@uzqw/mcp

MCPcommunity
v0.1.0io.github.uzqwUnknownUpdated 1mo agonpmGitHub

Read-only access to your Recolx recordings, transcripts and templates (stdio)

Works in
ClaudeCursorCopilotGemini

Inferred from the transports this listing declares (stdio). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.

Automatically indexed from public sources. Not yet verified by the developer on Forge.Claim this listing →
1mo agoLast update
Package
Authorio.github.uzqw
LicenseUnknown
Version0.1.0
Sourcenpm+mcp-registry
Trust Status
B
60/100Good
✓Listed in Forge index+10/10
—Publisher identity verified+0/20
→ Publisher: run `forge publish` from the package repo to claim ownership
—Ed25519 publish signature+0/5
→ Included automatically when the publisher runs `forge publish`
—Domain verification+0/5
→ Publisher: host /.well-known/forge.json on the package homepage with { "publisher": "<github-login>" }
—npm Trusted Publishing (Sigstore)+0/5
→ Publish from GitHub Actions with --provenance so the attestation binds this package to this repo
—npm maintainer match+0/5
→ Earned once your identity is verified above and that login is an npm maintainer of this package
✓CVE scan · clean+30/30
✓Static analysis · clean+20/20
Paste into Claude Code, Cursor, or any AI assistant to fix all gaps
StatusCommunity-indexed
PublisherUnverified
SignatureUnsigned
Domain—
Provenance—
Dependencies✓ 60 resolved+ · none vulnerable
Tool surface9 tools · none privileged
Security scan✓ Cleanv0.1.11 · 9d agoHow well does this scan work?
EvalsNone
IndexedAug 27, 2026

Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.

Tools

9 tools · none privileged
Statically extracted from the published packagev0.1.11 · 9d ago

Read out of the source npm actually ships, at scan time. The package was never executed. Tools registered dynamically at runtime, or hidden inside bundled or minified code, can be missed — so this is a floor on the tool surface, not a complete census of it.

get_current_user获取当前登录用户的账号信息与订阅档(Pro 额度/余量),用于判断登录态与额度闸门

获取当前登录用户的账号信息与订阅档(Pro 额度/余量),用于判断登录态与额度闸门

No input schema was published for this tool.

list_files列出录音文件。支持客户端过滤:`query`(标题大小写不敏感子串)、`date_from`/`date_to`(YYYY-MM-DD,含边界)。设过滤时最多扫 5 页 × 100 条并返回全部匹配

列出录音文件。支持客户端过滤:`query`(标题大小写不敏感子串)、`date_from`/`date_to`(YYYY-MM-DD,含边界)。设过滤时最多扫 5 页 × 100 条并返回全部匹配

No input schema was published for this tool.

get_file获取单个录音的详情:标题、时长、设备(serial + 型号)、24h 音频 presign 下载地址

获取单个录音的详情:标题、时长、设备(serial + 型号)、24h 音频 presign 下载地址

No input schema was published for this tool.

get_note获取录音的笔记/摘要,按模板 tab 返回:summary 数组每项含 prompt_id/prompt_name。传 `template`(模板名或模板 id)时只返回匹配模板;缺省返回全部

获取录音的笔记/摘要,按模板 tab 返回:summary 数组每项含 prompt_id/prompt_name。传 `template`(模板名或模板 id)时只返回匹配模板;缺省返回全部

No input schema was published for this tool.

get_transcript获取录音的转写(保留 language/speaker)。默认 raw 原文;后端暂未提供 polish 润色。支持 language/speaker 过滤与 cursor 分页(每次 50 条)

获取录音的转写(保留 language/speaker)。默认 raw 原文;后端暂未提供 polish 润色。支持 language/speaker 过滤与 cursor 分页(每次 50 条)

No input schema was published for this tool.

login登录 Recolx(OAuth PKCE):打开浏览器跳转授权页,同意后在本地 8199 回调收取 token 并写入 ~/.recolx/tokens-mcp-{env}.json(每环境独立);已登录时直接返回。登出后第一次 login 会自动强制重新认证(弹 Logto 页),无需额外参数

登录 Recolx(OAuth PKCE):打开浏览器跳转授权页,同意后在本地 8199 回调收取 token 并写入 ~/.recolx/tokens-mcp-{env}.json(每环境独立);已登录时直接返回。登出后第一次 login 会自动强制重新认证(弹 Logto 页),无需额外参数

No input schema was published for this tool.

logout登出并撤销 Recolx 授权:调服务端 revoke(当前 access + 全部 refresh 失效),删除本地 token 文件;不影响 App 登录

登出并撤销 Recolx 授权:调服务端 revoke(当前 access + 全部 refresh 失效),删除本地 token 文件;不影响 App 登录

No input schema was published for this tool.

set_env切换 Recolx 环境(local 本地测试 / staging 线上测试 / prod 线上正式):写 ~/.recolx/config.json 并即时生效;返回新环境、后端地址与登录态

切换 Recolx 环境(local 本地测试 / staging 线上测试 / prod 线上正式):写 ~/.recolx/config.json 并即时生效;返回新环境、后端地址与登录态

No input schema was published for this tool.

get_env查看当前 Recolx 环境(local/staging/prod)、后端地址、鉴权模式与登录态

查看当前 Recolx 环境(local/staging/prod)、后端地址、鉴权模式与登录态

No input schema was published for this tool.

9 of 9 tools published a description.

Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.

About

Read-only access to your Recolx recordings, transcripts and templates (stdio)

Keywords
mcp
Alternatives
Comparing tool surfaces…

Dependency tree

What one Forge scan resolved from npm metadata on 2026-09-25 — observed resolution, not a publisher declaration.

60 packages resolved · 4 direct · none carrying advisories Resolution stops at depth 4 and 60 packages.

The crawl stopped at the 60-package limit. The rest of the tree was never resolved.

36 more resolved packages are not drawn here (display cap: 24). Every dependency carrying an advisory is drawn regardless of the cap. Full inventory (CycloneDX SBOM)

Declared but not resolved

67 declared dependencies never landed in the tree. They are missing from Forge's resolution, not from the package.

+55 more not listed. The counts by reason above cover all of them.

Not followed: peerDependencies. This tree covers runtime dependencies only, so anything those pull in was never resolved.