SystempromptCAUTION
[DEPRECATED] Superseded by systempromptio/systemprompt-template and systempromptio/systemprompt-core. Reference MCP server implementation (OAuth 2.1, tools, prompts, resources, sampling, notifications).
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
## ⚠️ Deprecated — no longer maintained This repository has been superseded. All new development and support lives in: - [systempromptio/systemprompt-template](https://github.com/systempromptio/systemprompt-template) — start here. Self-hosted evaluation of the full systemprompt.io AI governance infrastructure. - [systempromptio/systemprompt-core](https://github.com/systempromptio/systemprompt-core) — the underlying Rust library (MCP, A2A, OAuth 2.1, audit, compile-time extensions). Learn more at systemprompt.io. The original README is preserved below for historical reference.
[](https://www.npmjs.com/package/@systemprompt/systemprompt-mcp-server) [](https://opensource.org/licenses/MIT) [](https://twitter.com/tyingshoelaces_) [](https://discord.com/invite/wkAbSuPWpr)
Sponsored by systemprompt.io
This MCP server implementation is sponsored by [systemprompt.io](https://systemprompt.io) — creators of the world's first native mobile MCP client for iOS and Android — and provided completely free and open source to the community.
If you find this project useful, we'd appreciate:
- ⭐ A star on this repository
- 👍 A like/follow on our social channels
- 🔗 Sharing with your network
Your support helps us continue creating valuable open source tools for the AI community!
🚀 Learn More: For an interactive walkthrough of this implementation with live SDK testing, visit systemprompt.io/mcp-server
A produc
6d47722a5470OBSERVED · 2026-10-07Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control. Replace the environment placeholders with a token scoped to the least it needs.
claude mcp add systemprompt-mcp-server --env JWT_SECRET=${JWT_SECRET} --env MCP_ACCESS_TOKEN=${MCP_ACCESS_TOKEN} --env OAUTH_ISSUER=${OAUTH_ISSUER} --env REDDIT_CLIENT_SECRET=${REDDIT_CLIENT_SECRET} -- npx -y @systemprompt/[email protected]{
"mcpServers": {
"systemprompt-mcp-server": {
"command": "npx",
"args": [
"-y",
"@systemprompt/[email protected]"
],
"env": {
"JWT_SECRET": "${JWT_SECRET}",
"MCP_ACCESS_TOKEN": "${MCP_ACCESS_TOKEN}",
"OAUTH_ISSUER": "${OAUTH_ISSUER}",
"REDDIT_CLIENT_SECRET": "${REDDIT_CLIENT_SECRET}"
}
}
}
}Exposed tools (15)
14 read · 1 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
code_generation_example | read | Example prompt that demonstrates resource injection for code generation |
elicitation_example | read | Demonstrates the MCP elicitation pattern for requesting user input during tool execution. Shows how to create elicitation requests with schemas for user profiles, preferences, and credentials. |
get_channel | read | Retrieves posts from a specific Reddit subreddit (channel). This tool fetches a list of posts from the specified subreddit, sorted by your choice of hot, new, or controversial. It |
get_comment | read | Retrieves a specific Reddit comment and optionally its complete discussion thread. This tool should be used when you need to examine a particular comment |
get_post | write | Retrieves a complete Reddit post including its title, content, metadata, and all associated comments and reply threads. This tool should be used when you need to examine a specific post |
language | read | Programming language to use |
mcp_logging | read | Request the server to log a message for debugging purposes |
programming | read | Computer Programming |
recentPosts | read | JSON string of recent posts from configured subreddits |
reddit_suggest_action | read | Analyzes recent Reddit activity and suggests the next action |
sampling_example | read | Demonstrates the MCP sampling pattern for AI-assisted operations. Shows how to create sampling requests for summarization, content generation, analysis, and translation tasks. |
search_reddit | read | Search Reddit posts across all subreddits or within a specific subreddit |
structured_data_example | read | Demonstrates returning structured data alongside text content. Shows examples with user profiles, analytics, weather data, and product information with proper schema validation. |
task | read | The coding task to complete |
validation_example | read | Demonstrates input validation with JSON Schema - validates user data and returns structured results |
Trust audit
CAUTIONgrade B · trust 89/100 Install with care. The audit found things worth knowing before you trust its output.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | WARN |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- declared (5 observation(s))
- Network
- declared (12 observation(s))
- Shell
- none-observed
- Dependencies
- not all pinned
- Secrets in source
- none-found
Findings (11)
MCP_BASE_URL=http://127.0.0.1:3000
export const MCP_BASE_URL = process.env.MCP_BASE_URL || `http://127.0.0.1:${process.env.PORT || '3000'}`;.env.test
import type { SamplingPrompt } from '../../types/sampling.js';import type { SamplingPrompt } from '../../types/sampling.js';import type { MCPToolContext } from '../../types/request-context.js';import { logger } from '../../utils/logger.js';import { getChannelSuccessMessage } from '../../constants/tool/get-channel.js';@modelcontextprotocol/sdk, dotenv, @types/node, typescript
@modelcontextprotocol/sdk, ajv-formats, cookie-parser, cors, dotenv, express, jose, zod
cat > .env << EOF
Gates applied: no_behavioural_pass.
6d47722a5470full audit observations/trust-audit/mcp-server/systempromptio__systemprompt.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-07 | 6d47722a5470 | CAUTION | B | 89 | first audit |
Questions
What is the Systemprompt MCP server?
[DEPRECATED] Superseded by systempromptio/systemprompt-template and systempromptio/systemprompt-core. Reference MCP server implementation (OAuth 2.1, tools, prompts, resources, sampling, notifications).
What tools does Systemprompt expose?
15 in total: 14 read-only, 1 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is Systemprompt safe to connect to an agent?
With care. The audit graded it B (89/100) and found 11 things worth knowing before you trust this server, listed below with the exact line each was found on.
What credentials does Systemprompt need?
It reads JWT_SECRET, MCP_ACCESS_TOKEN, OAUTH_ISSUER, REDDIT_CLIENT_SECRET and REDDIT_REFRESH_TOKEN from the environment. Give it a token scoped to the least it needs — an agent that can be talked into calling a tool can be talked into calling it with your credentials.
How does Systemprompt run?
It speaks streamable-http, so it runs as a service you connect to over the network. It is published on npm as @systemprompt/systemprompt-mcp-server at 1.0.1.
How current is this page?
The grade is for one exact copy of the source (6d47722a5470), read on 2026-10-07. The repository is watched and re-audited when it changes.