Arxiv LatexSAFE
MCP server that uses arxiv-to-prompt to fetch and process arXiv LaTeX sources for precise interpretation of mathematical expressions in scientific papers.
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
[](https://pypi.org/project/arxiv-latex-mcp/) [](https://opensource.org/licenses/MIT) [](https://github.com/takashiishida/arxiv-latex-mcp/releases) [](https://archestra.ai/mcp-catalog/takashiishida__arxiv-latex-mcp)
An MCP server that enables Claude Desktop, Claude Code, Cursor, or other MCP clients to directly access and process arXiv papers by fetching the LaTeX source. It uses arxiv-to-prompt under the hood to handle downloading and processing the LaTeX.
Why use the LaTeX source instead of uploading PDFs? Many PDF chat applications often struggle with mathematical content and equation-heavy papers. By utilizing the original LaTeX source code from arXiv papers, the LLM can accurately understand and handle equations and notations. This approach is particularly valuable for fields like computer science, mathematics, and engineering where precise interpretation of mathematical expressions is crucial.
Installation
If you are using Claude Desktop, you can utilize Desktop Extensions by double-clicking on the .mcpb file to install. Download the .mcpb file from here. Supported on macOS, Windows, and Linux.
Otherwise, you can run the server directly from PyPI with uvx:
{
"mcpServers": {
"arxiv-latex-mcp": {
"command": "uvx",
"args": ["arxiv-latex-mcp"]
}
}
}You can also install it with pip install arxiv-latex-mcp and run arxiv-latex-mcp, or use:
python -m arxiv
3aba562064f1OBSERVED · 2026-10-07Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.
claude mcp add arxiv-latex-mcp -- uvx arxiv-latex-mcp
{
"mcpServers": {
"arxiv-latex-mcp": {
"command": "uvx",
"args": [
"arxiv-latex-mcp"
]
}
}
}Exposed tools (4)
4 read · 0 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
get_paper_abstract | read | Get just the abstract of an arXiv paper. Use this for a quick preview when the user hasn |
get_paper_prompt | read | Recommended default: fetch the full LaTeX source of an arXiv paper for precise interpretation of mathematical expressions. |
get_paper_section | read | Get a specific section of an arXiv paper by section path. Use when the full paper is too long for context or the user wants to focus on a particular section. Use list_paper_sections first to find available paths. |
list_paper_sections | read | List section headings of an arXiv paper. Useful when the full paper is too long for context and you need to identify which sections to fetch individually. |
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- not all pinned
- Secrets in source
- none-found
Findings (2)
.mcpbignore
httpx, mcp, arxiv-to-prompt
Gates applied: no_behavioural_pass.
3aba562064f1full audit observations/trust-audit/mcp-server/takashiishida__arxiv-latex.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-07 | 3aba562064f1 | SAFE | B | 89 | first audit |
Questions
What is the Arxiv Latex MCP server?
MCP server that uses arxiv-to-prompt to fetch and process arXiv LaTeX sources for precise interpretation of mathematical expressions in scientific papers.
What tools does Arxiv Latex expose?
4 in total: 4 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is Arxiv Latex safe to connect to an agent?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.
What credentials does Arxiv Latex need?
No credential environment variables were found in its source, so it appears to need none.
How does Arxiv Latex run?
It speaks stdio, so it runs as a local process your client starts. It is published on PyPI as arxiv-latex-mcp.
How current is this page?
The grade is for one exact copy of the source (3aba562064f1), read on 2026-10-07. The repository is watched and re-audited when it changes.