Back to Home
abumalick icon

openapi-mcp

Verified Safe

by abumalick

Overview

Enables LLMs to explore OpenAPI specifications by loading, listing, and detailing API endpoints, parameters, and schemas.

Installation

Run Command
npx -y @abumalick/openapi-mcp

Security Notes

The server can fetch OpenAPI specifications from arbitrary URLs provided by the LLM, posing a potential Server-Side Request Forgery (SSRF) risk if not properly isolated or access-controlled in its deployment environment. Schemas are truncated to prevent excessive output, which also helps mitigate against very large (potentially malicious) schema definitions. No direct code execution vulnerabilities or hardcoded secrets were found.

Similar Servers

Stats

Interest Score0
Security Score8
Cost ClassMedium
Avg Tokens5000
Stars0
Forks0
Last Update2025-11-30

Tags

OpenAPILLMAPIMCPSpecification