No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by huggingface · MCP Server · ★ 296
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is hf-mcp-server safe to install? View the security audit →
Hugging Face Official MCP Server Welcome to the official Hugging Face MCP Server 🤗. Connect your LLM to the Hugging Face Hub and thousands of Gradio AI Applications. Installing the MCP Server Follow the instructions below to get started: Install in Claude Desktop or claude.ai Click here to add the Hugging Face connector to your account. Alternatively, navigate to https://claude.ai/settings/connectors, and add "Hugging Face" from the gallery. Install in Claude Code Enter the command below to install in Claude Code: Then start and follow the instructions to complete authentication. Install in Gemini CLI Enter the command below to install in Gemini CLI: Then start and f
| Stars | 296 |
| Forks | 104 |
| Language | TypeScript |
| Category | MCP Server |
| License | MIT |
| Quality Score | 66.2188509294819/100 |
| Open Issues | 3 |
| Last Updated | 2026-09-22 |
| Created | 2025-05-06 |
| Platforms | mcp, node |
| Est. Tokens | ~16k |
Explore other popular mcp server tools:
hf-mcp-server is Hugging Face MCP Server. It is categorized as a MCP Server with 296 GitHub stars.
hf-mcp-server is primarily written in TypeScript.
You can find installation instructions and usage details in the hf-mcp-server GitHub repository at github.com/huggingface/hf-mcp-server. The project has 296 stars and 104 forks, indicating an active community.
hf-mcp-server is released under the MIT license, making it free to use and modify according to the license terms.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: