← Back to search Server uses network capabilities via: fetch() Server uses filesystem capabilities via: fs, fs sync ops, fs.promises, fs/promises Server uses shell capabilities via: child_process, execSync(), spawn(), spawnSync() Server uses env_vars capabilities via: process.env
Writing MCP
Metadata-first fiction editing and reasoning tools for long-form writing projects.
? Not scanned yet
Versions
2.12.0latestfirst seen Jun 5, 2026
3.9.5first seen May 19, 2026
Tools 0
No tools indexed yet.
Permissions 4
network medium filesystem low shell high env_vars low Scan Findings 30
high
Remote transport without authentication
info
Sandbox failed to start for behavioral verification
medium
Vulnerable dependency: @xmldom/xmldom@0.9.10 (GHSA-27p8-2357-5qqv)
medium
Vulnerable dependency: @xmldom/xmldom@0.9.10 (GHSA-3px3-54cx-rmw9)
medium
Vulnerable dependency: @xmldom/xmldom@0.9.10 (GHSA-4w3w-2rp5-g8jm)
medium
Vulnerable dependency: @xmldom/xmldom@0.9.10 (GHSA-6gmq-8vp8-gcm6)
medium
Vulnerable dependency: @xmldom/xmldom@0.9.10 (GHSA-6h8r-xr42-gp59)
medium
Vulnerable dependency: @xmldom/xmldom@0.9.10 (GHSA-6mj3-qw4j-hgrw)
medium
Vulnerable dependency: @xmldom/xmldom@0.9.10 (GHSA-8344-3jmq-59r6)
medium
Vulnerable dependency: @xmldom/xmldom@0.9.10 (GHSA-93r5-fhx6-vmg9)
medium
Vulnerable dependency: @xmldom/xmldom@0.9.10 (GHSA-965w-775f-mr7g)
medium
Vulnerable dependency: @xmldom/xmldom@0.9.10 (GHSA-c7q8-3ch8-vqpv)
medium
Vulnerable dependency: @xmldom/xmldom@0.9.10 (GHSA-g53g-w8rj-fmg7)
medium
Vulnerable dependency: @xmldom/xmldom@0.9.10 (GHSA-vr34-hp96-76pp)
medium
Vulnerable dependency: @xmldom/xmldom@0.9.10 (GHSA-w2rr-34g9-rvrj)
medium
Vulnerable dependency: js-yaml@4.1.1 (GHSA-2883-xcg3-v3hh)
medium
Vulnerable dependency: js-yaml@4.1.1 (GHSA-52cp-r559-cp3m)
medium
Vulnerable dependency: js-yaml@4.1.1 (GHSA-5p4m-2wfm-xmqj)
medium
Vulnerable dependency: js-yaml@4.1.1 (GHSA-h67p-54hq-rp68)
info
package.json metadata
info
Transport: stdio
info
Required env vars (13)
info
Sandbox failed to start for output poisoning scan
medium
Permission: network access detected
low
Permission: filesystem access detected
high
Permission: shell access detected
low
Permission: env_vars access detected
info
SBOM generated: 342 components
critical
AWS Access Key ID found in hannasdev-mcp-writing-329a7db/site/index.html
medium
No build provenance detected (SLSA L0)