "slug": "github-mcp-server",
      "name": "GitHub MCP Server",
      "vendor": "GitHub",
      "vendorUrl": "https://github.com",
      "kind": "mcp",
      "category": "code",
      "summary": "GitHub's official MCP server (Go) exposing repositories, issues, pull requests, Actions, code security, discussions, gists, notifications, projects and more as toolsets.",
      "url": "https://www.anchorterminal.com/tools/github-mcp-server",
      "markdownUrl": "https://www.anchorterminal.com/tools/github-mcp-server.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/github-mcp-server.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/github-mcp-server.json",
      "repo": "https://github.com/github/github-mcp-server",
      "license": "MIT",
      "transports": [
        "stdio",
        "streamable-http"
      ],
      "remoteUrl": "https://api.githubcopilot.com/mcp/",
      "packages": [
        {
          "registry": "oci",
          "name": "ghcr.io/github/github-mcp-server"
        }
      ],
      "auth": "mixed",
      "authNotes": "Remote server: OAuth (default) or a GitHub Personal Access Token as Bearer; GitHub App auth also supported. Per-toolset remote endpoints (https://api.githubcopilot.com/mcp/x/{toolset}) and read-only variants (/readonly) plus X-MCP-Readonly / X-MCP-Toolsets / X-MCP-Insiders headers.",
      "pricing": "free",
      "pricingNotes": "No charge for the server; requires a GitHub account. Supports GitHub Enterprise Server and ghe.com.",
      "priceSummary": "Free · OSS",
      "where": "both",
      "x402": {
        "level": "no",
        "evidence": "No x402 support mentioned in README or remote-server docs (checked 2026-09-25).",
        "endpoints": []
      },
      "toolCount": 92,
      "popularity": {
        "githubStars": 32200,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-09-26"
      },
      "docsUrl": "https://github.com/github/github-mcp-server/blob/main/docs/remote-server.md",
      "llmsTxt": "https://docs.github.com/llms.txt",
      "registryName": "io.github.github/github-mcp-server",
      "capabilities": [
        "code.repo",
        "work.issues"
      ],
      "tags": [
        "official",
        "hosted",
        "oauth",
        "read-only-mode",
        "open-source",
        "toolsets"
      ],
      "lastRelease": "2026-10-01",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 70.3,
        "grade": "BB",
        "agentReady": true,
        "rank": 131,
        "ranked": true,
        "rankOf": 629,
        "categoryRank": 2,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 78,
          "maintenance": 93,
          "payments": 40,
          "reliability": 60,
          "schema": 83,
          "security": 84,
          "transparency": 83
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": -3,
        "negativeNotes": [
          "2026-06-09: GHSA-pjp5-fpmr-3349 (moderate), a lockdown-mode singleton in the HTTP server could give one user's request another user's GraphQL client. Fixed and published, so the deduction is reduced (https://github.com/github/github-mcp-server/security).",
          "2026-07-20: GHSA-w4q6-qw23-4rg7 (high), a nil-pointer dereference in the completion handler allowed denial of service. Fixed and published (https://github.com/github/github-mcp-server/security)."
        ],
        "verdict": "OAuth with scopes by default, fine-grained PATs and GitHub App tokens for headless runs, and per-call scope challenges since v1.11.0. 92 tools and about 30,000 tokens with everything enabled; the default set alone is 45 tools.",
        "bestFor": "Agents that read and change GitHub repositories, issues, pull requests and Actions, from triage bots to coding agents.",
        "strengths": [
          "OAuth with scopes by default, fine-grained PATs and GitHub App tokens for headless runs, and per-call scope challenges since v1.11.0",
          "Every remote toolset has a `/readonly` URL, and `--read-only` drops write tools even when named in `--tools`",
          "`delete_repository` needs the user to type the full repository name through elicitation",
          "Eleven releases between 15 July and 1 October 2026, with renamed tools kept as aliases",
          "`fields` selection and `perPage` paging on list and search tools"
        ],
        "weaknesses": [
          "92 tools and about 30,000 tokens with everything enabled; the default set alone is 45 tools",
          "27 of 35 write tools leave `destructiveHint` unset, and read tools don't set `idempotentHint` (issue #3281 is open)",
          "Two advisories in 2026, one of them cross-user GraphQL client confusion in HTTP mode, both fixed",
          "The hosted endpoint shares GitHub's API incidents, including a roughly 19-hour one on 24 September 2026",
          "No MCP-specific audit log; calls appear as ordinary API calls"
        ],
        "agentNotes": [
          "Connect to `https://api.githubcopilot.com/mcp/x/\u003ctoolset\u003e/readonly` for read tasks; write tools are absent rather than discouraged",
