Back to Home
dcstang icon

mcp-trillium

Verified Safe

by dcstang

Overview

Manages and automates operations within a Trilium Notes instance, enabling programmatic search, content manipulation, and attribute updates.

Installation

Run Command
./.venv/bin/python -u main.py

Environment Variables

  • TRILIUM_API_KEY

Security Notes

The server loads API keys from environment variables, avoiding hardcoded secrets. It primarily interacts with a local Trilium Notes API (localhost:37840), limiting direct external network exposure. Markdown to HTML conversion uses standard libraries, and no 'eval' or obvious malicious patterns were found. A minor potential risk is if the Trilium application itself does not fully sanitize HTML content received via its API, which could lead to XSS within Trilium's rendering, but this is a dependency's risk rather than a direct vulnerability in the provided server code.

Similar Servers

Stats

Interest Score0
Security Score9
Cost ClassMedium
Avg Tokens750
Stars0
Forks0
Last Update2025-12-11

Tags

TriliumNote-takingAutomationAPIPython