Atlas / MCP servers / sworddut / FFmpeg Helper

FFmpeg HelperSAFE

mcp/sworddut/ffmpeg-helper

一个基于 Model Context Protocol (MCP) 的 FFmpeg 辅助工具,提供视频处理功能。

Verdict
SAFE
Grade
B
Trust score
89 /100
Exposed tools
8 6r · 2w · 0d
Transport
stdio
License
MIT
Stars
25
01

Overview

From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.

[](https://mseep.ai/app/sworddut-mcp-ffmpeg-helper)

一个基于 Model Context Protocol (MCP) 的 FFmpeg 辅助工具,提供视频处理功能。

功能概述

MCP FFmpeg Helper 是一个轻量级服务器,它通过 MCP 协议将 FFmpeg 的强大功能暴露给 AI 助手。它支持以下视频处理操作:

  • 获取视频文件详细信息
  • 转换视频格式
  • 从视频中提取音频
  • 从图像序列创建视频
  • 裁剪视频
  • 为视频添加水印
  • 裁剪音频文件
  • 从视频中提取帧为图像序列

安装与配置

前提条件

  • Node.js (v14+)
  • FFmpeg (需要安装在系统中并可通过命令行访问)

FFmpeg 官方下载页面 获取 可以使用

ffmpeg -version

检查是否安装成功

安装步骤

  1. 克隆或下载此仓库
  2. 安装依赖:
npm install
  1. 构建项目:
npm run build

配置 MCP

要在 Windsurf 或其他支持 MCP 的应用程序中使用此工具,请将以下配置添加到 MCP 配置文件中:

1.本地配置node服务器

windows:

{
"mcp-ffmpeg-helper": {
"command": "cmd",
"args": [
"/c",
"node",
"path/to/mcp-ffmpeg-helper/build/index.js"
]
}
}

对于 Windows 用户,配置文件通常位于:%APPDATA%/.codeium/windsurf/mcp_config.json

macos:

{
"mcp-ffmpeg-helper": {
"command": "node",
"args": [
"path/to/mcp-ffmpeg-helper/build/index.js"
]
}
}

2.使用npm包的方式配置mcp服务器(推荐使用,不需要手动构建node服务器,不用克隆仓库到本地)

windows:

{
"mcp-ffmpeg-helper": {
"command": "cmd",
"args": [
"/c",
"npx",
"@sworddut/mcp-ffmpeg-helper"
]
}
}

macos:

{
"mcp-ffmpeg-helper": {
"command": "npx",
"args": [
"@sworddut/mcp-ffmpeg-helper"
]
}
}

使用示例

获取视频信息

直接在windsurf控制台输入: 请帮我查看"path/to/video.mp4"视频信息

转换视频

直接在windsurf控制台输入: 请帮我将"path/to/input.avi"转换为"path/to/output.mp4"

提取音频

直接在windsurf控制台输入: 请帮我从"path/to/video.mp4"提取音频到"path/to/audio.mp3"

从图像创建视频

直接在windsurf控制台输入: 请帮我从"path/to/images/%05d.jpg"创建视频到"path/to/outp

Read from source at commit 9a761664880aOBSERVED · 2026-10-09
02

Connect

Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.

claude-code
claude mcp add mcp-ffmpeg-helper -- npx -y @sworddut/[email protected]
claude-desktop
{
  "mcpServers": {
    "mcp-ffmpeg-helper": {
      "command": "npx",
      "args": [
        "-y",
        "@sworddut/[email protected]"
      ]
    }
  }
}
03

Exposed tools (8)

6 read · 2 write · 0 destructive.

ToolRiskDescription
add_watermarkwriteAdd a watermark to a video
convert_videoreadConvert a video file to a different format
create_video_from_imageswriteCreate a video from a sequence of images
extract_audioreadExtract audio from a video file
extract_framesreadExtract frames from a video as sequential image files
get_video_inforeadGet detailed information about a video file
trim_audioreadTrim an audio file to a specific duration
trim_videoreadTrim a video to a specific duration
04

Trust audit

SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.

LayerWhat it checksResult
L0Provenance & inventoryPASS
L1Static analysis of the codePASS
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
none-observed
Network
none-observed
Shell
none-observed
Dependencies
not all pinned
Secrets in source
none-found

Findings (1)

LOWSupply chain · supply.unpinned · CWE-829, CWE-1357
package.json
ffmpeg, @types/node, typescript
Why it matters. 3 dependency range(s) float
Fix. pin exact versions or ship a lockfile

Gates applied: no_behavioural_pass.

Audited 2026-10-09 · audit v0.4.1 · source sha 9a761664880afull audit observations/trust-audit/mcp-server/sworddut__ffmpeg-helper.json · Report an issue / request a re-scan
05

Audit history

Every audit this server has had. A grade with a past is a grade somebody is still checking.

DateSourceVerdictGradeScoreChange
2026-10-099a761664880aSAFEB89first audit
06

Questions

What is the FFmpeg Helper MCP server?

一个基于 Model Context Protocol (MCP) 的 FFmpeg 辅助工具,提供视频处理功能。

What tools does FFmpeg Helper expose?

8 in total: 6 read-only, 2 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.

Is FFmpeg Helper safe to connect to an agent?

The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.

What credentials does FFmpeg Helper need?

No credential environment variables were found in its source, so it appears to need none.

How does FFmpeg Helper run?

It speaks stdio, so it runs as a local process your client starts. It is published on npm as @sworddut/mcp-ffmpeg-helper at 0.2.1.

How current is this page?

The grade is for one exact copy of the source (9a761664880a), read on 2026-10-09. The repository is watched and re-audited when it changes.

Advertisement