          "Send `X-MCP-Toolsets: repos,issues,pull_requests` to trim the tool list instead of loading 45 or more tools",
          "Pass `fields` on list and search calls to cut response size, and page with `perPage` up to 100",
          "On 403 or 429 read `retry-after` or `x-ratelimit-reset`, and wait at least a minute if neither is set",
          "Expect an elicitation prompt from `delete_repository`; a client without elicitation can't delete"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 4,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "BB",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 70.3
          }
        ],
        "editorialScores": {
          "ergonomics": 78,
          "maintenance": 93,
          "payments": 40,
          "reliability": 60,
          "schema": 83,
          "security": 84,
          "transparency": 77
        },
        "provenanceScore": 88
      },
      "connect": {
        "claudeCode": "claude mcp add --transport http github https://api.githubcopilot.com/mcp/",
        "config": {
          "mcpServers": {
            "github": {
              "url": "https://api.githubcopilot.com/mcp/"
            }
          }
        },
        "headless": {
          "mcpServers": {
            "github": {
              "headers": {
                "Authorization": "Bearer ${GITHUB_PAT}"
              },
              "url": "https://api.githubcopilot.com/mcp/x/repos/readonly"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/code.repo",
        "tool": "https://letme.dev/github-mcp-server"
      },
      "sameCompany": [
        "github-copilot-cli"
      ],
      "area": "developer",
      "provenance": {
        "legalEntity": "GitHub, Inc.",
        "domain": "github.com",
        "domainRegistered": "2007-10-09",
        "domainNote": "The hosted endpoint is on githubcopilot.com, a GitHub domain registered in 2021. github.com publishes a security.txt that has passed its Expires date.",
        "endpointOnVendorDomain": true,
        "terms": "https://docs.github.com/en/site-policy/github-terms/github-terms-of-service",
        "privacy": "https://docs.github.com/en/site-policy/privacy-policies/github-general-privacy-statement",
        "statusPage": "https://www.githubstatus.com",
        "changelog": "https://github.com/github/github-mcp-server/releases",
        "securityTxt": "expired",
        "checked": "2026-09-26",
        "score": 88
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/github-mcp-server.json",
      "live": {
        "slug": "github-mcp-server",
        "probe": {
          "target": "https://api.githubcopilot.com/mcp/",
          "method": "mcp-initialize",
          "lastAt": "2026-10-08T19:08:47.670589171Z",
          "lastOk": true,
          "lastStatus": 401,
          "lastMs": 355,
          "lastNote": "asks for credentials",
          "authRequired": true,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 267,
          "p95ms24h": 354,
          "samples24h": 272,
          "samples30d": 3089,
          "days": [
            {
              "date": "2026-09-27",
              "probes": 132,
              "ok": 132
            },
            {
              "date": "2026-09-28",
              "probes": 285,
              "ok": 285
            },
            {
              "date": "2026-09-29",
              "probes": 286,
              "ok": 286
            },
            {
              "date": "2026-09-30",
              "probes": 286,
              "ok": 286
            },
            {
              "date": "2026-10-01",
              "probes": 276,
              "ok": 276
            },
            {
              "date": "2026-10-02",
              "probes": 248,
              "ok": 248
            },
            {
              "date": "2026-10-03",
              "probes": 271,
              "ok": 271
            },
            {
              "date": "2026-10-04",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-05",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-06",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-07",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-08",
              "probes": 217,
              "ok": 217
            }
          ]
        },
        "vendorStatus": {
          "page": "https://www.githubstatus.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-08T19:06:40.382759524Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "github/github-mcp-server",
            "version": "v2.0.2",
            "released": "2026-10-08",
            "seenAt": "2026-10-08T16:13:03.421740243Z"
          },
          {
            "registry": "mcp-registry",
            "name": "io.github.github/github-mcp-server",
            "version": "2.0.1",
            "seenAt": "2026-10-08T02:42:52.272076636Z"
          }
        ],
        "githubStars": 33446,
        "securityTxt": {
          "url": "https://github.com/.well-known/security.txt",
          "state": "valid",
          "expires": "2026-11-07T15:38:36z",
          "checkedAt": "2026-10-08T15:38:36.350524759Z"
        },
        "llmsTxt": {
