
Product
Microsoft Teams Notifications Are Now Available in Socket
Socket can now send alerts and supply chain attack notifications to Microsoft Teams, with filters that route the right updates to each channel.
🇬🇧 English | 🇹🇷 Turkce
✨ A production-ready, stdio-first GitHub MCP server built on
@vaur94/mcpbase.
mcp-gitpro gives AI agents a compact GitHub tool surface without drifting into local git, filesystem mutation, shell execution, or browser automation. The goal is simple: high-value GitHub workflows, low context waste, and clear safety boundaries.
@vaur94/mcpbase package instead of a local fork>=22.14.0>=10MCP_GITPRO_GITHUB_TOKENbash ./scripts/install-local.sh
The script installs dependencies, builds the server, and runs the test suite.
npm install
npm run build
npm test
Use mcp-gitpro.config.json for repo defaults and behavior flags, and keep secrets out of source control.
export MCP_GITPRO_GITHUB_TOKEN=YOUR_GITHUB_TOKEN
node ./dist/index.js --config ./mcp-gitpro.config.json
npm run ci:check
node/absolute/path/to/mcp-gitpro/dist/index.js--config /absolute/path/to/mcp-gitpro/mcp-gitpro.config.jsonMCP_GITPRO_GITHUB_TOKEN=...| Host | Integration model | Guide |
|---|---|---|
| OpenCode | opencode.json local MCP entry with command array | OpenCode |
| Codex CLI / IDE | config.toml with [mcp_servers.<name>] | Codex |
| VS Code | workspace MCP JSON with command, args, and env | VS Code |
| Antigravity | mcpServers JSON entry with absolute executable paths | Antigravity |
contextrepossearchissuespull_requestsactionsgithub_contextrepository_readrepository_comparesearch_githubissue_readissue_writepull_request_readpull_request_writeactions_readactions_writeConfiguration precedence:
mcp-gitpro.config.jsonMCP_GITPRO_* environment variablesmcpbaseImportant fields:
auth.githubTokendefaults.ownerdefaults.repodefaults.apiBaseUrlcontext.readOnlycontext.toolsetscontext.toolsoutput.pageSizeoutput.maxFileLinesoutput.maxDiffLinesoutput.maxBodyCharsmcp-gitpro/
|- src/
| |- config/
| |- core/
| |- github/
| |- shared/
| |- tools/
|- tests/
| |- unit/
| |- protocol/
|- docs/
| |- en/
| |- tr/
|- scripts/
mcp-gitpro depends on the published @vaur94/mcpbase package from npmApplicationRuntime, createMcpServer, and startStdioServermcpbase through createRuntimeConfigSchema and loadConfigBaseToolExecutionContext with GitHubClientdocs/en/README.mddocs/tr/README.mddocs/en/configuration.mddocs/tr/configuration.md.github/SECURITY.mdnpm run build
npm run typecheck
npm run test
npm run test:coverage
npm run test:protocol
npm run ci:check
This repository intentionally excludes:
Security controls include token-based auth, read-only mode, tool allowlists, output caps, and out-of-band Actions log delivery.
MIT - see LICENSE.
FAQs
Stdio-first GitHub-focused MCP server scaffold built on @vaur94/mcpbase.
The npm package mcp-gitpro receives a total of 0 weekly downloads. As such, mcp-gitpro popularity was classified as not popular.
We found that mcp-gitpro demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Product
Socket can now send alerts and supply chain attack notifications to Microsoft Teams, with filters that route the right updates to each channel.

Security News
pnpm 12 rewrites the package manager in Rust, cutting install times by up to 90% while preserving pnpm 11 workflows and lockfiles.

Security News
Socket CTO Ahmad Nassri joins AppSec leaders at Black Hat to discuss active malware, package manager risks, and software supply chain defense.