Share text at a short URL. No account, no API key, expires within 7 days.
Inferred from the transports this listing declares (streamable-http). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
Read from a real MCP initialize → tools/list handshake against the declared endpoint. No tool was ever invoked — tools/list is the read-only introspection call the protocol defines for this. It reflects what the server advertised at that moment; a hosted endpoint is not pinned to any version and can change without notice.
https://xi.pe/mcp3 tools · 503mscreate_pasteStore UTF-8 text at xi.pe and get back a short URL anyone can read. Use it when text has to leave the conversation: someone asks for a shareable link to text you already have -- 'share this', 'give me a URL for it'; something a human needs to read would flood the chat inline -- a long diff, a stack…Store UTF-8 text at xi.pe and get back a short URL anyone can read. Use it when text has to leave the conversation: someone asks for a shareable link to text you already have -- 'share this', 'give me a URL for it'; something a human needs to read would flood the chat inline -- a long diff, a stack…
| Parameter | Type | Description |
|---|---|---|
| content* | string | the UTF-8 text to store. Maximum 2 MiB (2,097,152 bytes), counted as UTF-8 bytes rather than characters. Oversize is rejected with no truncation. No line-lengt… |
| ttl | string | how long the paste should live: a number followed by m, h or d (for example 30m, 6h, 3d). Defaults to the 7 day maximum. Cannot be longer than 7d. |
| long | boolean | use a 23-character code instead of the default 6. Worth it when a lucky guess would actually matter -- credentials, private logs, anything with real consequenc… |
delete_pasteprivilegedDelete a xi.pe paste before it expires. Requires the delete_token returned when it was created; there is no other way to prove ownership.Delete a xi.pe paste before it expires. Requires the delete_token returned when it was created; there is no other way to prove ownership.
| Parameter | Type | Description |
|---|---|---|
| code* | string | the paste's code (6 characters, or 23 if created with long), or its full xi.pe URL |
| delete_token* | string | the delete_token returned when the paste was created |
read_pasteFetch the text of an existing xi.pe paste -- including one a user or another agent just handed you. Accepts either the code or the full URL. If you pass the URL on to a human and the text is Markdown, append ?md: it renders headings, tables and ```mermaid diagrams.Fetch the text of an existing xi.pe paste -- including one a user or another agent just handed you. Accepts either the code or the full URL. If you pass the URL on to a human and the text is Markdown, append ?md: it renders headings, tables and ```mermaid diagrams.
| Parameter | Type | Description |
|---|---|---|
| code* | string | the paste's code (6 characters, or 23 if created with long), or its full xi.pe URL |
3 of 3 tools published a description.
Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.
Share text at a short URL. No account, no API key, expires within 7 days.
Linked names open Forge’s index of every entry observed exposing that tool. Browse all indexed tools.
This entry publishes no npm package, so Forge has no dependency tree for it. That is a gap in coverage — not a statement that it has no dependencies.