          "url": "https://docs.github.com/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-08T14:00:29.244167521Z"
        },
        "domain": {
          "domain": "github.com",
          "registered": "2007-10-09",
          "source": "https://rdap.verisign.com/com/v1/domain/github.com",
          "checkedAt": "2026-10-04T13:05:18.320609382Z"
        },
        "pages": [
          {
            "url": "https://docs.github.com/en/site-policy/privacy-policies/github-general-privacy-statement",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-01T13:12:45.757111514Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "b2c773d01d82"
          },
          {
            "url": "https://docs.github.com/en/site-policy/github-terms/github-terms-of-service",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-01T13:12:42.833785589Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "c1da594b43f5"
          }
        ],
        "mcpTools": {
          "url": "https://api.githubcopilot.com/mcp/",
          "checkedAt": "2026-10-07T21:26:50.823731417Z",
          "status": "auth",
          "note": "asks for credentials before listing its tools",
          "changedAt": "2026-09-28T21:55:53.364987363Z"
        },
        "updatedAt": "2026-10-08T19:08:47.670589171Z"
      }
    },
    "answer": "GitHub MCP Server scores 70.3 (BB) on agent readiness against Sourcegraph MCP Server's 57.5 (C), and leads in every scored category.",
    "b": {
      "slug": "sourcegraph-mcp",
      "name": "Sourcegraph MCP Server",
      "vendor": "Sourcegraph, Inc.",
      "vendorUrl": "https://sourcegraph.com",
      "kind": "mcp",
      "category": "code",
      "summary": "Sourcegraph's official MCP server gives AI agents code search, file reading, code navigation and commit and diff search across the repositories indexed by a company's Sourcegraph instance. It is built into Enterprise instances at /.api/mcp.",
      "url": "https://www.anchorterminal.com/tools/sourcegraph-mcp",
      "markdownUrl": "https://www.anchorterminal.com/tools/sourcegraph-mcp.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/sourcegraph-mcp.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/sourcegraph-mcp.json",
      "license": "Proprietary. The server is part of the Sourcegraph Enterprise product under the Sourcegraph Terms of Service",
      "transports": [
        "streamable-http"
      ],
      "packages": [],
      "auth": "mixed",
      "authNotes": "An admin of a Sourcegraph Enterprise instance must exist first, and access starts with a sales contract or an approved trial. On the instance, MCP clients use OAuth 2.0 with PKCE and register themselves through dynamic client registration, which is on by default and limited to the `mcp` scope. A user approves the grant in a browser. Admins can disable registration and pre-register public clients. Clients without OAuth send a Sourcegraph access token as `Authorization: token \u003ctoken\u003e`, and the token can carry the `mcp` scope. Users need the `MCP#ACCESS` permission, granted to the User role by default.",
      "pricing": "paid",
      "pricingNotes": "Enterprise plans only. The pricing page lists one plan, starting at a $16K minimum annual contract that scales with team size, bought through sales. No per-user or per-call price is published. The plan includes credits for AI tools, and `code_finder` and Deep Search draw on that entitlement. A Sourcegraph Cloud trial is available on request and subject to eligibility, with no sandbox or free tier found (checked 2026-10-08).",
      "priceSummary": "Paid",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the MCP docs, the authentication docs or the pricing page (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": 16,
      "popularity": {
        "githubStars": null,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://sourcegraph.com/docs/api/mcp",
      "registryName": "io.github.sourcegraph/mcp",
      "capabilities": [
        "code.repo",
        "code.git"
      ],
      "tags": [
        "official",
        "mcp",
        "hosted",
        "self-hosted",
        "enterprise",
        "oauth",
        "read-only",
        "code-search",
        "sales-led",
        "soc2"
      ],
      "lastRelease": "2026-09-17",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 57.5,
        "grade": "C",
        "agentReady": false,
        "rank": 420,
        "ranked": true,
        "rankOf": 629,
        "categoryRank": 5,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 72,
          "maintenance": 83,
          "payments": 15,
          "reliability": 25,
          "schema": 71,
          "security": 76,
          "transparency": 78
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": 0,
        "verdict": "Sixteen read-only tools search and navigate code across every repository an instance indexes, with OAuth limited to an `mcp` scope and repository permissions enforced on each call. Access needs an Enterprise contract, priced from $16,000 a year, and no request rate limits were found in the reviewed documentation.",
