
Research
Malicious fezbox npm Package Steals Browser Passwords from Cookies via Innovative QR Code Steganographic Technique
A malicious package uses a QR code as steganography in an innovative technique.
@instantdb/mcp
Advanced tools
Model Context Protocol (MCP) server for managing Instant apps, schemas, and permissions!
Get Started · Examples · Docs · Discord
Welcome to Instant's MCP server.
This MCP is a wrapper around the Instant Platform SDK. Add this MCP to your editor to enable creating, managing, and updating your InstantDB applications.
Instant hosts the latest version of the server at https://mcp.instantdb.com
.
For modern clients that support streamable HTTP use https://mcp.instantdb.com/mcp
.
For legacy clients that require SSE use https://mcp.instantdb.com/sse
.
For more editor-specific instructions, see the public docs.
If you haven't already, make sure to get a personal access token from your Instant dashboard.
Run the server in stdio mode with npx -y @instantdb/mcp --token <token>
.
For more editor-specific instructions, see the public docs.
Clone this repo and use the MCP Inspector @modelcontextprotocol/inspector
to debug and
develop against this server locally.
# Clone this repo
git clone ..
# Navigate to the cloned directory and build the MCP server
cd ..
npm run build
# Run the server
npx @modelcontextprotocol/inspector node ./dist/index.js --token <token>
# Or alternatively via environment variable
INSTANT_ACCESS_TOKEN=<token> npx @modelcontextprotocol/inspector node ./build/index.js
# You can also specify a url to connect to a local instance of your instant server
npx @modelcontextprotocol/inspector node ./dist/index.js --token <token> --api-url
http://localhost:8888
You can also configure your editor or Claude to connect to your local MCP. Here's an example configuration for MacOS/Linux:
{
"mcpServers": {
"instant": {
"command": "node",
"args": [
"<path-to-your-cloned-repo>/dist/index.js",
"--token",
"<token>",
"--api-url",
"http://localhost:8888"
]
}
}
}
cp .env.example .env
Fill in all of the environment variables for your new .env
file.
pnpm run dev
Visit the server at http://localhost:3123.
To work on the stdio
version of the codebase, update your .env
file with SERVER_TYPE=stdio
.
FAQs
Model Context Protocol (MCP) server for managing Instant apps, schemas, and permissions!
We found that @instantdb/mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 5 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
A malicious package uses a QR code as steganography in an innovative technique.
Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.
Application Security
/Research
/Security News
Socket detected multiple compromised CrowdStrike npm packages, continuing the "Shai-Hulud" supply chain attack that has now impacted nearly 500 packages.