Atlas / MCP servers / stass / Exif

ExifSAFE

mcp/stass/exif

MCP server to extract image metadata (EXIF, XMP, etc)

Verdict
SAFE
Grade
B
Trust score
89 /100
Exposed tools
7 7r · 0w · 0d
Transport
stdio
License
BSD-2-Clause
Stars
40
01

Overview

From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.

An MCP server that allows LLMs (or humans) to read image metadata on-demand, entirely offline. Based on the excellent exifr library it's exremely fast and does not rely on any external tools.

Usecases:

  • Analyze image metadata and visualize it
  • Perform analysis of your image library: what are my most used cameras? Lens distribution? Which dates of the week I take most pictures on? Most favorite locations?
  • Debugging image manipulation code.

Ths tool is used extensively by the reverse geolocation service PlaceSpotter for development and testing.

Overview

exif-mcp is a Model Context Protocol (MCP) server that provides tools for extracting various metadata segments from images. Built with TypeScript, it leverages the excellent exifr library to parse metadata from images in common formats like JPEG, PNG, TIFF, and HEIC. This allows this service to parse image metadata without executing any external tools which allows it to be both highly efficient and secure.

Features

  • Local operation: Works completely offline with no remote network required
  • Multiple segments: Extracts EXIF, GPS, XMP, ICC, IPTC, JFIF, and IHDR metadata
  • Various input formats: Supports JPEG, TIFF, HEIC/AVIF, and PNG
  • Flexible image sources: Read from file system, URLs, base64 data, or buffers
  • Specialized tools: Get orientation, rotation info, GPS coordinates, and thumbnails

Installation

# Clone the repository
git clone https://github.com/stass/exif-mcp.git
cd exif-mcp

# Install dependencies
npm install

# Build the project
npm run build

Usage

Claude Desktop

Put this into Claude config file (claudedesktopconfig.json):

"mcpServers": {
"exif-mcp": {
"command": "node",
"args": [
"/path/to/exif-mcp/dist/server.js"
]
}
},

Restart Claude. Now you can ask Claude to inspect images for you or e.g. find file

Read from source at commit e3dac985f8adOBSERVED · 2026-10-08
02

Connect

Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.

claude-code
claude mcp add exif-mcp -- npx -y [email protected]
claude-desktop
{
  "mcpServers": {
    "exif-mcp": {
      "command": "npx",
      "args": [
        "-y",
        "[email protected]"
      ]
    }
  }
}
03

Exposed tools (7)

7 read · 0 write · 0 destructive.

ToolRiskDescription
gps-coordinatesreadExtract GPS coordinates (latitude/longitude) from image metadata
orientationreadGet image orientation value (1-8)
read-exifreadRead EXIF data from an image with optional tag filtering
read-metadatareadRead all or specified metadata segments from an image
read-xmpreadRead XMP metadata from an image with option for extended XMP segments
rotation-inforeadGet detailed rotation and flip information from image orientation
thumbnailreadExtract embedded thumbnail from image as base64 data or URL
04

Trust audit

SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.

LayerWhat it checksResult
L0Provenance & inventoryPASS
L1Static analysis of the codePASS
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
none-observed
Network
declared (1 observation(s))
Shell
none-observed
Dependencies
not all pinned
Secrets in source
none-found

Findings (3)

LOWObfuscation / stealth · obf.base64_blob · CWE-506, CWE-94
tests/loaders.test.ts:22
'/9j/4AAQSkZJRgABAQEAYABgAAD/2wBDAAgGBgcGBQgHBwcJCQgKDBQNDAsLDBkSEw8UHRofHh0aHBwgJC4nICIsIxwcKDcpLDAxNDQ0Hyc5PTgyPC4zNDL/2wBDAQkJCQwLDBgNDRgyIRwhMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjI
LOWObfuscation / stealth · obf.base64_blob · CWE-506, CWE-94
tests/tools.test.ts:48
'/9j/4AAQSkZJRgABAQEAYABgAAD/2wBDAAgGBgcGBQgHBwcJCQgKDBQNDAsLDBkSEw8UHRofHh0aHBwgJC4nICIsIxwcKDcpLDAxNDQ0Hyc5PTgyPC4zNDL/2wBDAQkJCQwLDBgNDRgyIRwhMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjI
LOWSupply chain · supply.unpinned · CWE-829, CWE-1357
package.json
@modelcontextprotocol/sdk, exifr, zod, @types/node, eslint, ts-node, typescript, vitest
Why it matters. 8 dependency range(s) float
Fix. pin exact versions or ship a lockfile

Gates applied: no_behavioural_pass.

Audited 2026-10-08 · audit v0.4.1 · source sha e3dac985f8adfull audit observations/trust-audit/mcp-server/stass__exif.json · Report an issue / request a re-scan
05

Audit history

Every audit this server has had. A grade with a past is a grade somebody is still checking.

DateSourceVerdictGradeScoreChange
2026-10-08e3dac985f8adSAFEB89first audit
06

Questions

What is the Exif MCP server?

MCP server to extract image metadata (EXIF, XMP, etc)

What tools does Exif expose?

7 in total: 7 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.

Is Exif safe to connect to an agent?

The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.

What credentials does Exif need?

No credential environment variables were found in its source, so it appears to need none.

How does Exif run?

It speaks stdio, so it runs as a local process your client starts. It is published on npm as exif-mcp at 1.0.0.

How current is this page?

The grade is for one exact copy of the source (e3dac985f8ad), read on 2026-10-08. The repository is watched and re-audited when it changes.

Advertisement