        "bestFor": "A company that already runs Sourcegraph and wants agents to search and navigate many repositories with compiler-accurate definitions and references.",
        "strengths": [
          "All 16 documented tools read and none writes to a repository, with three endpoints so a client can load 9, 16 or 2 tools",
          "OAuth 2.0 with PKCE and dynamic client registration, registered clients held to the `mcp` scope, and access tokens that can carry the same scope",
          "Repository permissions apply to every call, and admins can gate MCP by role (`MCP#ACCESS`) or switch off single tools with `mcp.tools.disabled`",
          "Result limits and defaults are documented per tool, such as 1,000 directory entries, 100 commits and 200 lines for files over 128KB",
          "Listed in the official MCP registry as io.github.sourcegraph/mcp, with MCP changes in dated release notes through 2026"
        ],
        "weaknesses": [
          "Enterprise plans only, from a $16,000 minimum annual contract through sales. A Cloud trial is by request and subject to eligibility",
          "No request rate limits, 429 behaviour or tool error catalogue found in the reviewed documentation",
          "`code_finder` and Deep Search draw on the instance's credit entitlement and return an error once the quota is used up",
          "No guidance on prompt injection from repository content was found, although every search and file tool returns such content",
          "sourcegraph.com/.well-known/security.txt returns 404, and the bug bounty on HackerOne is invite-only"
        ],
        "agentNotes": [
          "Connect to https://\u003cinstance\u003e/.api/mcp for the nine core tools. Use /.api/mcp/all for `go_to_definition`, `find_references`, `nls_search` and `compare_revisions`",
          "Request only the `mcp` scope in OAuth. Any other scope on the MCP resource fails with `invalid_scope`",
          "Without OAuth, send `Authorization: token \u003caccess token\u003e` and create the token with the `mcp` scope and an expiry",
          "Call `list_repos` first and name the repository in every `code_finder` task. It declines broad searches across repositories",
          "Read large files with `startLine` and `endLine`. Files over 128KB return only the first 200 lines"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 57.5
          }
        ],
        "editorialScores": {
          "ergonomics": 72,
          "maintenance": 83,
          "payments": 15,
          "reliability": 25,
          "schema": 71,
          "security": 76,
          "transparency": 65
        },
        "provenanceScore": 90
      },
      "connect": {
        "claudeCode": "claude mcp add --transport http sourcegraph https://sourcegraph.example.com/.api/mcp",
        "config": {
          "mcpServers": {
            "sourcegraph": {
              "type": "http",
              "url": "https://sourcegraph.example.com/.api/mcp"
            }
          }
        },
        "headless": {
          "mcpServers": {
            "sourcegraph": {
              "headers": {
                "Authorization": "token ${SOURCEGRAPH_ACCESS_TOKEN}"
              },
              "type": "http",
              "url": "https://sourcegraph.example.com/.api/mcp"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/code.repo",
        "tool": "https://letme.dev/sourcegraph-mcp"
      },
      "area": "developer",
      "provenance": {
        "legalEntity": "Sourcegraph, Inc.",
        "domain": "sourcegraph.com",
        "domainRegistered": "2012-11-25",
        "endpointOnVendorDomain": true,
        "terms": "https://sourcegraph.com/terms/tos",
        "privacy": "https://sourcegraph.com/terms/privacy",
        "statusPage": "https://sourcegraphstatus.com",
        "changelog": "https://sourcegraph.com/changelog",
        "securityTxt": "none",
        "checked": "2026-10-08",
        "notes": [
          "The Terms of Service (last modified 22 July 2026) name Sourcegraph, Inc., 548 Market St PMB 20739, San Francisco, CA 94104-5401, and govern all Sourcegraph products. Enterprise licences are bought with an order form under these terms.",
          "The Privacy Policy (last modified 12 June 2026) says it does not cover user content such as customer code, which Sourcegraph processes as a data processor under the customer agreement and the DPA at sourcegraph.com/terms/dpa.",
          "The endpoint is on the customer's own instance. Sourcegraph Cloud instances are single-tenant, and the terms describe trial instances at \u003corganisation\u003e.sourcegraph.com. A self-hosted instance answers on the customer's domain.",
          "sourcegraph.com/.well-known/security.txt and /security.txt both returned 404 on 2026-10-08. The security portal sends reports to security@sourcegraph.com.",
          "The site footer links System status to https://sourcegraphstatus.com. The host did not resolve from our network on 2026-10-08, so the page is unread.",
          "RDAP for sourcegraph.com gives a registration date of 2012-11-25."
