mac-shortcuts-mcp

MCPcommunity
v0.1.2io.github.Dominic-DKMITUpdated 14d agonpmGitHub

Read your Mac's Calendar, Reminders, Notes, Contacts and more via Shortcuts. Read-only, local.

Works in
ClaudeCursorCopilotGemini

Inferred from the transports this listing declares (stdio). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.

Automatically indexed from public sources. Not yet verified by the developer on Forge.Claim this listing →
242Downloads/wk
13GitHub stars
3Forks
14d agoLast update
Package
Authorio.github.Dominic-DK
LicenseMIT
Version0.1.2
Sourcenpm+mcp-registry
Trust Status
B
60/100Good
✓Listed in Forge index+10/10
—Publisher identity verified+0/20
→ Publisher: run `forge publish` from the package repo to claim ownership
—Ed25519 publish signature+0/5
→ Included automatically when the publisher runs `forge publish`
—Domain verification+0/5
→ Publisher: host /.well-known/forge.json on the package homepage with { "publisher": "<github-login>" }
—npm Trusted Publishing (Sigstore)+0/5
→ Publish from GitHub Actions with --provenance so the attestation binds this package to this repo
—npm maintainer match+0/5
→ Earned once your identity is verified above and that login is an npm maintainer of this package
✓CVE scan · clean+30/30
✓Static analysis · clean+20/20
Paste into Claude Code, Cursor, or any AI assistant to fix all gaps
StatusCommunity-indexed
PublisherUnverified
SignatureUnsigned
Domain—
Provenance—
Dependencies✓ 60 resolved+ · none vulnerable
Tool surface14 tools · none privileged
Security scan✓ Cleanv0.1.1 · 15d agoHow well does this scan work?
EvalsNone
IndexedSep 20, 2026

Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.

Tools

14 tools · none privileged
Statically extracted from the published packagev0.1.1 · 15d ago

Read out of the source npm actually ships, at scan time. The package was never executed. Tools registered dynamically at runtime, or hidden inside bundled or minified code, can be missed — so this is a floor on the tool surface, not a complete census of it.

mac_calendar이 맥의 캘린더에서 기간 안의 일정을 읽는다. 읽기 전용.

이 맥의 캘린더에서 기간 안의 일정을 읽는다. 읽기 전용.

No input schema was published for this tool.

mac_reminders이 맥의 미리 알림을 읽는다. 읽기 전용.

이 맥의 미리 알림을 읽는다. 읽기 전용.

No input schema was published for this tool.

mac_notes이 맥의 메모를 검색해 본문을 읽는다. 읽기 전용.

이 맥의 메모를 검색해 본문을 읽는다. 읽기 전용.

No input schema was published for this tool.

mac_contacts이 맥의 연락처를 이름으로 찾는다. 읽기 전용.

이 맥의 연락처를 이름으로 찾는다. 읽기 전용.

No input schema was published for this tool.

mac_clipboard이 맥의 클립보드 내용을 읽는다. 읽기 전용.

이 맥의 클립보드 내용을 읽는다. 읽기 전용.

No input schema was published for this tool.

mac_location이 맥의 현재 위치(주소·좌표)를 읽는다. 읽기 전용.

이 맥의 현재 위치(주소·좌표)를 읽는다. 읽기 전용.

No input schema was published for this tool.

mac_weather이 맥이 있는 곳의 현재 날씨를 읽는다. 읽기 전용.

이 맥이 있는 곳의 현재 날씨를 읽는다. 읽기 전용.

No input schema was published for this tool.

mac_device이 맥의 이름과 배터리 잔량을 읽는다. 읽기 전용.

이 맥의 이름과 배터리 잔량을 읽는다. 읽기 전용.

No input schema was published for this tool.

mac_now_playing지금 재생 중인 곡을 읽는다. 재생 중이 없으면 빈 결과. 읽기 전용.

지금 재생 중인 곡을 읽는다. 재생 중이 없으면 빈 결과. 읽기 전용.

No input schema was published for this tool.

mac_shortcuts_list이 맥에 깔린 단축어 전체 목록(이름과 식별자).

이 맥에 깔린 단축어 전체 목록(이름과 식별자).

No input schema was published for this tool.

mac_run_shortcut이 맥에 이미 깔린 단축어를 이름이나 식별자로 실행한다. **사용자가 직접 만든 단축어를 부를 때만 쓰라** — 무엇을 하는 단축어인지 모르면 먼저 사용자에게 물어라.

이 맥에 이미 깔린 단축어를 이름이나 식별자로 실행한다. **사용자가 직접 만든 단축어를 부를 때만 쓰라** — 무엇을 하는 단축어인지 모르면 먼저 사용자에게 물어라.

No input schema was published for this tool.

mac_action_catalog단축어 **동작 카탈로그**를 검색한다 — 동작마다 어떤 매개변수 키를 받는지. 애플이 문서로 공개하지 않는 값이라, 단축어를 직접 조립하려면 이게 필요하다. 키가 틀리면 오류 없이 조용히 무시된다.

단축어 **동작 카탈로그**를 검색한다 — 동작마다 어떤 매개변수 키를 받는지. 애플이 문서로 공개하지 않는 값이라, 단축어를 직접 조립하려면 이게 필요하다. 키가 틀리면 오류 없이 조용히 무시된다.

No input schema was published for this tool.

mac_setup이 도구가 쓰는 읽기 레시피를 이 맥에 설치한다. 처음 한 번만. 각 레시피마다 단축어 앱이 '단축어 추가' 창을 띄운다.

이 도구가 쓰는 읽기 레시피를 이 맥에 설치한다. 처음 한 번만. 각 레시피마다 단축어 앱이 '단축어 추가' 창을 띄운다.

No input schema was published for this tool.

mac_status이 도구가 쓸 준비가 됐는지 — 어떤 레시피가 깔려 있고 무엇이 빠졌는지.

이 도구가 쓸 준비가 됐는지 — 어떤 레시피가 깔려 있고 무엇이 빠졌는지.

No input schema was published for this tool.

14 of 14 tools published a description.

Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.

About

Read your Mac's Calendar, Reminders, Notes, Contacts and more via Shortcuts. Read-only, local.

Keywords
mcp
Alternatives
Comparing tool surfaces…

Dependency tree

What one Forge scan resolved from npm metadata on 2026-09-20 — observed resolution, not a publisher declaration.

60 packages resolved · 2 direct · none carrying advisories Resolution stops at depth 4 and 60 packages.

The crawl stopped at the depth-4 limit. Anything below that level was never resolved.

The crawl stopped at the 60-package limit. The rest of the tree was never resolved.

36 more resolved packages are not drawn here (display cap: 24). Every dependency carrying an advisory is drawn regardless of the cap. Full inventory (CycloneDX SBOM)

Declared but not resolved

53 declared dependencies never landed in the tree. They are missing from Forge's resolution, not from the package.

+41 more not listed. The counts by reason above cover all of them.

Not followed: peerDependencies. This tree covers runtime dependencies only, so anything those pull in was never resolved.