v2.7.0 - Outscraper MCP Integration
Summary
Added automatic Outscraper MCP server setup to the aidevops framework with subagent-only access pattern.
Features
-
Outscraper MCP Server Integration - Data extraction service for OpenCode
- Automatic MCP server configuration in
generate-opencode-agents.sh - Adds
outscraperto MCP section with uvx command and environment variable - Subagent-only access pattern via
@outscraperfor controlled usage
- Automatic MCP server configuration in
-
Tool-Specific Subagent Strategy - Enhanced security model for external service tools
- Added special handling for tool-specific subagents (outscraper, mainwp, localwp, quickfile, google-search-console)
- Main agents no longer have direct outscraper access
- Tools disabled globally (
outscraper_*: false) with access only through dedicated subagents
-
Repomix AI Context Generation - Configuration and documentation
repomix.config.json- Default configuration with XML output, line numbers, security checks.repomixignore- Additional exclusions beyond .gitignorerepomix-instruction.md- Custom AI instructions embedded in Repomix output
Security
- Plan+ Agent Permission Bypass Fix - Closed vulnerability allowing read-only agent to bypass restrictions
- Disabled
bashtool to prevent shell command file writes - Disabled
tasktool to prevent spawning write-capable subagents - Added explicit
write: denypermission for defense in depth
- Disabled
Documentation
- Updated
outscraper.mddocumentation with comprehensive multi-tool configurations - Updated
outscraper-config.json.txtagent enablement section - Enhanced
README.mdwith Repomix section
Files Changed
.agent/scripts/generate-opencode-agents.sh- Added MCP server + tools configuration.agent/tools/data-extraction/outscraper.md- New comprehensive documentationconfigs/outscraper-config.json.txt- Updated agent enablement documentationconfigs/mcp-templates/outscraper.json- MCP template.agent/plan-plus.md- Security hardening.agent/tools/opencode/opencode.md- Permission model documentation