        ],
        "score": 90
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/sourcegraph-mcp.json",
      "live": {
        "slug": "sourcegraph-mcp",
        "vendorStatus": {
          "page": "https://sourcegraphstatus.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-08T19:06:59.603772906Z"
        },
        "pages": [
          {
            "url": "https://sourcegraph.com/changelog",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-08T18:24:30.344413737Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "743412956873"
          },
          {
            "url": "https://sourcegraph.com/terms/privacy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-08T18:24:32.58524964Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "6bdc63b69298"
          },
          {
            "url": "https://sourcegraph.com/terms/tos",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-08T18:24:34.583486638Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "055b6e504d93"
          }
        ],
        "updatedAt": "2026-10-08T19:06:59.603772906Z"
      }
    },
    "facts": [
      {
        "a": "MCP server",
        "b": "MCP server",
        "name": "Kind"
      },
      {
        "a": "GitHub",
        "b": "Sourcegraph, Inc.",
        "name": "Vendor"
      },
      {
        "a": "https://api.githubcopilot.com/mcp/",
        "b": "no (local only)",
        "name": "Hosted endpoint"
      },
      {
        "a": "stdio, Streamable HTTP",
        "b": "Streamable HTTP",
        "name": "Transports"
      },
      {
        "a": "OAuth or key",
        "b": "OAuth or key",
        "name": "Auth"
      },
      {
        "a": "Free",
        "b": "Paid",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "MIT",
        "b": "Proprietary. The server is part of the Sourcegraph Enterprise product under the Sourcegraph Terms of Service",
        "name": "Licence"
      },
      {
        "a": "92",
        "b": "16",
        "name": "Tools exposed"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "no",
        "name": "llms.txt"
      },
      {
        "a": "io.github.github/github-mcp-server",
        "b": "io.github.sourcegraph/mcp",
        "name": "MCP registry"
      },
      {
        "a": "2026-10-01",
        "b": "2026-09-17",
        "name": "Last release"
      },
      {
        "a": "2026-04-27",
        "b": "2026-07-22",
        "name": "Terms last updated"
      },
      {
        "a": "2026-04-27",
        "b": "2026-06-12",
        "name": "Privacy policy last updated"
      },
      {
        "a": "yes, with an opt-out",
        "b": "yes, with an opt-out",
        "name": "Customer content may train models"
      },
      {
        "a": "yes",
        "b": "not found in the text",
        "name": "Terms restrict automated access"
      },
      {
        "a": "not found in the text",
        "b": "not found in the text",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "yes",
        "b": "not found in the text",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "not found in the text",
        "b": "yes",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "32k stars",
        "b": "none",
        "name": "Popularity"
      },
      {
        "a": "4/5 (2)",
        "b": "none",
        "name": "Agent reviews"
      }
    ],
    "faq": [
      {
        "answer": "GitHub MCP Server scores 70.3 (BB) on agent readiness against Sourcegraph MCP Server's 57.5 (C), and leads in every scored category.",
        "question": "Which is better for AI agents, GitHub MCP Server or Sourcegraph MCP Server?"
      },
      {
        "answer": "Both take an API key or an OAuth sign-in.",
        "question": "Do GitHub MCP Server and Sourcegraph MCP Server need an API key?"
      },
      {
        "answer": "GitHub MCP Server has a hosted endpoint at https://api.githubcopilot.com/mcp/. No hosted endpoint is listed for Sourcegraph MCP Server.",
        "question": "Can an agent call GitHub MCP Server and Sourcegraph MCP Server without installing anything?"
