Server data from the Official MCP Registry
AI-powered changelog ai MCP server for agents. Supports parse changelog, generate entry, bum...
AI-powered changelog ai MCP server for agents. Supports parse changelog, generate entry, bum...
The server contains a critical path traversal vulnerability via an unvalidated import from a user-controlled path (~/.../shared), allowing arbitrary code execution. Additionally, all tools accept an api_key parameter that is passed to an external auth_middleware module, but the implementation and validation are opaque. The rate limiting mechanism is implemented in-process and can be easily bypassed. These issues pose significant security risks. Supply chain analysis found 3 known vulnerabilities in dependencies (0 critical, 3 high severity). Package verification found 1 issue.
6 files analyzed · 14 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-csoai-org-changelog-ai-mcp": {
"args": [
"-y",
"changelog-ai-mcp"
],
"command": "npx"
}
}
}From the project's GitHub README.
Installation · Docs · Report Bug
pip install changelog-ai-mcp
# or
npm install -g @meok-ai/changelog-ai-mcp
See the project repository for full documentation and examples.
MIT © CSOAI
Be the first to review this server!
by Modelcontextprotocol · Developer Tools
Read, search, and manipulate Git repositories programmatically
by Toleno · Developer Tools
Toleno Network MCP Server — Manage your Toleno mining account with Claude AI using natural language.
by mcp-marketplace · Developer Tools
Create, build, and publish Python MCP servers to PyPI — conversationally.