TemplateSAFE
Template to quickly set up your own MCP server
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
A CLI tool to quickly get started building your very own MCP (Model Context Protocol) server using FastMCP
📋 Usage
# with npx npx @mcpdotdirect/create-mcp-server # Or with npm npm init @mcpdotdirect/mcp-server
🔭 What's Included
The template includes:
- Basic server setup with both stdio and HTTP transport options using FastMCP
- Structure for defining MCP tools, resources, and prompts
- TypeScript configuration
- Development scripts and configuration
✨ Features
- FastMCP: Built using the FastMCP framework for simpler implementation
- Dual Transport Support: Run your MCP server over stdio or HTTP
- TypeScript: Full TypeScript support for type safety
- Extensible: Easy to add custom tools, resources, and prompts
🚀 Getting Started
After creating your project:
- Install dependencies using your preferred package manager:
# Using npm npm install # Using yarn yarn # Using pnpm pnpm install # Using bun bun install
- Start the server:
# Start the stdio server npm start # Or start the HTTP server npm run start:http
- For development with auto-reload:
# Development mode with stdio npm run dev # Development mode with HTTP npm run dev:http
Note: The default scripts in package.json use Bun as the runtime (e.g., bun run src/index.ts). If you prefer to use a different package manager or runtime, you can modify these scripts in your package.json file to use Node.js or another runtime of your choice.📖 Detailed Usage
Transport Methods
The MCP server supports two transport methods:
- stdio Transport (Command Line Mode):
- Runs on your local machine
- Managed automatically by Cursor
- Communicates directl
ff2f7f01598bOBSERVED · 2026-10-07Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.
claude mcp add create-mcp-server -- npx -y @mcpdotdirect/[email protected]
{
"mcpServers": {
"create-mcp-server": {
"command": "npx",
"args": [
"-y",
"@mcpdotdirect/[email protected]"
]
}
}
}Exposed tools (5)
5 read · 0 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
goodbye | read | A simple goodbye tool |
greeting | read | A simple greeting prompt |
hello_world | read | A simple hello world tool |
id | read | Resource ID |
name | read | Name to greet |
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- not all pinned
- Secrets in source
- none-found
Findings (1)
cors, fastmcp, zod, @types/bun, @types/cors, @types/node, conventional-changelog-cli
Gates applied: no_behavioural_pass.
ff2f7f01598bfull audit observations/trust-audit/mcp-server/mcpdotdirect__template-2.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-07 | ff2f7f01598b | SAFE | B | 89 | first audit |
Questions
What is the Template MCP server?
Template to quickly set up your own MCP server
What tools does Template expose?
5 in total: 5 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is Template safe to connect to an agent?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.
What credentials does Template need?
No credential environment variables were found in its source, so it appears to need none.
How current is this page?
The grade is for one exact copy of the source (ff2f7f01598b), read on 2026-10-07. The repository is watched and re-audited when it changes.