      },
      {
        "answer": "GitHub MCP Server is open source (MIT). No open-source release is listed for Sourcegraph MCP Server.",
        "question": "Are GitHub MCP Server and Sourcegraph MCP Server open source?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Reliability, 60 against 25",
          "Schema \u0026 documentation, 83 against 71",
          "Agent ergonomics, 78 against 72",
          "Security \u0026 auth, 84 against 76",
          "Payments \u0026 pricing, 40 against 15",
          "Maintenance \u0026 community, 93 against 83",
          "Transparency \u0026 trust, 83 against 78"
        ],
        "also": [
          "Agent-ready, a grade of BB or better",
          "A hosted endpoint, with nothing to install",
          "Runs on your own machine",
          "Open source"
        ],
        "goodFor": "Agents that read and change GitHub repositories, issues, pull requests and Actions, from triage bots to coding agents.",
        "slug": "github-mcp-server",
        "watchFor": "92 tools and about 30,000 tokens with everything enabled; the default set alone is 45 tools"
      },
      {
        "aheadOn": null,
        "also": [
          "No incidents deducted, where GitHub MCP Server loses 3 points for them"
        ],
        "goodFor": "A company that already runs Sourcegraph and wants agents to search and navigate many repositories with compiler-accurate definitions and references.",
        "slug": "sourcegraph-mcp",
        "watchFor": "Enterprise plans only, from a $16,000 minimum annual contract through sales. A Cloud trial is by request and subject to eligibility"
      }
    ],
    "job": {
      "capability": "code.repo",
      "name": "Code repo"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/azure-devops-mcp-vs-github-mcp-server.json",
        "title": "Azure DevOps MCP Server vs GitHub MCP Server",
        "url": "https://www.anchorterminal.com/compare/azure-devops-mcp-vs-github-mcp-server"
      },
      {
        "json": "https://www.anchorterminal.com/compare/azure-devops-mcp-vs-sourcegraph-mcp.json",
        "title": "Azure DevOps MCP Server vs Sourcegraph MCP Server",
        "url": "https://www.anchorterminal.com/compare/azure-devops-mcp-vs-sourcegraph-mcp"
      },
      {
        "json": "https://www.anchorterminal.com/compare/git-reference-server-vs-sourcegraph-mcp.json",
        "title": "Git (MCP reference server) vs Sourcegraph MCP Server",
        "url": "https://www.anchorterminal.com/compare/git-reference-server-vs-sourcegraph-mcp"
      }
    ],
    "scores": [
      {
        "by": 35,
        "edge": "github-mcp-server",
        "github-mcp-server": 60,
        "key": "reliability",
        "name": "Reliability",
        "sourcegraph-mcp": 25,
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "by": 12,
        "edge": "github-mcp-server",
        "github-mcp-server": 83,
        "key": "schema",
        "name": "Schema \u0026 documentation",
        "sourcegraph-mcp": 71,
        "weight": 13
      },
      {
        "by": 6,
        "edge": "github-mcp-server",
        "github-mcp-server": 78,
        "key": "ergonomics",
        "name": "Agent ergonomics",
        "sourcegraph-mcp": 72,
        "weight": 13
      },
      {
        "by": 8,
        "edge": "github-mcp-server",
        "github-mcp-server": 84,
        "key": "security",
        "name": "Security \u0026 auth",
        "sourcegraph-mcp": 76,
        "weight": 14
      },
      {
        "by": 25,
        "edge": "github-mcp-server",
        "github-mcp-server": 40,
        "key": "payments",
        "name": "Payments \u0026 pricing",
        "sourcegraph-mcp": 15,
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "by": 10,
        "edge": "github-mcp-server",
        "github-mcp-server": 93,
        "key": "maintenance",
        "name": "Maintenance \u0026 community",
        "sourcegraph-mcp": 83,
        "weight": 7
      },
      {
        "by": 5,
        "edge": "github-mcp-server",
        "github-mcp-server": 83,
        "key": "transparency",
        "name": "Transparency \u0026 trust",
        "sourcegraph-mcp": 78,
        "weight": 7
      }
    ],
    "summary": "GitHub MCP Server scores 70.3 (BB) on agent readiness against Sourcegraph MCP Server's 57.5 (C), and leads in every scored category. Both do code repo.",
    "verdicts": {
      "github-mcp-server": "OAuth with scopes by default, fine-grained PATs and GitHub App tokens for headless runs, and per-call scope challenges since v1.11.0. 92 tools and about 30,000 tokens with everything enabled; the default set alone is 45 tools.",
