mcp-server-asana — security grade SAFE, quality 59/100

Security audit verdict: SAFE · quality 59/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by roychri · MCP Server · ★ 145

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is mcp-server-asana safe to install? View the security audit →

About mcp-server-asana

MCP Server for Asana This Model Context Protocol server implementation of Asana allows you to talk to Asana API from MCP Client such as Anthropic's Claude Desktop Application, and many more. More details on MCP here: https://www.anthropic.com/news/model-context-protocol https://modelcontextprotocol.io/introduction https://github.com/modelcontextprotocol Environment Variables : (Required) Your Asana access token : (Optional) Set to 'true' to disable all write operations. In this mode: Tools that modify Asana data (create, update, delete) will be disabled The prompt will be disabled Only read operations will be available This is useful for testing or when you want to ensure no changes can be made to your Asana workspace. Usage In the AI tool of your choice (ex: Claude Desktop) ask something about asana tasks, projects, workspaces, and/or comments. Mentioning the word "asana" will increase the chance of having the LLM pick the right tool. Example: How many unfinished asana tasks do we have in our Sprint 30 project? Another example: ![Claude Desktop Example](https://raw.githubuserc

Quick Facts

Stars145
Forks72
LanguageTypeScript
CategoryMCP Server
LicenseMIT
Quality Score58.8545206527279/100
Open Issues10
Last Updated2026-05-10
Created2024-12-04
Platformsmcp, node
Est. Tokens~30k

Compatible Skills

These tools work well together with mcp-server-asana for enhanced workflows:

  • touchdesigner-mcp — semantic(0.95)+same_lang+similar_pop+shared_platform (55%)
  • discogs-mcp-server — semantic(1.00)+same_lang+similar_pop+shared_platform (55%)
  • x-mcp-server — semantic(1.00)+same_lang+similar_pop+shared_platform (55%)

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is mcp-server-asana?

mcp-server-asana is an open-source mcp server by roychri with 145 GitHub stars.

What programming language is mcp-server-asana written in?

mcp-server-asana is primarily written in TypeScript.

How do I install or use mcp-server-asana?

You can find installation instructions and usage details in the mcp-server-asana GitHub repository at github.com/roychri/mcp-server-asana. The project has 145 stars and 72 forks, indicating an active community.

What license does mcp-server-asana use?

mcp-server-asana is released under the MIT license, making it free to use and modify according to the license terms.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools