Search, read, create, edit and sync Joplin notes and notebooks via a headless Joplin sidecar.
Inferred from the transports this listing declares (stdio). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.
JOPLIN_TOKENAPI keyoptionalJoplin API token, for external mode only (see JOPLIN_HOST). Sidecar mode manages its own token and ignores this.
JOPLIN_SYNC_PASSWORDAPI keyoptionalSync password; the secret key for the s3 target
Declared by the author in the official MCP registry. Forge does not store, broker, or ever see these values — the config below is scaffolded with placeholders you fill in locally.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
Read out of the source npm actually ships, at scan time. The package was never executed. Tools registered dynamically at runtime, or hidden inside bundled or minified code, can be missed — so this is a floor on the tool surface, not a complete census of it.
list_notebooksRetrieve the complete notebook hierarchy from JoplinRetrieve the complete notebook hierarchy from Joplin
No input schema was published for this tool.
search_notesSearch for notes in Joplin and return matching notebooksSearch for notes in Joplin and return matching notebooks
No input schema was published for this tool.
read_notebookRead the contents of a specific notebookRead the contents of a specific notebook
No input schema was published for this tool.
read_noteRead the full content of a specific noteRead the full content of a specific note
No input schema was published for this tool.
read_multinoteRead the full content of multiple notes at onceRead the full content of multiple notes at once
No input schema was published for this tool.
create_noteCreate a new note in JoplinCreate a new note in Joplin
No input schema was published for this tool.
create_folderCreate a new folder/notebook in JoplinCreate a new folder/notebook in Joplin
No input schema was published for this tool.
edit_noteprivilegedEdit/update an existing note in JoplinEdit/update an existing note in Joplin
No input schema was published for this tool.
edit_folderprivilegedEdit/update an existing folder/notebook in JoplinEdit/update an existing folder/notebook in Joplin
No input schema was published for this tool.
delete_noteprivilegedDelete a note from Joplin (requires confirmation)Delete a note from Joplin (requires confirmation)
No input schema was published for this tool.
delete_folderprivilegedDelete a folder/notebook from Joplin (requires confirmation)Delete a folder/notebook from Joplin (requires confirmation)
No input schema was published for this tool.
syncTrigger a Joplin sync to push/pull changes with the configured sync targetTrigger a Joplin sync to push/pull changes with the configured sync target
No input schema was published for this tool.
12 of 12 tools published a description.
Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.
Search, read, create, edit and sync Joplin notes and notebooks via a headless Joplin sidecar.
Linked names open Forge’s index of every entry observed exposing that tool. Browse all indexed tools.
The crawl stopped at the 60-package limit. The rest of the tree was never resolved.
36 more resolved packages are not drawn here (display cap: 24). Every dependency carrying an advisory is drawn regardless of the cap. Full inventory (CycloneDX SBOM)
248 declared dependencies never landed in the tree. They are missing from Forge's resolution, not from the package.
+236 more not listed. The counts by reason above cover all of them.
Not followed: peerDependencies, optionalDependencies. This tree covers runtime dependencies only, so anything those pull in was never resolved.