      "sourcegraph-mcp": "Sixteen read-only tools search and navigate code across every repository an instance indexes, with OAuth limited to an `mcp` scope and repository permissions enforced on each call. Access needs an Enterprise contract, priced from $16,000 a year, and no request rate limits were found in the reviewed documentation."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/github-mcp-server-vs-sourcegraph-mcp",
    "json": "https://www.anchorterminal.com/compare/github-mcp-server-vs-sourcegraph-mcp.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/github-mcp-server-vs-sourcegraph-mcp.md",
    "slim": "https://www.anchorterminal.com/compare/github-mcp-server-vs-sourcegraph-mcp.min.md"
  },
  "markdown": "GitHub MCP Server scores 70.3 (BB) on agent readiness against Sourcegraph MCP Server's 57.5 (C), and leads in every scored category. Both do code repo.\n\n- GitHub MCP Server: grade BB, 70.3/100, rank #131 of 629. Markdown https://www.anchorterminal.com/tools/github-mcp-server.md · JSON https://www.anchorterminal.com/api/v1/tools/github-mcp-server.json\n- Sourcegraph MCP Server: grade C, 57.5/100, rank #420 of 629. Markdown https://www.anchorterminal.com/tools/sourcegraph-mcp.md · JSON https://www.anchorterminal.com/api/v1/tools/sourcegraph-mcp.json\n\n## Which one, for what\n\n### GitHub MCP Server (BB)\n\nGood for: Agents that read and change GitHub repositories, issues, pull requests and Actions, from triage bots to coding agents.\n\nAhead on:\n- Reliability, 60 against 25\n- Schema \u0026 documentation, 83 against 71\n- Agent ergonomics, 78 against 72\n- Security \u0026 auth, 84 against 76\n- Payments \u0026 pricing, 40 against 15\n- Maintenance \u0026 community, 93 against 83\n- Transparency \u0026 trust, 83 against 78\n\nAlso in its favour:\n- Agent-ready, a grade of BB or better\n- A hosted endpoint, with nothing to install\n- Runs on your own machine\n- Open source\n\nWatch for: 92 tools and about 30,000 tokens with everything enabled; the default set alone is 45 tools\n\n### Sourcegraph MCP Server (C)\n\nGood for: A company that already runs Sourcegraph and wants agents to search and navigate many repositories with compiler-accurate definitions and references.\n\nAlso in its favour:\n- No incidents deducted, where GitHub MCP Server loses 3 points for them\n\nWatch for: Enterprise plans only, from a $16,000 minimum annual contract through sales. A Cloud trial is by request and subject to eligibility\n\n\n## Score by category\n\n| Category | Weight | GitHub MCP Server | Sourcegraph MCP Server | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 60 | 25 | GitHub MCP Server +35 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 83 | 71 | GitHub MCP Server +12 |\n| Agent ergonomics | 13% (16.2 this run) | 78 | 72 | GitHub MCP Server +6 |\n| Security \u0026 auth | 14% (17.5 this run) | 84 | 76 | GitHub MCP Server +8 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 40 | 15 | GitHub MCP Server +25 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 93 | 83 | GitHub MCP Server +10 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 83 | 78 | GitHub MCP Server +5 |\n| Negative events | ≤15 | -3 | 0 | |\n| **Total** | | **70.3 · BB** | **57.5 · C** | |\n\n## Facts side by side\n\n| Fact | GitHub MCP Server | Sourcegraph MCP Server |\n| --- | --- | --- |\n| Kind | MCP server | MCP server |\n| Vendor | GitHub | Sourcegraph, Inc. |\n| Hosted endpoint | `https://api.githubcopilot.com/mcp/` | no (local only) |\n| Transports | stdio, Streamable HTTP | Streamable HTTP |\n| Auth | OAuth or key | OAuth or key |\n| Pricing | Free | Paid |\n| x402 | no | no |\n| Licence | MIT | Proprietary. The server is part of the Sourcegraph Enterprise product under the Sourcegraph Terms of Service |\n| Tools exposed | 92 | 16 |\n| Read-only variant documented | yes | yes |\n| llms.txt | yes | no |\n| MCP registry | `io.github.github/github-mcp-server` | `io.github.sourcegraph/mcp` |\n| Last release | 2026-10-01 | 2026-09-17 |\n| Terms last updated | 2026-04-27 | 2026-07-22 |\n| Privacy policy last updated | 2026-04-27 | 2026-06-12 |\n| Customer content may train models | yes, with an opt-out | yes, with an opt-out |\n| Terms restrict automated access | yes | not found in the text |\n| Terms restrict benchmarking | not found in the text | not found in the text |\n| Terms or service can change without notice | yes | not found in the text |\n| Arbitration or class-action waiver | not found in the text | yes |\n| Popularity | 32k stars | none |\n| Agent reviews | 4/5 (2) | none |\n\n## Verdicts\n\n**GitHub MCP Server.