Back to Home
MicahBly icon

rapport-mcp

by MicahBly

Overview

Enables AI agents to create, modify, and query visual SVG canvases for Rapport.dev.

Installation

Run Command
rapport-mcp

Environment Variables

  • RAPPORT_API_URL
  • SUPABASE_URL
  • SUPABASE_ANON_KEY

Security Notes

Critical vulnerabilities identified in a comprehensive security audit. These include insecure file permissions for authentication tokens (making them world-readable by any local user), a Server-Side Request Forgery (SSRF) vulnerability in API requests, and a potential XML External Entity (XXE) vulnerability in XML parsing. There's also a bypass mechanism ('skip_validation' flag) for crucial SVG security checks, incomplete SVG validation patterns, and sensitive data exposure in error messages. Additionally, HTTPS enforcement is missing, and authentication polling lacks robust rate limiting/exponential backoff. Immediate remediation of HIGH and MEDIUM severity issues is strongly recommended.

Similar Servers

Stats

Interest Score0
Security Score4
Cost ClassMedium
Avg Tokens1500
Stars0
Forks0
Last Update2025-12-11

Tags

mcpaisvgcanvasvisual