Secure MCP server for WorkBoard OKR and strategy execution platform
A secure MCP (Model Context Protocol) server for WorkBoard OKR and strategy execution platform. This MCP server is designed to be: Secure by default - Comprehensive threat modeling, input validation, and token protection No third-party services - Runs locally via stdio, your API token never leaves your machine Cross-platform - Works on Linux, macOS, and Windows Automatically updated - GitHub…
Inferred from the transports this listing declares (stdio). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
Forge read 0 source files from the published package tarball and matched no MCP tool registrations. Extraction is pattern-based over shipped source: a server that builds its tool list at runtime, or that ships only bundled or minified code, registers nothing this can see. Treat it as “not detected”, not as “exposes none”.
A secure MCP (Model Context Protocol) server for WorkBoard OKR and strategy execution platform. This MCP server is designed to be: Secure by default - Comprehensive threat modeling, input validation, and token protection No third-party services - Runs locally via stdio, your API token never leaves your machine Cross-platform - Works on Linux, macOS, and Windows Automatically updated - GitHub Actions monitor for CVEs and update dependencies Containerized - Available at built on Hummingbird…
Forge's dependency resolver reads npm metadata only, so this PyPI package has no resolved tree. That is a gap in coverage, not a clean bill of health.