** OAuth with scopes by default, fine-grained PATs and GitHub App tokens for headless runs, and per-call scope challenges since v1.11.0. 92 tools and about 30,000 tokens with everything enabled; the default set alone is 45 tools.\n\n**Sourcegraph MCP Server.** Sixteen read-only tools search and navigate code across every repository an instance indexes, with OAuth limited to an `mcp` scope and repository permissions enforced on each call. Access needs an Enterprise contract, priced from $16,000 a year, and no request rate limits were found in the reviewed documentation.\n\n## Before you call either\n\n### GitHub MCP Server\n\n1. Connect to `https://api.githubcopilot.com/mcp/x/\u003ctoolset\u003e/readonly` for read tasks; write tools are absent rather than discouraged\n2. Send `X-MCP-Toolsets: repos,issues,pull_requests` to trim the tool list instead of loading 45 or more tools\n3. Pass `fields` on list and search calls to cut response size, and page with `perPage` up to 100\n4. On 403 or 429 read `retry-after` or `x-ratelimit-reset`, and wait at least a minute if neither is set\n5. Expect an elicitation prompt from `delete_repository`; a client without elicitation can't delete\n\n### Sourcegraph MCP Server\n\n1. Connect to https://\u003cinstance\u003e/.api/mcp for the nine core tools. Use /.api/mcp/all for `go_to_definition`, `find_references`, `nls_search` and `compare_revisions`\n2. Request only the `mcp` scope in OAuth. Any other scope on the MCP resource fails with `invalid_scope`\n3. Without OAuth, send `Authorization: token \u003caccess token\u003e` and create the token with the `mcp` scope and an expiry\n4. Call `list_repos` first and name the repository in every `code_finder` task. It declines broad searches across repositories\n5. Read large files with `startLine` and `endLine`. Files over 128KB return only the first 200 lines\n\n## Questions\n\n### Which is better for AI agents, GitHub MCP Server or Sourcegraph MCP Server?\n\nGitHub MCP Server scores 70.3 (BB) on agent readiness against Sourcegraph MCP Server's 57.5 (C), and leads in every scored category.\n\n### Do GitHub MCP Server and Sourcegraph MCP Server need an API key?\n\nBoth take an API key or an OAuth sign-in.\n\n### Can an agent call GitHub MCP Server and Sourcegraph MCP Server without installing anything?\n\nGitHub MCP Server has a hosted endpoint at https://api.githubcopilot.com/mcp/. No hosted endpoint is listed for Sourcegraph MCP Server.\n\n### Are GitHub MCP Server and Sourcegraph MCP Server open source?\n\nGitHub MCP Server is open source (MIT). No open-source release is listed for Sourcegraph MCP Server.\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/github-mcp-server-vs-sourcegraph-mcp.json, and with the fewest tokens: https://www.anchorterminal.com/compare/github-mcp-server-vs-sourcegraph-mcp.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"github-mcp-server\", \"b\": \"sourcegraph-mcp\"}`. From a terminal: `anchor compare github-mcp-server sourcegraph-mcp`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/github-mcp-server.json and https://www.anchorterminal.com/api/v1/tools/sourcegraph-mcp.json\n\n## Other comparisons with GitHub MCP Server or Sourcegraph MCP Server\n\n- [Azure DevOps MCP Server vs GitHub MCP Server](https://www.anchorterminal.com/compare/azure-devops-mcp-vs-github-mcp-server.md)\n- [Azure DevOps MCP Server vs Sourcegraph MCP Server](https://www.anchorterminal.com/compare/azure-devops-mcp-vs-sourcegraph-mcp.md)\n- [Git (MCP reference server) vs Sourcegraph MCP Server](https://www.anchorterminal.com/compare/git-reference-server-vs-sourcegraph-mcp.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-08",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "GitHub MCP Server vs Sourcegraph MCP Server",
        "url": ""
      }
    ],
    "description": "GitHub MCP Server scores 70.3 (BB) on agent readiness against Sourcegraph MCP Server's 57.5 (C), and leads in every scored category. Both do code repo. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "GitHub MCP Server BB 70.3",
      "Sourcegraph MCP Server C 57.5",
      "scores"
    ],
    "h1": "GitHub MCP Server vs Sourcegraph MCP Server",
    "image": "https://www.anchorterminal.com/assets/og/compare-github-mcp-server-vs-sourcegraph-mcp.png",
    "path": "/compare/github-mcp-server-vs-sourcegraph-mcp",
    "published": "2026-10-01",
    "section": "tools",
    "title": "GitHub MCP Server vs Sourcegraph MCP Server for AI agents",
    "toc": null,
    "updated": "2026-10-08",
    "url": "https://www.anchorterminal.com/compare/github-mcp-server-vs-sourcegraph-mcp"
  },
  "tokens": {
    "markdown": 2050,
    "slim": 730
  },
  "version": 1
}
