zotero-mcp — security grade SAFE, quality 76/100

Security audit verdict: SAFE · quality 76/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by kujenga · MCP Server · ★ 162

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is zotero-mcp safe to install? View the security audit →

About zotero-mcp

Model Context Protocol server for Zotero This project is a python server that implements the Model Context Protocol (MCP) for Zotero, giving you access to your Zotero library within AI assistants. It is intended to implement a small but maximally useful set of interactions with Zotero for use with MCP clients. Features This MCP server provides the following tools: : Search for items in your Zotero library using a text query : Get detailed metadata information about a specific Zotero item : Get the full text of a specific Zotero item (i.e. PDF contents) These can be discovered and accessed through any MCP client or through the MCP Inspector. Each tool returns formatted text containing relevant information from your Zotero items, and AI assistants such as Claude can use them sequentially, searching for items then retrie

mcpmcp-serverzotero

Quick Facts

Stars162
Forks26
LanguagePython
CategoryMCP Server
LicenseMIT
Quality Score75.9038189078353/100
Open Issues3
Last Updated2026-08-07
Created2025-01-26
Platformsmcp, python
Est. Tokens~15k

Compatible Skills

These tools work well together with zotero-mcp for enhanced workflows:

  • zotero-mcp — semantic(0.64)+rare_topics+same_lang+shared_platform (52%)
  • investor-agent — semantic(0.19)+complementary+same_lang+similar_pop+shared_platform (52%)
  • Linguflex — semantic(0.16)+complementary+same_lang+similar_pop+shared_platform (51%)
  • zotero-code-execution — semantic(0.41)+rare_topics+same_lang+similar_pop+shared_platform (49%)

zotero-mcp alternative? Top 6 similar tools

Looking for a zotero-mcp alternative? If you're comparing zotero-mcp with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • cli-anything-zotero by PiaoyangGuohai1 · ⭐ 122

    CLI server for Zotero 7/8/9 — let AI manage your library. 70+ CLI commands for search, import, PDF, BibTeX, no

  • seerai by dralkh · ⭐ 74

    Zotero AI plugin Research assistant for Zotero 9. Chat with your library, run federated scholarly search, RAG,

  • research-hub by WenyuChiou · ⭐ 53

    AI-operable research workspace for Zotero, Obsidian, and NotebookLM. Use any two, or all three, through CLI, M

  • docsagent by docsagent · ⭐ 671

    DocsAgent is a local-first AI documents assistant that lets you securely index and chat with thousands of desk

  • research-harness by Biajin-PKU · ⭐ 73

    做证据可信、过程可追、自主优化的长程自动化 AI 科研工具。

  • zotero-code-execution by kerim · ⭐ 59

    Efficient multi-strategy Zotero search using code execution pattern

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular Python Agent Tools

Frequently Asked Questions

What is zotero-mcp?

zotero-mcp is Lightweight Model Context Protocol (MCP) server for the Zotero API, in Python. It is categorized as a MCP Server with 162 GitHub stars.

What programming language is zotero-mcp written in?

zotero-mcp is primarily written in Python. It covers topics such as mcp, mcp-server, zotero.

How do I install or use zotero-mcp?

You can find installation instructions and usage details in the zotero-mcp GitHub repository at github.com/kujenga/zotero-mcp. The project has 162 stars and 26 forks, indicating an active community.

What license does zotero-mcp use?

zotero-mcp is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to zotero-mcp?

The top alternatives to zotero-mcp on Agent Skills Hub include cli-anything-zotero, seerai, research-hub. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools