# @faviovazquez/showtime-mcp

A local video studio for your coding agent: showtime's MCP server and command line. Describe a video. Your agent directs. Your machine renders.

- **Type:** MCP server
- **Trust:** 40/100 (C), scored on the package rubric
- **Verification:** community-indexed — nobody has claimed this listing
- **Version:** 0.2.0
- **Author:** Favio Vazquez
- **License:** MIT
- **npm:** @faviovazquez/showtime-mcp
- **Source:** https://github.com/FavioVazquez/showtime
- **Compatible clients:** claude-code, cursor, copilot, gemini (basis: transport)

## Trust

40/100 (C), scored on the package rubric
- Publisher verified: no
- Install scripts: suspicious script found
- Prompt-injection scan: not run
- Obfuscation scan: not run
- Evidence age: 0 days

## Security scan

- **Status:** warnings
- **Scanned:** 2026-09-30T11:52:59.627Z
- **Version scanned:** 0.3.0
- **CVEs:** none found by OSV at scan time
**Changes since the previous scan:** tool-added, tool-changed

## Tools

20 declared. Statically extracted from the shipped source — a floor on the surface, not a census.
- `doctor` — Check that showtime is installed and working (ffmpeg, Python, Node, browser, models). Returns PASS/WARN/FAIL per
- `guide` — The references by the piece: with topic alone, its Essentials (the rules for that step) and its section
- `status` — Where the newest job (or the given one) stands: stage, review mode (quality or lean) and critic round, what is verified vs assumed, and the next command.
- `receipt` — Write the job's receipt (receipt.md, receipt.json and one line in share.txt): the request as typed, assumptions,
- `new_project` — Create a new video project folder from a template (showtime.json + index.html + assets). Edit its index.html
- `render` — Render a project folder to MP4 (frame-exact, H.264, loudness-normalised audio). Use preview=true first for a fast
- `check` — Pre-render checks of a project: page errors, determinism, text off-canvas or overlapping, contrast, readability,
- `snap` — Capture still frames of a project or a rendered video: a contact sheet of evenly spaced frames, or stills at
- `voice_say` — Synthesize speech locally: writes a WAV (mastered, 48 kHz) and a .words.json with every word's start/end time.
- `voice_script` — Synthesize a narration script (.md, .json or .txt) into a folder: vo.wav (all lines with pauses), timeline.json
- `transcribe` — Word-level, verbatim local transcription of video/audio files (fillers kept, cached per file). Writes
- `audio_compose` — Compose and render an original music bed locally, exactly `duration` seconds long, with section changes on
- `audio_sfx` — Render one procedural sound effect (whoosh, riser, impact, click, pop, swoosh ... see `showtime audio sfx-types`)
- `audio_mix` — Render a mix spec (audio/mix.json: music, voice, sfx and ambience tracks with hit alignment, fades and ducking
- `audio_search` — Search the local audio library (music, sfx, ambience) by words, mood, tempo, length and license. Returns ids,
- `export_html` — Export a project as one self-contained HTML file that plays offline in any browser (player with scrubber,
- `studio_open` — Start (or reuse) the local review board server for a studio job (127.0.0.1 only, keyed link) and return its
- `studio_feedback` — A short digest of what the reviewer picked, answered and commented on the studio board. Everything quoted was
- `deliver_exports` — Turn one master video into platform files (youtube, x, linkedin, reels, tiktok, shorts, square, github, chat,
- `showtime`

## Install

**Verdict: review** — Installable, but 2 things to check first: 2 suspicious changes since the previous scanned version.
**Cautions** (coverage gaps and advisories — never blocking)
- 2 suspicious changes since the previous scanned version. — Tool surface grew since v0.2.0: added guide, receipt · Tool definition changed in place since v0.2.0: status [description] — the tool list is unchanged, so review the new text before updating
- No publisher has proved control of this listing; it is indexed, not vouched for.
**Config** (claude-code):
```json
"{\n  \"mcpServers\": {\n    \"showtime\": {\n      \"command\": \"npx\",\n      \"args\": [\n        \"-y\",\n        \"@faviovazquez/showtime-mcp\"\n      ]\n    }\n  }\n}"
```

## Blast radius

Contained to moderate — no credential declaration found, from the publisher, the upstream registry, or the README. Known so far: runs on your machine; read-only tool surface.
- Floor 11, ceiling 29 (tier: unknown)
- `unknown` means the floor and ceiling land in different bands — not measured enough to name one. It does not mean low.
- This is impact, not likelihood. A high radius is not a defect: a filesystem server is supposed to write files. It is never part of the trust score.

## Machine-readable views of this entry

- Signed JSON: https://forgeregistry.com/api/v1/packages/%40faviovazquez%2Fshowtime-mcp
- Install plan: https://forgeregistry.com/api/v1/packages/%40faviovazquez%2Fshowtime-mcp/install-plan
- Alternatives: https://forgeregistry.com/api/v1/alternatives/%40faviovazquez%2Fshowtime-mcp
- HTML page: https://forgeregistry.com/registry/%40faviovazquez%2Fshowtime-mcp
- MCP: POST https://forgeregistry.com/api/mcp → `forge_get_package` / `forge_install_plan`

## About this document

Generated by Forge (https://forgeregistry.com) — a compact rendering of the same record served, signed, at the JSON URL above. Trust and scan facts are the registry's own measurements; anything Forge did not measure is named as unmeasured rather than omitted.
