SecureContext: An MCP Plugin for Persistent Memory and Token Reduction in Claude Code

SecureContext is an open-source Model Context Protocol (MCP) plugin built specifically for Claude Code. It addresses two common pain points: context window limitations that lead to repetitive token costs, and security risks from passing full environment variables (including API keys) to every subprocess.
How Claude Code Was Used to Build It
The developer built SecureContext using Claude Code itself. Claude helped with three key aspects:
- Architecting the Security Sandbox: Designed the
zc_executelogic that strips sensitive environment variables before running code, preventing exposure of credentials likeANTHROPIC_API_KEYto third-party scripts. - Optimizing Search Logic: Implemented a hybrid BM25 + Vector search using Ollama, allowing the agent to find relevant code snippets without re-reading the entire codebase each session.
- Writing the Test Suite: Generated over 80 security test vectors to verify SSRF protection and credential isolation work as intended.
Core Features
- MemGPT-style Persistence: Remembers facts and session summaries across separate Claude Code windows.
- Token Optimization: Uses targeted "context recall" instead of native file-dumping, achieving approximately 87% reduction in input tokens for large projects.
- Credential Isolation: Creates a "clean-room" environment for shell commands to keep private keys secure.
- Multi-Agent Channel: Includes a broadcast channel so multiple running agents can sync status without overlapping context.
The developer shares this as an example of how MCP can fundamentally change how Claude manages its "thinking space," not just add tools. The architecture for hybrid search and security middleware may be useful for others building MCP servers.
📖 Read the full source: r/ClaudeAI
👀 See Also

Apideck CLI: A Low-Context Alternative to MCP for AI Agents
Apideck CLI is an AI-agent interface that uses ~80 tokens for its agent prompt instead of tens of thousands for tool schemas, addressing MCP's context window consumption problem. Benchmarks show MCP can cost 4 to 32× more tokens than CLI for identical operations.

Decision Passport: An Audit Layer for AI Agent Execution Governance
The Claude Code leak highlights a gap in AI agent governance. Decision Passport addresses this with append-only execution records, portable proof bundles, and offline verification for tamper-evident audit trails.

Claude Proposal: Scope Memory & Hermetic Instance Isolation
A formal proposal to Anthropic from a power user: global/local memory scoping and hermetic instance isolation for Claude, enabling deterministic, auditable sessions.

OpenClaw CoreBrain Plugin: Persistent Memory for AI Coding Agents
A new plugin called CoreBrain addresses OpenClaw's memory issues by storing information outside the context window in a knowledge graph and auto-injecting it before every query, eliminating the need for tool calls and optional memory invocation.