Server data from the Official MCP Registry
Hr Management Ai MCP server. Tools: leave calculator, payroll estimator, performance review....
Hr Management Ai MCP server. Tools: leave calculator, payroll estimator, performance review....
This HR management MCP server contains a critical security vulnerability: it imports and calls an external authentication middleware (`auth_middleware.check_access`) from a hardcoded path on the filesystem (`~/clawd/meok-labs-engine/shared`), which is not provided and cannot be audited. This represents a supply chain risk and potential code injection vector. Additionally, the server implements client-side rate limiting that can be trivially bypassed, and all five tools accept an `api_key` parameter that is passed to the unauditable auth middleware. The rate limiting and auth mechanisms provide a false sense of security while the core logic is sound. Supply chain analysis found 3 known vulnerabilities in dependencies (0 critical, 3 high severity). Package verification found 1 issue.
6 files analyzed · 12 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-csoai-org-hr-management-ai-mcp": {
"args": [
"-y",
"hr-management-ai-mcp"
],
"command": "npx"
}
}
}From the project's GitHub README.
By MEOK AI Labs | meok.ai
Installation · Docs · Report Bug
pip install hr-management-ai-mcp
# or
npm install -g @meok-ai/hr-management-ai-mcp
See the project repository for full documentation and examples.
MIT © CSOAI
Be the first to review this server!
by Modelcontextprotocol · Developer Tools
Read, search, and manipulate Git repositories programmatically
by Toleno · Developer Tools
Toleno Network MCP Server — Manage your Toleno mining account with Claude AI using natural language.
by mcp-marketplace · Developer Tools
Create, build, and publish Python MCP servers to PyPI — conversationally.