ibmi-mcp-server — security grade SAFE, quality 66/100

Security audit verdict: SAFE · quality 66/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by IBM · MCP Server · ★ 80

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is ibmi-mcp-server safe to install? View the security audit →

About ibmi-mcp-server

MCP server and CLI for IBM i Overview The IBM i MCP Server enables AI agents to interact with IBM i systems through the Model Context Protocol (MCP). It provides secure, SQL-based access to Db2 for i databases, allowing AI applications like Claude, VSCode Copilot, Bob, and custom agents to query system information, monitor performance, and execute database operations. This repo also ships the CLI () — a terminal-first

Quick Facts

Stars80
Forks36
LanguageTypeScript
CategoryMCP Server
LicenseApache-2.0
Quality Score65.7342194010547/100
Open Issues37
Last Updated2026-09-18
Created2025-10-01
Platformsmcp, node
Est. Tokens~17k

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is ibmi-mcp-server?

ibmi-mcp-server is MCP server for IBM i systems. It is categorized as a MCP Server with 80 GitHub stars.

What programming language is ibmi-mcp-server written in?

ibmi-mcp-server is primarily written in TypeScript.

How do I install or use ibmi-mcp-server?

You can find installation instructions and usage details in the ibmi-mcp-server GitHub repository at github.com/IBM/ibmi-mcp-server. The project has 80 stars and 36 forks, indicating an active community.

What license does ibmi-mcp-server use?

ibmi-mcp-server is released under the Apache-2.0 license, making it free to use and modify according to the license terms.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools