mcp-server — security grade SAFE, quality 67/100

Security audit verdict: SAFE · quality 67/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by harness · MCP Server · ★ 105

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is mcp-server safe to install? View the security audit →

About mcp-server

Harness MCP Server 2.0 An MCP (Model Context Protocol) server that gives AI agents full access to the Harness.io platform through 11 consolidated tools and 215 resource types. Why Use This MCP Server Most MCP servers map one tool per API endpoint. For a platform as broad as Harness, that means 240+ tools — and LLMs get worse at tool selection as the count grows. Context windows fill up with schemas, and every new endpoint means new code. This server is built differently: 11 tools, 215 resource types. A registry-based dispatch system routes , , , etc. to any Harness resource — pipelines, services, environments, orgs, projects, feature flags, cost data, and more. The LLM picks from 11 tools instead of hundreds. Full platform coverage. 36 default toolsets spanning CI/CD, GitOps, Feature Flags, Cloud Cost Management, Security Testing, Chaos Engineering, Database DevOps, Internal Developer Portal, Software Supply Chain, Infrastructure as Code Management, Governance, Service Overrides, Knowledge Graph, Visualizations, and more. Opt-in Ansible coverage is available when you need inventory and playbook data. Multi-project workflows out of the box.

harnessmcpmcp-server

Quick Facts

Stars105
Forks86
LanguageTypeScript
CategoryMCP Server
LicenseMIT
Quality Score66.7565369416699/100
Open Issues60
Last Updated2026-10-04
Created2025-05-14
Platformsmcp, node
Est. Tokens~26k

mcp-server alternative? Top 6 similar tools

Looking for a mcp-server alternative? If you're comparing mcp-server with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • aura by mezmo · ⭐ 402

    AURA is a production-tested SRE agent platform you can deploy in minutes. AURA handles the guardrails, APIs,

  • omnicoreagent by omnirexflora-labs · ⭐ 250

    The governed runtime for Python agents you can let act: policy on every action, durable runs, sandboxes, budge

  • Autono by vortezwohl · ⭐ 213

    A ReAct-Based Highly Robust Autonomous Agent (Harness) Framework.

  • awesome-azure-openai-llm by kimtth · ⭐ 402

    A curated collection of resources for 🌌 Azure OpenAI, 🦙 LLMs (+RAG, Agents). Monthly Updates.

  • clanker by bgdnvk · ⭐ 380

    autonomous systems engineering cli agent for any cloud environment: AWS, GCP, Cloudflare, etc

  • tingly-box by tingly-dev · ⭐ 350

    Your Intelligence, Orchestrated. Every builder. Every team. Every agent. For Everyone.

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is mcp-server?

mcp-server is Harness’ official MCP Server. It is categorized as a MCP Server with 105 GitHub stars.

What programming language is mcp-server written in?

mcp-server is primarily written in TypeScript. It covers topics such as harness, mcp, mcp-server.

How do I install or use mcp-server?

You can find installation instructions and usage details in the mcp-server GitHub repository at github.com/harness/mcp-server. The project has 105 stars and 86 forks, indicating an active community.

What license does mcp-server use?

mcp-server is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to mcp-server?

The top alternatives to mcp-server on Agent Skills Hub include aura, omnicoreagent, Autono. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools