FacebookSAFE
Facebook MCP server for automating posts, comment moderation, insights, and sentiment filtering.
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
This project is a MCP server for automating and managing interactions on a Facebook Page using the Facebook Graph API. It exposes tools to create posts, moderate comments, fetch post insights, and filter negative feedback — ready to plug into Claude, or other LLM-based agents.
[](https://archestra.ai/mcp-catalog/hagaihen__facebook-mcp-server)
🤖 What Is This?
This MCP provides a suite of AI-callable tools that connect directly to a Facebook Page, abstracting common API operations as LLM-friendly functions.
✅ Benefits
- Empowers social media managers to automate moderation and analytics.
- Seamlessly integrates with Claude Desktop or any Agent client.
- Enables fine-grained control over Facebook content from natural language.
📦 Features
f0681ac31a16OBSERVED · 2026-10-06Exposed tools (40)
10 read · 26 write · 4 destructive. Blast radius: 4 tools can delete or overwrite — an agent that can be talked into calling a tool can be talked into calling this one.
| Tool | Risk | Description |
|---|---|---|
bulk_delete_comments | destructive | Delete multiple comments by ID. |
bulk_hide_comments | read | Hide multiple comments by ID. |
bulk_unhide_comments | read | Unhide multiple comments by ID. |
delete_comment | destructive | Delete a specific comment from the Page. |
delete_comment_from_post | destructive | Alias to delete a comment on a post. |
delete_post | destructive | Delete a specific post from the Facebook Page. |
filter_negative_comments | read | Filter comments for basic negative sentiment. |
get_comment_replies | read | Get all replies to a specific comment. |
get_number_of_comments | write | Count the number of comments on a given post. |
get_number_of_likes | write | Return the number of likes on a post. |
get_page_fan_count | read | Get the Page |
get_page_info | read | Get extended information about the Facebook Page. |
get_page_posts | read | Fetch the most recent posts on the Page. |
get_post_clicks | write | Fetch number of post clicks. |
get_post_comments | write | Retrieve all comments for a given post. |
get_post_engaged_users | write | Fetch number of engaged users. |
get_post_impressions | write | Fetch total impressions of a post. |
get_post_impressions_organic | write | Fetch organic impressions of a post. |
get_post_impressions_paid | write | Fetch paid impressions of a post. |
get_post_impressions_unique | write | Fetch unique impressions of a post. |
get_post_insights | write | Fetch all insights metrics (impressions, reactions, clicks, etc). |
get_post_permalink | write | Get the permalink URL of a post. |
get_post_reactions_anger_total | write | Fetch number of |
get_post_reactions_breakdown | write | Get counts for all reaction types on a post. |
get_post_reactions_haha_total | write | Fetch number of |
get_post_reactions_like_total | write | Fetch number of |
get_post_reactions_love_total | write | Fetch number of |
get_post_reactions_sorry_total | write | Fetch number of |
get_post_reactions_wow_total | write | Fetch number of |
get_post_share_count | write | Get the number of shares for a post. |
get_post_top_commenters | write | Get the top commenters on a post. |
get_scheduled_posts | read | List all scheduled (unpublished) posts on the Page. |
hide_comment | read | Hide a comment from public view. |
post_image_to_facebook | write | Post an image with a caption to the Facebook page. |
post_to_facebook | write | Create a new Facebook Page post with a text message. |
reply_to_comment | write | Reply to a specific comment on a Facebook post. |
schedule_post | write | Schedule a new post for future publishing. |
send_dm_to_user | write | Send a direct message to a user. |
unhide_comment | read | Unhide a previously hidden comment. |
update_post | write | Updates an existing post |
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | WARN |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- declared (1 observation(s))
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- not all pinned
- Secrets in source
- none-found
Findings (3)
bulk_delete_comments, delete_comment, delete_comment_from_post, delete_post
mcp, python-dotenv, requests
curl -Ls https://astral.sh/uv/install.sh | bash
Gates applied: no_behavioural_pass.
f0681ac31a16full audit observations/trust-audit/mcp-server/hagaihen__facebook.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-06 | f0681ac31a16 | SAFE | B | 89 | first audit |
Questions
What is the Facebook MCP server?
Facebook MCP server for automating posts, comment moderation, insights, and sentiment filtering.
What tools does Facebook expose?
40 in total: 10 read-only, 26 that write, and 4 that can delete or overwrite (bulk_delete_comments, delete_comment, delete_comment_from_post, delete_post). Every one is listed on this page with its risk.
Is Facebook safe to connect to an agent?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B. Separately from the audit: 4 of its tools can destroy data, so scope the token you give it to what you actually need.
What credentials does Facebook need?
It reads FACEBOOK_ACCESS_TOKEN from the environment. Give it a token scoped to the least it needs — an agent that can be talked into calling a tool can be talked into calling it with your credentials.
How current is this page?
The grade is for one exact copy of the source (f0681ac31a16), read on 2026-10-06. The repository is watched and re-audited when it changes.