
Research
/Security News
77 Firefox Extensions Linked to Crypto Wallet and Credential Theft
Socket uncovered 77 linked Firefox extensions, including 40 that steal wallet secrets or credentials and 37 deceptive sports-score shells.
@prismism/mcp-server
Advanced tools
MCP server for Prismism — shareable links for any file.
Upload files and get tracked, shareable links directly from Claude Desktop, Cursor, Copilot, Windsurf, or any MCP-compatible agent.
Create a free account at prismism.dev or use the prismism_register tool after setup.
Edit ~/Library/Application Support/Claude/claude_desktop_config.json (macOS) or %APPDATA%\Claude\claude_desktop_config.json (Windows):
{
"mcpServers": {
"prismism": {
"command": "npx",
"args": ["@prismism/mcp-server"],
"env": {
"PRISMISM_API_KEY": "pal_your_key_here"
}
}
}
}
Edit .cursor/mcp.json in your project root:
{
"mcpServers": {
"prismism": {
"command": "npx",
"args": ["@prismism/mcp-server"],
"env": {
"PRISMISM_API_KEY": "pal_your_key_here"
}
}
}
}
Edit ~/.codeium/windsurf/mcp_config.json:
{
"mcpServers": {
"prismism": {
"command": "npx",
"args": ["@prismism/mcp-server"],
"env": {
"PRISMISM_API_KEY": "pal_your_key_here"
}
}
}
}
Ask your agent: "Use the prismism_health tool to check the connection"
| Tool | Description |
|---|---|
prismism_health | Check connection and auth status |
prismism_register | Create account + get API key (one-time) |
prismism_publish | Upload a file and get a shareable link |
prismism_list | List your artifacts |
prismism_get | Get artifact details + analytics |
prismism_update | Update title, download permissions, password |
prismism_delete | Permanently delete an artifact |
prismism_account | Get account info, plan, and usage |
"Publish this report as a shareable link"
The prismism_publish tool accepts:
encoding: "base64" for binary files like PDFs, images, and videoSupported formats: PDF, HTML, Markdown, Images (PNG/JPG/GIF/SVG/WebP), Video (MP4).
If you don't have an API key yet, the prismism_register tool can create an account:
"Register me on Prismism with my email"
It returns the API key once — the agent will help you save it to your config.
| Variable | Required | Default | Description |
|---|---|---|---|
PRISMISM_API_KEY | For most tools | — | Your Prismism API key |
PRISMISM_BASE_URL | No | https://prismism.dev | API base URL |
All tools return a consistent JSON envelope:
{
"ok": true,
"data": { ... },
"_hints": ["Actionable guidance for the agent"]
}
On error:
{
"ok": false,
"error": { "code": "STORAGE_LIMIT", "message": "..." },
"_hints": ["Upgrade at https://prismism.dev/settings/billing"]
}
MIT
FAQs
MCP server for Prismism — shareable links for any file
We found that @prismism/mcp-server demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Socket uncovered 77 linked Firefox extensions, including 40 that steal wallet secrets or credentials and 37 deceptive sports-score shells.

Security News
NIST disclosed an unreleased AI tool called V-etalon and opened a broad inquiry into NVD modernization after years of automation plans produced no public enrichment system.

Security News
In his AI Council 2026 talk, Feross Aboukhadijeh covers recent package compromises, vulnerability discovery, and a more automated security model.