No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by atom2ueki · MCP Server · ★ 213
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is mcp-server-synology safe to install? View the security audit →
💾 Synology MCP Server A Model Context Protocol (MCP) server for Synology NAS devices. Enables AI assistants to manage files and downloads through secure authentication and session management. 🌟 NEW: Unified server supports both Claude/Cursor (stdio) and Xiaozhi (WebSocket) simultaneously! 🚀 Quick Start with Docker 1️⃣ Setup Environment 2️⃣ Configure .env File Basic Configuration (Claude/Cursor only): Extended Configuration (Both Claude/Cursor + Xiaozhi): 3️⃣ Run with Docker One simple command supports both modes: bash Claude/Cursor only mode (default if ENABLEXIAOZHI not set) docker-compose up -d Both Claude/Cursor + Xiaozhi mode (if ENABLEXIAOZHI=true in .env
| Stars | 213 |
| Forks | 37 |
| Language | Python |
| Category | MCP Server |
| License | MIT |
| Quality Score | 69.6733051155608/100 |
| Last Updated | 2026-09-30 |
| Created | 2025-05-31 |
| Platforms | claude-code, docker, mcp, python |
| Est. Tokens | ~17k |
Explore other popular mcp server tools:
mcp-server-synology is 💾 Model Context Protocol (MCP) server for Synology NAS - Enables AI assistants (Claude, Cursor, Continue) to manage files, downloads, and system operations through secure API integration. Features Do. It is categorized as a MCP Server with 213 GitHub stars.
mcp-server-synology is primarily written in Python. It covers topics such as mcp, mcp-server, synology.
You can find installation instructions and usage details in the mcp-server-synology GitHub repository at github.com/atom2ueki/mcp-server-synology. The project has 213 stars and 37 forks, indicating an active community.
mcp-server-synology is released under the MIT license, making it free to use and modify according to the license terms.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: