Atlas / MCP servers / dcspark / Dockmaster

DockmasterCAUTION

mcp/dcspark/dockmaster

MCP Dockmaster allows you to easily install and manage MCP servers. Available for Mac, Windows and Linux as a Desktop App, CLI and a library.

Verdict
CAUTION
Grade
B
Trust score
88 /100
Exposed tools
3 3r · 0w · 0d
Transport
stdio
License
MIT
Stars
89
01

Overview

From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.

The Ultimate AI Tool Manager - Install, manage, and supercharge your AI assistants with the power of Model Context Protocol (MCP)

[](https://mcp-dockmaster.com/dockmaster-demo.mp4)

✨ What is MCP Dockmaster?

MCP Dockmaster transforms how you work with AI assistants like Claude by giving them superpowers through Model Context Protocol (MCP) servers. Think of it as an App Store for AI tools that seamlessly integrates with your favorite AI assistants.

🎯 One-Click Installation → Browse, install, and manage MCP servers 🔗 Auto-Integration → Automatically connects with Claude and other MCP-compatible AI assistants 🌐 Multi-Platform → Available as Desktop App, CLI, and library for Mac, Windows, and Linux ⚡ Zero Config → Works out of the box with automatic setup and updates

🔥 Key Features

  • 🛍️ AI Tool Marketplace - Discover and install powerful MCP servers from our curated store
  • 🔧 Smart Management - Install, update, and remove AI tools with a simple click
  • 🎨 Beautiful Interface - Modern, intuitive desktop app built with Tauri + React
  • 🚀 Lightning Fast - Rust-powered backend for blazing performance
  • 🔌 Universal Compatibility - Supports Node.js, Python, and Docker-based AI tools
  • ⚙️ Advanced Configuration - Fine-tune settings for power users

🎬 See It In Action

[📺 Watch Demo Video](https://mcp-dockmaster.com/dockmaster-demo.mp4)

Experience how MCP Dockmaster transforms your AI workflow in under 2 minutes!

🚀 Quick Start

💻 Desktop App (Recommended)

  1. Download the latest release for your platform from mcp-dockmaster.com
  2. Install and launch MCP Dockmaster
  3. Browse the AI Tool Store and install your first MCP server
  4. Integrate Follow the integration steps at home to connect the app with Claude, Cursor, or any other supported app—and enjoy you AI with superpowers!

🔨 D

Read from source at commit 7b9b0a728998OBSERVED · 2026-10-07
02

Connect

Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.

claude-code
claude mcp add mcp-dockmaster-monorepo -- npx -y [email protected]
claude-desktop
{
  "mcpServers": {
    "mcp-dockmaster-monorepo": {
      "command": "npx",
      "args": [
        "-y",
        "[email protected]"
      ]
    }
  }
}
03

Exposed tools (3)

3 read · 0 write · 0 destructive.

ToolRiskDescription
hello_worldreadReturns hello world
hello_world_with_configreadReturns hello configuration with the provided config
hello_world_with_inputreadReturns hello world with the provided input
04

Trust audit

CAUTIONgrade B · trust 88/100 Install with care. The audit found things worth knowing before you trust its output.

LayerWhat it checksResult
L0Provenance & inventoryWARN
L1Static analysis of the codeWARN
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
declared (3 observation(s))
Network
declared (3 observation(s))
Shell
none-observed
Dependencies
not all pinned
Secrets in source
none-found

Findings (12)

MEDIUMInventory / provenance · inv.binary · CWE-1104
apps/mcp-dockmaster/src-tauri/icons/icon.icns
icon.icns
Why it matters. a compiled or binary member cannot be reviewed from source
Fix. ship source, or explain the binary in the README
MEDIUMNetwork egress · net.raw_ip · CWE-200, CWE-319
apps/mcp-proxy-server/src/main.rs:51
.unwrap_or("http://127.0.0.1:11011/sse".to_string());
LOWInventory / provenance · inv.hidden_file · CWE-1104
.nxignore
.nxignore
Why it matters. hidden member outside the usual dotfiles
Fix. review its purpose
LOWInventory / provenance · inv.hidden_file · CWE-1104
libs/mcp-dockmaster-i18n/.babelrc
.babelrc
Why it matters. hidden member outside the usual dotfiles
Fix. review its purpose
LOWInventory / provenance · inv.hidden_file · CWE-1104
libs/mcp-dockmaster-i18n/.i18nrc.cjs
.i18nrc.cjs
Why it matters. hidden member outside the usual dotfiles
Fix. review its purpose
LOWFilesystem / path · fs.traversal · CWE-22, CWE-59
apps/mcp-dockmaster/src/vite-env.d.ts:3
declare module "../../../package.json" {
LOWFilesystem / path · fs.traversal · CWE-22, CWE-59
ci-scripts/copy-mcp-proxy-server-binary/index.ts:15
const workspaceRoot = new URL("../../", import.meta.url).pathname.replace(
LOWFilesystem / path · fs.traversal · CWE-22, CWE-59
libs/mcp-core/tests/integration/mcp_server_mockup_test.rs:41
.join("../../dist/apps/mcp-server-hello-world/index.js")
LOWFilesystem / path · fs.traversal · CWE-22, CWE-59
libs/mcp-core/tests/integration/mcp_server_mockup_test.rs:449
.join("../../dist/apps/mcp-server-hello-world/index.js")
LOWFilesystem / path · fs.traversal · CWE-22, CWE-59
libs/mcp-dockmaster-i18n/src/lib/init.ts:14
import.meta.glob('../../locales/*.json');
LOWSupply chain · supply.unpinned · CWE-829, CWE-1357
libs/mcp-dockmaster-i18n/package.json
i18next, i18next-browser-languagedetector, i18next-resources-to-backend, react, react-i18next, @types/lodash, just-diff, lodash
Why it matters. 8 dependency range(s) float
Fix. pin exact versions or ship a lockfile
LOWSupply chain · supply.unpinned · CWE-829, CWE-1357
package.json
@radix-ui/react-collapsible, @radix-ui/react-dialog, @radix-ui/react-dropdown-menu, @radix-ui/react-label, @radix-ui/react-progress, @radix-ui/react-separator, @radix-ui/react-slot, @radix-ui/react-sw
Why it matters. 64 dependency range(s) float
Fix. pin exact versions or ship a lockfile

Gates applied: no_behavioural_pass.

Audited 2026-10-07 · audit v0.4.1 · source sha 7b9b0a728998full audit observations/trust-audit/mcp-server/dcspark__dockmaster.json · Report an issue / request a re-scan
05

Audit history

Every audit this server has had. A grade with a past is a grade somebody is still checking.

DateSourceVerdictGradeScoreChange
2026-10-077b9b0a728998CAUTIONB88first audit
06

Questions

What is the Dockmaster MCP server?

MCP Dockmaster allows you to easily install and manage MCP servers. Available for Mac, Windows and Linux as a Desktop App, CLI and a library.

What tools does Dockmaster expose?

3 in total: 3 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.

Is Dockmaster safe to connect to an agent?

With care. The audit graded it B (88/100) and found 12 things worth knowing before you trust this server, listed below with the exact line each was found on.

What credentials does Dockmaster need?

No credential environment variables were found in its source, so it appears to need none.

How does Dockmaster run?

It speaks stdio, so it runs as a local process your client starts. It is published on npm as mcp-dockmaster-monorepo at 0.2.0.

How current is this page?

The grade is for one exact copy of the source (7b9b0a728998), read on 2026-10-07. The repository is watched and re-audited when it changes.

Advertisement