# mcp-server

MCP (Model Context Protocol) server development — use when the user mentions MCP, Model Context Protocol, FastMCP, MCP server, MCP tool, Claude Code plugin, or building agent tools with MCP. Covers server implementation in Python or TypeScript, evaluation testing, production deployment, and plugin p

- **Type:** Agent Skill
- **Trust:** 60/100 (B), scored on the package rubric
- **Verification:** community-indexed — nobody has claimed this listing
- **Version:** 0.0.0
- **Author:** viktorbezdek
- **License:** MIT
- **Source:** https://github.com/viktorbezdek/skillstack/tree/main/mcp-server/skills/mcp-server

## Trust

60/100 (B), scored on the package rubric
- Publisher verified: no
- Install scripts: nothing suspicious found
- Prompt-injection scan: not run
- Obfuscation scan: not run
- Evidence age: 113 days — stale; the grade is a claim about the present made from dated evidence

## Security scan

- **Status:** clean
- **Scanned:** 2026-06-15T06:01:32.123Z
- **Version scanned:** 0.0.9
- **CVEs:** none found by OSV at scan time

## Install

This is an Agent Skill — a prompt, not an MCP server, so there is no client config to generate. Fetch it with forge_get_skill and install it with forge_add_skill.

## Blast radius

Contained blast radius — runs as a prompt; 60 transitive dependencies.
- Floor 6, ceiling 6 (tier: contained)
- This is impact, not likelihood. A high radius is not a defect: a filesystem server is supposed to write files. It is never part of the trust score.

## Machine-readable views of this entry

- Signed JSON: https://forgeregistry.com/api/v1/packages/mcp-server
- Install plan: https://forgeregistry.com/api/v1/packages/mcp-server/install-plan
- Alternatives: https://forgeregistry.com/api/v1/alternatives/mcp-server
- HTML page: https://forgeregistry.com/registry/mcp-server
- MCP: POST https://forgeregistry.com/api/mcp → `forge_get_package` / `forge_install_plan`

## About this document

Generated by Forge (https://forgeregistry.com) — a compact rendering of the same record served, signed, at the JSON URL above. Trust and scan facts are the registry's own measurements; anything Forge did not measure is named as unmeasured rather than omitted.
