Back to Home
u9401066 icon

zotero-keeper

Verified Safe

by u9401066

Overview

AI-powered management and organization of local Zotero bibliographic references, enabling search, import, and basic library analytics through AI agents like VS Code Copilot or Claude Desktop.

Installation

Run Command
zotero-keeper

Environment Variables

  • ZOTERO_HOST
  • ZOTERO_PORT
  • ZOTERO_TIMEOUT
  • NCBI_EMAIL
  • NCBI_API_KEY

Security Notes

The primary security concern stems from the underlying Zotero Local API (port 23119) which inherently lacks authentication. If the MCP server is exposed on a network, any client can interact with it and, by extension, the local Zotero instance. The server itself does not introduce new code-level vulnerabilities like arbitrary code execution via user input. However, for remote Zotero setups, the user is explicitly responsible for configuring `netsh` port proxies and firewall rules, and for ensuring network security. No hardcoded secrets were identified, and API keys are expected to be provided via environment variables. Input validation is implemented prior to Zotero API calls.

Similar Servers

Stats

Interest Score30
Security Score7
Cost ClassMedium
Avg Tokens350
Stars1
Forks0
Last Update2026-01-12

Tags

ZoteroReference ManagementAI AgentBibliographic DatabaseLiterature Review