Paperless-NGX over MCP: search, read, upload and tag documents; manage correspondents and types.
Abgeleitet aus den Transporten, die dieser Eintrag deklariert (stdio). Ein Client, der hier nicht steht, ist damit nicht ausgeschlossen — Forge kann ihn nur nicht bestätigen.
PAPERLESS_MCP_API_TOKENAPI-SchlüsseloptionalPaperless service-account token used for outbound API requests. The server refuses to start without it.
PAPERLESS_MCP_BEARER_TOKENAPI-SchlüsseloptionalSingle shared bearer token; enables bearer auth unless `bearer_tokens_file` is set, which takes precedence.
PAPERLESS_MCP_OIDC_CLIENT_SECRETOAuth-AppoptionalOIDC client secret registered with the provider.
PAPERLESS_MCP_OIDC_JWT_SIGNING_KEYAPI-SchlüsseloptionalSigning key for issued tokens; used in oidc-proxy mode only. When unset, the key is derived deterministically from `oidc_client_secret`, so tokens survive a restart. Rotating that secret then…
PAPERLESS_MCP_OIDC_VERIFY_ACCESS_TOKENAPI-SchlüsseloptionalValidate the access token instead of the id token.
Vom Autor in der offiziellen MCP-Registry angegeben. Forge does not store, broker, or ever see these values — the config below is scaffolded with placeholders you fill in locally.
Die Verifizierung bestätigt die Identität des Publishers (die Inhaberschaft am Repo), nicht die Sicherheit des Codes. Der Sicherheits-Scan deckt bekannte CVEs und verdächtige Installationsskripte ab.
Forge hat zu diesem Eintrag keinen Scan verzeichnet und hat daher keine Beobachtung seiner Tool-Oberfläche. Das ist das Fehlen eines Belegs, nicht der Beleg, dass er keine Tools offenlegt.
Paperless-NGX over MCP: search, read, upload and tag documents; manage correspondents and types.
Forges Resolver liest ausschließlich npm-Metadaten, daher hat dieses PyPI-Paket keinen aufgelösten Baum. Das ist eine Lücke in der Abdeckung, kein Unbedenklichkeitsnachweis.