Back to Browse

Kybase MCP Server

by Kyrzin
Developer ToolsUse Caution4.8MCP RegistryLocal
Free

Server data from the Official MCP Registry

Self-hosted Markdown memory for AI agents: notes you can read and edit, with hybrid search.

About

Self-hosted Markdown memory for AI agents: notes you can read and edit, with hybrid search.

Security Report

4.8
Use Caution4.8High Risk

Kybase is a well-designed self-hosted knowledge management system with proper authentication and reasonable permission scoping. The codebase demonstrates good security practices including OAuth token handling, secrets management via environment variables, and no hardcoded credentials. Minor code quality issues and a low-severity path traversal pattern in file operations do not materially impact security given the server's self-hosted nature and access controls. Supply chain analysis found 3 known vulnerabilities in dependencies (3 critical, 0 high severity). Package verification found 1 issue (1 critical, 0 high severity).

4 files analyzed · 9 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

HTTP Network Access

Connects to external APIs or services over the internet.

env_vars

Check that this permission is expected for this type of plugin.

File System Read

Reads files on your machine. Normal for tools that analyze or process local data.

File System Write

Writes or modifies files on your machine. Check that this is expected for the tool.

database

Check that this permission is expected for this type of plugin.

Unverified package source

We couldn't verify that the installable package matches the reviewed source code. Proceed with caution.

What You'll Need

Set these up before or after installing:

Where the embedded database and instance secret live. Defaults to ~/.kybaseOptional

Environment variable: KYBASE_DATA_DIR

Embedding provider for semantic searchOptional

Environment variable: EMBEDDING_PROVIDER

Ollama endpoint for local embeddings. Without any provider, full-text search still worksOptional

Environment variable: OLLAMA_URL

Ollama embedding modelOptional

Environment variable: OLLAMA_MODEL

Google API key, when EMBEDDING_PROVIDER=google. Sends note text to GoogleRequired

Environment variable: GOOGLE_API_KEY

OpenAI API key, when EMBEDDING_PROVIDER=openai. Sends note text to OpenAIRequired

Environment variable: OPENAI_API_KEY

Use an existing Kybase Postgres instead of the embedded one (migrations are left to the app)Required

Environment variable: DATABASE_URL

How to Install

Add this to your MCP configuration file:

{
  "mcpServers": {
    "io-github-kyrzin-kybase": {
      "env": {
        "OLLAMA_URL": "your-ollama-url-here",
        "DATABASE_URL": "your-database-url-here",
        "OLLAMA_MODEL": "your-ollama-model-here",
        "GOOGLE_API_KEY": "your-google-api-key-here",
        "OPENAI_API_KEY": "your-openai-api-key-here",
        "KYBASE_DATA_DIR": "your-kybase-data-dir-here",
        "EMBEDDING_PROVIDER": "your-embedding-provider-here"
      },
      "args": [
        "-y",
        "kybase"
      ],
      "command": "npx"
    }
  }
}

Reviews

No reviews yet

Be the first to review this server!