Skip to main content

gutsy-mcp

A local gut check for coding agents. Before Claude Code, Codex, Cursor or Copilot runs rm -rf, force-pushes, deploys or sends something, it calls gut_check and gets back calibrated probabilities that the action is intended and safe, plus a recommendation: proceed, confirm (ask the user first) or block.

Runs on your CPU with gutsy (0.8B, 775 MB GGUF). No API calls, no per-call cost, deterministic, and your code never leaves the machine.

What it is and isn't

It's a fast second opinion that adds friction where it's warranted. It is not a security boundary: the agent decides whether to call it and writes the context it sees, and a 0.8B model is weak at ambiguity and multi-step rules (see the model card). Keep your normal permission settings on. Default thresholds aren't tuned for your workflow; log the probabilities and adjust them.

1. Start the gutsy runtime

git clone https://github.com/kouhxp/gutsy
pip install -e gutsy/gutsy-inference
hf download kouhxp/gutsy --include "gutsy-0.8b-v04*" --local-dir gutsy/gutsy-inference/models
cd gutsy/gutsy-inference && cp models.example.json models.json
gutsy-inference check && gutsy-inference serve     # http://127.0.0.1:8765

Or set GUTSY_INFERENCE_DIR=/path/to/gutsy/gutsy-inference and gutsy-mcp starts it on first use.

2. Add the MCP server

Claude Code:

claude mcp add gutsy -- uvx gutsy-mcp

Cursor (.cursor/mcp.json) / Claude Desktop:

{ "mcpServers": { "gutsy": { "command": "uvx", "args": ["gutsy-mcp"] } } }

VS Code (.vscode/mcp.json):

{ "servers": { "gutsy": { "type": "stdio", "command": "uvx", "args": ["gutsy-mcp"] } } }

Codex (~/.codex/config.toml):

[mcp_servers.gutsy]
command = "uvx"
args = ["gutsy-mcp"]

Then tell the agent when to use it (CLAUDE.md, AGENTS.md, .cursor/rules):

Before deleting files, rewriting git history, force-pushing, touching databases, deploying, publishing or sending anything, call gut_check. If it doesn't return proceed, stop and ask me.

3. Optional: enforce it with a Claude Code hook

An MCP tool only runs if the agent remembers to call it. The hook runs on every risky-looking Bash command regardless. It can only ask or deny, never auto-approve.

uv tool install gutsy-mcp      # puts gutsy-hook on PATH

.claude/settings.json:

{
  "hooks": {
    "PreToolUse": [
      { "matcher": "Bash", "hooks": [{ "type": "command", "command": "gutsy-hook", "timeout": 60 }] }
    ]
  }
}

block becomes a confirmation prompt by default; set GUTSY_HOOK_ALLOW_DENY=1 to deny outright.

Tool

gut_check(action, context="", user_request="") returns:

{
  "recommendation": "confirm",
  "reason": "Not confident enough to proceed without the user.",
  "p_intended": 0.41,
  "p_reversible": 0.08,
  "verdict_probabilities": {"proceed": 0.22, "confirm": 0.61, "block": 0.17},
  "reject": 0.04,
  "confidence": 0.42
}
env var default
GUTSY_URL http://127.0.0.1:8765 runtime URL
GUTSY_INFERENCE_DIR lets gutsy-mcp start the runtime
GUTSY_MODEL runtime default model name from models.json
GUTSY_PROCEED_MIN 0.85
GUTSY_BLOCK_MIN 0.50
GUTSY_API_KEY if you run serve --api-key-env

License: Apache 2.0.

Metadata

Release files for gutsy-mcp 0.1.1

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for gutsy-mcp 0.1.1
File Size Uploaded
gutsy_mcp-0.1.1.tar.gz 71.3 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for gutsy-mcp 0.1.1
File Interpreter ABI Platform
gutsy_mcp-0.1.1-py3-none-any.whl Python 3 none any Details

Total release size: 83.4 kB

Release files / gutsy_mcp-0.1.1.tar.gz

Download URL gutsy_mcp-0.1.1.tar.gz
Size 71.3 kB
Tags Source
SHA-256 checksum
How to use checksums
b17d8cddd2e47b917669d4e61968d141bbcc2feedbec579b1e0d5ea6ab76aebb
BLAKE2b-256 checksum
How to use checksums
df85494b346e8959df63906e31f901681b2899fc303b03f3addf6afb8a024c5d
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/7.0.0 CPython/3.13.13

Release files / gutsy_mcp-0.1.1-py3-none-any.whl

Download URL gutsy_mcp-0.1.1-py3-none-any.whl
Size 12.2 kB
Tags Python 3
SHA-256 checksum
How to use checksums
8e602e645189a2ffaee8a9c362bd83ae09351fae578ed0a29daac9698b46920a
BLAKE2b-256 checksum
How to use checksums
c56e26a3d5359e2fa83732b10ae2e8b8c5ef46e19f6a540f1d172c0c02cc3ccd
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/7.0.0 CPython/3.13.13

Release history Release notifications | RSS feed

0.1.2

2 release files

This release

0.1.1 This release

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page