
Research
/Security News
737 Chrome VPN Extensions Linked to Brand Impersonation and Browser Traffic Redirection
The campaign amassed more than 75,000 installs by targeting Russian-speaking users seeking access to blocked services.
@flyfish-dev/file-ai
Advanced tools
Read-only document awareness MCP server for agent-ready local file context.
Read-only document awareness MCP server for agents. File AI turns local files into a stable profile, anchors, blocks, chunks, outline, search results, and contextual snippets so an agent can understand document content without reverse-engineering PDF, OOXML, spreadsheet, email, or archive internals.
MCP Registry name: io.github.flyfish-dev/file-ai
Use it directly with npx:
npx -y @flyfish-dev/file-ai
Or install it globally:
npm install -g @flyfish-dev/file-ai
file-ai --transport stdio
Stdio:
{
"mcpServers": {
"file-ai": {
"command": "npx",
"args": ["-y", "@flyfish-dev/file-ai"]
}
}
}
Streamable HTTP:
npx -y @flyfish-dev/file-ai --transport http --host 127.0.0.1 --port 8765
Endpoint:
http://127.0.0.1:8765/mcp
doc_analyze: parse a local file and cache a document index.doc_read: read blocks, chunks, or anchors from an existing index or path.doc_search: search cached content with source anchors.doc_context: retrieve nearby blocks around an anchor or query.doc_list_formats: list known Flyfish File Viewer formats.doc://{indexId}/profiledoc://{indexId}/outlinedoc://{indexId}/chunksFile AI prioritizes text, Markdown, JSON, source code, PDF, DOCX, XLSX, CSV, PPTX, EML, and archive manifests. Unsupported or weakly structured files return a best-effort profile, extracted text when available, and warnings.
Every content block carries an anchor such as a page, slide, worksheet, row range, nested path, or byte/text location. Agents should cite returned anchorId values when making document-grounded claims.
pnpm install
pnpm build
pnpm test
pnpm validate:skill
Run locally:
pnpm dev -- --transport stdio
pnpm dev -- --transport http --port 8765
The package includes:
@flyfish-dev/file-aiserver.json.github/workflows/publish-mcp.ymlRelease flow:
git tag v0.1.0
git push origin v0.1.0
The workflow publishes the npm package first, then publishes io.github.flyfish-dev/file-ai to the official MCP Registry through GitHub OIDC. The repository must have an NPM_TOKEN secret that can publish @flyfish-dev/file-ai.
The server is read-only. It does not mutate source documents.
FAQs
Read-only document awareness MCP server for agent-ready local file context.
The npm package @flyfish-dev/file-ai receives a total of 26 weekly downloads. As such, @flyfish-dev/file-ai popularity was classified as not popular.
We found that @flyfish-dev/file-ai demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
The campaign amassed more than 75,000 installs by targeting Russian-speaking users seeking access to blocked services.

Company News
Open source maintainers are under more pressure than ever. We're raising our open source program from the Team plan to the Business plan, free.

Security News
The supply chain control that delays freshly published gems now covers lockfile generation and gem vendoring in Ruby projects.