| FMRS | 59 / 100 · C | 76 / 100 · B |
| Reliability | 9 / 20 | 13 / 20 |
|---|
| Security and permissions | 12 / 20 | 14 / 20 |
|---|
| Maintenance | 11 / 20 | 18 / 20 |
|---|
| Documentation | 14 / 20 | 17 / 20 |
|---|
| Setup experience | 13 / 20 | 14 / 20 |
| Best for | - Developers who have at least one supported provider CLI installed and authenticated, or the relevant API keys configured
- Teams that want cross-model code review and plan debate inside their coding workflow
- Users who need private or offline review via Ollama
- Users of MCP clients such as Claude Code, Codex CLI, Cursor, and Claude Desktop
| - Teams that want an AI assistant to directly operate on GitHub repos and collaboration workflows
- Users already in the GitHub Copilot ecosystem who want a zero-deployment remote option
|
| Not for | - Users without any provider CLI installed or keys configured (the server does not supply model access itself)
- Environments that cannot install Node.js 20+ or are not Linux/macOS
- Users expecting a fully hosted, zero-config, or officially supported product
- Scenarios where outbound data transfer is strictly forbidden and no local provider such as Ollama is available
| - Scenarios where you don't want the assistant to have write access to repos (enable only read-only toolsets)
- Environments with strict network isolation for private repos that can't reach the official remote endpoint
|
| Required permissions | - Read local workspace files for context (e.g. Claude provider's Read/Glob/Grep-only access, Gemini's @ file syntax)
- Launch and call installed provider CLIs locally (codex, claude, agy, gemini, agent, etc.)
- Network access to call the xAI API (when using XAI_API_KEY) and the local Ollama service (default http://localhost:11434)
- Read API keys from environment variables (e.g. XAI_API_KEY, CURSOR_API_KEY)
- Cursor Agent runs in read-only ask mode and does not change force/trust/spend settings
| - A personal access token (PAT) or OAuth App token; effective scope depends on the token's own permissions
- Enabling toolsets like actions/issues/pull_requests grants write access — request tokens on a least-privilege basis
|
| Risks and side effects | - Code and prompts may be sent to external model providers, creating data-transfer exposure; choose Ollama when local privacy is required
- Metered endpoints such as the xAI API incur real costs; ASK_GROK_MAX_OUTPUT_TOKENS only bounds spend, it does not make it free
- Grok and Ollama never fall back to another model, so requests may fail outright
- Gemini CLI has been enterprise-seat-only since 2026-06-18; non-enterprise accounts get guidance instead of output
- Antigravity is experimental and one-shot, with limited reliability
- Plugin workflows such as codex-pair can trigger repeated external calls and costs, requiring an explicit marker and consent
- This is a third-party, unofficial tool with no affiliation with or endorsement by Anthropic, Google, OpenAI, or xAI
| - Write toolsets (creating/merging PRs, triggering workflows) can cause accidental changes if the token is overscoped — try a read-only toolset first
- In hosted mode, credentials travel via the Authorization header — make sure the client-to-api.githubcopilot.com connection is trusted
|
| Supported clients | Claude Code, Claude Desktop, Cursor, Codex, Pi | Claude Desktop, Claude Code, VS Code, Cursor, Windsurf, JetBrains IDEs, Zed, Amp |
| Tools | 14 | 15 |