Server data from the Official MCP Registry
Convert public release-note URLs into ordered, source-cited upgrade tasks.
About
Convert public release-note URLs into ordered, source-cited upgrade tasks.
Security Report
This MCP server implements a well-designed tool for parsing public release notes into structured upgrade tasks. The codebase demonstrates strong security practices with proper URL validation, SSRF protection, input sanitization, and bounded resource consumption. Permissions are appropriately scoped to public HTTPS fetching only. Minor code quality observations exist but do not constitute security concerns. Supply chain analysis found 6 known vulnerabilities in dependencies (0 critical, 2 high severity). Package verification found 1 issue.
7 files analyzed · 11 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
Permissions Required
This plugin requests these system permissions. Most are normal for its category.
How to Install
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-apomt-release-to-tasks": {
"args": [
"-y",
"release-to-tasks-mcp"
],
"command": "npx"
}
}
}Documentation
View on GitHubFrom the project's GitHub README.
release-to-tasks-mcp
Turn one public release-note URL into ordered upgrade tasks that retain a source excerpt, anchor, confidence, and uncertainty. The MCP server never executes release text or project code.
Install
Node.js 22.14 or newer is required.
{
"mcpServers": {
"release-to-tasks": {
"command": "npx",
"args": ["-y", "release-to-tasks-mcp@0.1.0"]
}
}
}
For a clean local invocation before npm publication:
npm ci
npm test
node dist/index.js
Tool
release_url_to_tasks
{
"release_url": "https://github.com/modelcontextprotocol/python-sdk/releases/tag/v2.1.1"
}
The result contains sourceFormat, releaseTitle, ordered tasks, and warnings. Every task includes the exact source URL/anchor and a short source excerpt. Low-confidence entries explicitly require human impact assessment.
Supported sources:
- GitHub release pages (resolved through the public GitHub API)
- GitHub release API URLs
- GitLab release pages
- Public Markdown/plain-text changelogs
- Public HTML release-note pages
Malformed URLs, non-HTTPS URLs, local/private destinations, unsupported pages, missing release bodies, oversized responses, and unsafe redirects return explicit errors.
Demo
- Configure the server in an MCP client.
- Call
release_url_to_taskswith a real public release URL. - Check each proposed task against its
source.excerptandsource.urlbefore applying an upgrade.
The repository includes a non-fabricated sample response shape. The sample deliberately contains no tasks because release content can change; tests contain deterministic source fixtures.
Privacy and security
Telemetry is disabled by default and there is no hosted collector. Optional local aggregate telemetry never includes URLs or release contents. See PRIVACY.md and SECURITY.md.
Future extension points
The parser and fetcher boundaries can later support authenticated private-source connectors. This release contains no payment, Stripe, private-source, or hosted-service dependency.
Development
npm ci
npm test
npm pack --dry-run
Internal tests and owner traffic are technical signals only; they never count as external adoption. LEVEL 2 requires three unrelated external users to install the public package and successfully process real release URLs.
License
MIT
Reviews
No reviews yet
Be the first to review this server!
More Developer Tools MCP Servers
Git
Freeby Modelcontextprotocol · Developer Tools
Read, search, and manipulate Git repositories programmatically
Fetch
Freeby Modelcontextprotocol · Developer Tools
Web content fetching and conversion for efficient LLM usage
Toleno
Freeby Toleno · Developer Tools
Toleno Network MCP Server — Manage your Toleno mining account with Claude AI using natural language.
mcp-creator-python
Freeby mcp-marketplace · Developer Tools
Create, build, and publish Python MCP servers to PyPI — conversationally.
MCP Marketplace
Freeby mcp-marketplace · Developer Tools
Search and install MCP servers from inside your AI client.
MarkItDown
Freeby Microsoft · Content & Media
Convert files (PDF, Word, Excel, images, audio) to Markdown for LLM consumption
