Inspectra uses MCP tools and prompt workflows to perform structured code audits. Three audit architectures are available:
- Tier B (Hybrid): Single-prompt workflow (
/audit). Default, proven by benchmark. - Map-Reduce (Multi-Agent): Orchestrator + 12 parallel domain agents (
@audit-orchestrator). Deeper per-domain analysis with cross-domain correlation preserved. - Fusion (Maximum Recall): Combines Tier B + Map-Reduce in a single run, deduplicates cross-architecture findings (
@audit-fusion). Maximizes finding recall at the cost of higher latency.
User prompt -> MCP tool scan -> hotspot detection -> optional explorer -> merge -> report
User prompt -> MCP tool scan -> hotspot detection -> dispatch 12 agents -> cross-domain correlation -> merge -> report
User prompt -> MCP tool scan -> hotspot detection -> Pass A (Tier B synthesis) + Pass B (12 agents) -> cross-architecture dedup -> correlation -> merge -> report
- The prompt workflow receives the audit request and selects the relevant tool groups.
- MCP tools gather deterministic findings across the requested domains.
- Hotspot detection identifies files with clustered findings across multiple domains.
- A conditional explorer pass reads only hotspot files to uncover deeper root causes.
- Root-cause inference maps hotspots to known categories (god-module, test-gap, etc.).
- The prioritization engine scores each cluster and groups them into Fix Now / Next Sprint / Backlog.
- The workflow merges results, simulates score projections, and generates Markdown output.
- Full audit (
/audit): runs Tier B across all 12 domains. - Fusion audit (
@audit-fusion): runs both Tier B + Map-Reduce, deduplicates, maximum recall. - Multi-agent audit (
@audit-orchestrator): runs Map-Reduce across all 12 domains. - PR audit (
/audit-pr): runs the Tier B workflow only on changed files. - Targeted audit (
/audit-domain): runs only the requested domain tool group.
| Domain | Tool Group | Finding Prefix |
|---|---|---|
| Security | inspectra_scan_secrets, inspectra_check_deps_vulns, inspectra_run_semgrep, inspectra_check_maven_deps, inspectra_check_security_config |
SEC- |
| Tests | inspectra_parse_coverage, inspectra_parse_test_results, inspectra_detect_missing_tests, inspectra_parse_playwright_report, inspectra_detect_flaky_tests, inspectra_check_test_quality |
TST- |
| Architecture | inspectra_check_layering, inspectra_analyze_dependencies, inspectra_detect_circular_deps |
ARC- |
| Conventions | inspectra_check_naming, inspectra_check_file_lengths, inspectra_check_todos, inspectra_parse_lint_output, inspectra_detect_dry_violations, inspectra_check_function_lengths, inspectra_check_param_counts, inspectra_check_magic_numbers |
CNV- |
| Performance | inspectra_analyze_bundle_size, inspectra_check_build_timings, inspectra_detect_runtime_metrics |
PRF- |
| Documentation | inspectra_check_readme_completeness, inspectra_check_adr_presence, inspectra_detect_doc_code_drift, inspectra_detect_env_example_drift |
DOC- |
| Tech debt | inspectra_analyze_complexity, inspectra_age_todos, inspectra_check_dependency_staleness, inspectra_check_dead_exports, inspectra_detect_deprecated_apis, inspectra_detect_code_smells |
DEBT- |
| Accessibility | inspectra_check_a11y_templates |
ACC- |
| API Design | inspectra_check_rest_conventions |
API- |
| Observability | inspectra_check_observability |
OBS- |
| i18n | inspectra_check_i18n |
INT- |
| UX Consistency | inspectra_check_ux_consistency |
UX- |
User prompt -> MCP tool scan -> hotspot detection -> optional explorer -> merge -> report
- The prompt workflow receives the audit request and decides which domains or tool groups to run.
- MCP tools gather deterministic findings across the relevant domains.
- Hotspot detection identifies files with clustered findings across multiple domains.
- A conditional explorer pass reads only hotspot files to uncover deeper root causes.
- Root-cause inference maps hotspots to known categories (god-module, test-gap, etc.).
- The prioritization engine scores each cluster and groups them into Fix Now / Next Sprint / Backlog.
- The workflow merges results, simulates score projections, and generates Markdown output.
- Full audit (
/audit): runs Tier B across all 12 domains (single-prompt). - Fusion audit (
@audit-fusion): runs Tier B + Map-Reduce, deduplicates cross-architecture findings (maximum recall). - Multi-agent audit (
@audit-orchestrator): runs Map-Reduce across all 12 domains (parallel agents). - PR audit (
/audit-pr): runs the Tier B workflow only on changed files. - Targeted audit (
/audit-domain): runs only the requested domain's tool group.
Each domain report must conform to schemas/domain-report.schema.json.
All finding tools return paginated responses (default page size: 20). Every response includes has_more and next_offset. Always paginate when has_more: true — call the tool again with the returned next_offset until has_more: false, then merge all pages. Skipping pagination silently drops findings beyond the first page.