# com.postlia/postlia

Schedule and publish social posts to 7 networks from AI agents. Postlia API key (Pro) required.

- **Type:** MCP server
- **Trust:** 60/100 (B), scored on the content rubric
- **Verification:** community-indexed — nobody has claimed this listing
- **Version:** 1.0.0
- **Author:** com.postlia
- **License:** Unknown
- **Endpoints:** streamable-http https://postlia.com/api/mcp
- **Source:** https://postlia.com
- **Endpoint health:** reachable (last checked 2026-09-16T12:04:38.779Z, 4 samples) — uptime is not a security property and is not part of the trust score
- **Compatible clients:** claude-code, cursor, copilot, chatgpt, gemini (basis: transport)

## Trust

60/100 (B), scored on the content rubric
- Publisher verified: no
- Install scripts: nothing suspicious found
- Prompt-injection scan: clean
- Obfuscation scan: clean
- Evidence age: 1 day

## Security scan

- **Status:** clean
- **Scanned:** 2026-09-16T12:04:38.779Z
- **Version scanned:** live
- **CVEs:** no coverage — this entry has no package coordinates to query OSV against, so "no known CVEs" is NOT asserted for it.

## Tools

15 declared. Observed from a live `tools/list` probe.
- `list_accounts` — List the connected social accounts on this Postlia workspace.
- `list_scheduled_posts` — List upcoming scheduled posts.
- `create_post` — Create a post. Provide scheduledAt (ISO datetime) to schedule, queue=true for the next open queue slot, or neither to post within ~5 minutes. Media platforms (i
- `cancel_post` — Cancel a scheduled post by id.
- `upload_media` — Pull an image or video from a public https URL into Postlia storage. Returns the storage URL and media type, ready for create_post. PNG, JPEG, WebP, GIF, MP4, W
- `get_post_receipt` — Delivery receipt for a post: per-platform outcome (published/failed/retrying/pending), platform post ids, and the platform's real error text. Use this to VERIFY
- `list_published_posts` — Recent post history with per-post outcome status and any platform errors.
- `get_posting_quota` — The posting quota that will actually be enforced: tier, posts used, limit and remaining. Check this before composing a batch instead of discovering the limit vi
- `reschedule_post` — Move a pending scheduled post to a new future time (ISO datetime).
- `update_post_content` — Rewrite a pending scheduled post's text. Platform character limits are enforced.
- `list_drafts` — List saved drafts (not scheduled, cost no quota).
- `create_draft` — Save a draft for later without spending posting quota.
- `delete_draft` — Delete a draft by id.
- `get_queue_info` — The posting schedule (timezone + weekly slots) and the next open queue slots, i.e. when a create_post with queue=true would actually publish.
- `get_analytics_summary` — Post-outcome summary over the last N days: totals, published/partial/failed counts, per-platform volume, and recent platform errors.

## Install

**Verdict: review** — Installable, but 2 things to check first: No CVE coverage: this entry has no npm/PyPI coordinates to query OSV against, so "no known vulnerabilities" is not a claim that can be made about it.
**Cautions** (coverage gaps and advisories — never blocking)
- No CVE coverage: this entry has no npm/PyPI coordinates to query OSV against, so "no known vulnerabilities" is not a claim that can be made about it.
- No publisher has proved control of this listing; it is indexed, not vouched for.
**Config** (claude-code):
```json
"{\n  \"mcpServers\": {\n    \"postlia\": {\n      \"type\": \"http\",\n      \"url\": \"https://postlia.com/api/mcp\"\n    }\n  }\n}"
```

## Blast radius

Moderate to extensive — no credential declaration found, from the publisher, the upstream registry, or the README. Known so far: deletes data; runs on someone else's infrastructure.
- Floor 33, ceiling 57 (tier: unknown)
- `unknown` means the floor and ceiling land in different bands — not measured enough to name one. It does not mean low.
- This is impact, not likelihood. A high radius is not a defect: a filesystem server is supposed to write files. It is never part of the trust score.

## Machine-readable views of this entry

- Signed JSON: https://forgeregistry.com/api/v1/packages/com.postlia%2Fpostlia
- Install plan: https://forgeregistry.com/api/v1/packages/com.postlia%2Fpostlia/install-plan
- Alternatives: https://forgeregistry.com/api/v1/alternatives/com.postlia%2Fpostlia
- HTML page: https://forgeregistry.com/registry/com.postlia%2Fpostlia
- MCP: POST https://forgeregistry.com/api/mcp → `forge_get_package` / `forge_install_plan`

## About this document

Generated by Forge (https://forgeregistry.com) — a compact rendering of the same record served, signed, at the JSON URL above. Trust and scan facts are the registry's own measurements; anything Forge did not measure is named as unmeasured rather than omitted.
