Atlas / MCP servers / yamanoku / Baseline

BaselineSAFE

mcp/yamanoku/baseline

特定のWeb APIに関するBaselineの状況を提供するModel Context Protocolサーバー

Verdict
SAFE
Grade
B
Trust score
89 /100
Exposed tools
2 2r · 0w · 0d
Transport
—
License
MIT
Stars
37
01

Overview

From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.

Baseline MCP Server

日本語版 | English Version

Web Platform APIのサポート状況を提供するModel Context Protocolサーバーです。

[](https://jsr.io/@yamanoku/baseline-mcp-server)

概要

このサーバーは、Web Platform DashboardのAPIを使用して、WebのAPI機能のBaselineステータス(サポート状況)を取得できるMCPサーバーを実装しています。クエリに基づいてWeb機能の情報を取得し、その結果をMCPクライアントに返します。

機能

  • Web Platform DashboardのAPIを使用した機能検索
  • 機能のBaselineステータス(widely、newly、limited、no_data)の提供
  • ブラウザ実装状況(バージョンと実装日)の提供
  • 機能の使用状況データの提供
  • 特定のブラウザを除外した機能検索(chrome, edge, firefox, safari)
  • MCPを介した各種AIモデルとの連携

Baselineステータスについて

Baselineステータスは、Web機能のブラウザサポート状況を示します:

  • widely:

広くサポートされているWeb標準機能。ほとんどのブラウザで安全に使用できます。

  • newly:

新しく標準化されたWeb機能。主要なブラウザでサポートされ始めていますが、まだ普及途上です。

  • limited:

限定的にサポートされているWeb機能。一部のブラウザでは使用できないか、フラグが必要な場合があります。

  • no_data:

現時点ではBaselineに含まれていないWeb機能。ブラウザのサポート状況を個別に確認する必要があります。

Baselineについての詳細については「Baseline (互換性) - MDN Web Docs 用語集」を参照してください。

MCPクライアントでの設定

  • サーバーを起動するにあたり、Denoの使用を推奨します
  • パーミッションとしてapi.webstatus.devのみのアクセスを許可してください
  • `@yamanoku/baseline-mcp-server`を指定するか、お手元のローカル環境にbaseline-mcp-server.tsを設置して読み取るように設定してください
  • Denoをインストールせずに使う場合は、スタンドアロンバイナリを利用できます

Claude Desktop

Claude DesktopのMCPクライアントで使用するには、以下のようにcline_mcp_settings.jsonに設定を追加します。

{
"mcpServers": {
"baseline-mcp-server": {
"command": "deno",
"args": [
"run",
"--allow-net=api.webstatus.dev",
"jsr:@yamanoku/
Read from source at commit 9a474a90a755OBSERVED · 2026-10-08
02

Exposed tools (2)

2 read · 0 write · 0 destructive.

ToolRiskDescription
get_negated_browser_baseline_statusread
get_web_feature_baseline_statusread
03

Trust audit

SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.

LayerWhat it checksResult
L0Provenance & inventoryPASS
L1Static analysis of the codePASS
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
UNDECLARED (2 observation(s))
Network
declared (1 observation(s))
Shell
none-observed
Dependencies
pinned
Secrets in source
none-found

Findings (2)

LOWFilesystem / path · fs.traversal · CWE-22, CWE-59
tools/helpers/getFeatureStatus.ts:1
import type { WebFeature, WebFeatureResponse } from "../../types.ts";
LOWFilesystem / path · fs.traversal · CWE-22, CWE-59
tools/helpers/getFeatureStatus.ts:2
import { APIURL } from "../../constants.ts";

Gates applied: no_behavioural_pass.

Audited 2026-10-08 · audit v0.4.1 · source sha 9a474a90a755full audit observations/trust-audit/mcp-server/yamanoku__baseline.json · Report an issue / request a re-scan
04

Audit history

Every audit this server has had. A grade with a past is a grade somebody is still checking.

DateSourceVerdictGradeScoreChange
2026-10-089a474a90a755SAFEB89first audit
05

Questions

What is the Baseline MCP server?

特定のWeb APIに関するBaselineの状況を提供するModel Context Protocolサーバー

What tools does Baseline expose?

2 in total: 2 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.

Is Baseline safe to connect to an agent?

The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.

What credentials does Baseline need?

No credential environment variables were found in its source, so it appears to need none.

How current is this page?

The grade is for one exact copy of the source (9a474a90a755), read on 2026-10-08. The repository is watched and re-audited when it changes.

Advertisement