notion-mcp-server — security grade SAFE, quality 69/100

Security audit verdict: SAFE · quality 69/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by awkoy · MCP Server · ★ 171

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is notion-mcp-server safe to install? View the security audit →

About notion-mcp-server

Notion MCP Server — Connect Claude, Cursor & ChatGPT to Notion via Model Context Protocol An agent-first Notion MCP server (Model Context Protocol) that connects Claude, Cursor, ChatGPT, Claude Desktop, Cline, Zed and other MCP-compatible AI clients to Notion. Sign in once with your Notion Personal Access Token (PAT) — no per-page sharing dance, no extra integration to set up. Your AI sees the Notion pages you authorize the token for (typically your whole workspace) and can create pages, query databases, append blocks, leave comments, and upload files in natural language. v2.4 — built for AI agents, not REST clients. Two MCP tools instead of 36 endpoints, batched mutations, idempotency keys, automatic retries on Notion rate limits, self-healing validation errors (now path-sliced to <img width="380" height="200" src="https://glam

ai-agentanthropicchatgptclaudeclaude-desktopcursorllmmcpmcp-servermodel-context-protocol

Quick Facts

Stars171
Forks38
LanguageTypeScript
CategoryMCP Server
LicenseMIT
Quality Score68.5359845167393/100
Last Updated2026-09-21
Created2025-03-18
Platformsclaude-code, mcp, node
Est. Tokens~22k

notion-mcp-server alternative? Top 6 similar tools

Looking for a notion-mcp-server alternative? If you're comparing notion-mcp-server with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • wcgw by rusiaaman · ⭐ 674

    Shell and coding agent on mcp clients

  • Overture by SixHq · ⭐ 641

    Overture is an open-source, locally running web interface delivered as an MCP (Model Context Protocol) server

  • claude-historian-mcp by Vvkmnn · ⭐ 178

    📜 An MCP server for conversation history search and retrieval in Claude Code

  • deterministic-agent-control-protocol by elliot35 · ⭐ 88

    Governance gateway for AI agents — bounded, auditable, session-aware control with MCP proxy, shell proxy & HTT

  • claude-emporium by Vvkmnn · ⭐ 82

    🏛 [UNDER CONSTRUCTION] A (roman) claude plugin marketplace

  • easy-notion-mcp by Grey-Iris · ⭐ 50

    Markdown-first Notion MCP server. ~6-7x fewer response tokens vs official Notion MCP. 43 tools.

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is notion-mcp-server?

notion-mcp-server is Notion MCP server for Claude, Cursor, ChatGPT & Claude Desktop. Connect AI agents to Notion via Model Context Protocol — pages, databases, blocks, comments, files.. It is categorized as a MCP Server with 171 GitHub stars.

What programming language is notion-mcp-server written in?

notion-mcp-server is primarily written in TypeScript. It covers topics such as ai-agent, anthropic, chatgpt.

How do I install or use notion-mcp-server?

You can find installation instructions and usage details in the notion-mcp-server GitHub repository at github.com/awkoy/notion-mcp-server. The project has 171 stars and 38 forks, indicating an active community.

What license does notion-mcp-server use?

notion-mcp-server is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to notion-mcp-server?

The top alternatives to notion-mcp-server on Agent Skills Hub include wcgw, Overture, claude-historian-mcp. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools