
Security News
upm Launches as a Fast, Tiny Package Manager Written in TypeScript
upm uses Node.js to deliver fast npm installs in about 250 KB, with a JavaScript API and security defaults.
privacypage-mcp
Advanced tools
MCP server for PrivacyPage — generate privacy policies, terms of service, EULAs, cookie policies, and disclaimers for your app, straight from your AI agent.
Give your AI agent the power to generate privacy policies, terms of service, EULAs, cookie policies, and disclaimers — while it builds your app.
Powered by PrivacyPage. Free instant previews; unlock the full document for a one-time $9.99 (no subscription, no account).
Every app shipped from Cursor, Lovable, Bolt, or v0 eventually needs legal documents — the App Store and Play Store require a privacy policy, GDPR requires cookie disclosures, and users expect terms of service. This MCP server lets the agent that's building your app generate those documents in the same conversation, filled in from what the agent already knows about your app: its name, platform, the data it collects, and the SDKs it uses.
Requires Node.js 18+. No API key needed to generate previews.
Add to ~/.cursor/mcp.json (or .cursor/mcp.json in your project):
{
"mcpServers": {
"privacypage": {
"command": "npx",
"args": ["-y", "privacypage-mcp"]
}
}
}
Add to claude_desktop_config.json (Settings → Developer → Edit Config):
{
"mcpServers": {
"privacypage": {
"command": "npx",
"args": ["-y", "privacypage-mcp"]
}
}
}
{
"command": "npx",
"args": ["-y", "privacypage-mcp"],
"env": {
"PRIVACYPAGE_LICENSE_KEY": "<optional — set after purchase to auto-unlock full documents>"
}
}
| Tool | What it generates | Key inputs |
|---|---|---|
generate_privacy_policy | GDPR/CCPA/COPPA-aware privacy policy | app name, platform, company, contact email, data collected, third-party SDKs, children under 13 |
generate_terms_of_service | Terms of Service agreement | service name, company, platform, key policies (refunds, UGC, subscriptions…), jurisdiction |
generate_eula | End-User License Agreement | app name, company, platform, license type, usage restrictions |
generate_cookie_policy | GDPR-aware cookie policy | website name/URL, cookie types, third-party services, contact email |
generate_disclaimer | Liability disclaimer (general / medical / financial / fitness / legal / affiliate) | site name, disclaimer type, external links, contact email |
get_full_document | Full text of any generated document | documentId + license key (argument or PRIVACYPAGE_LICENSE_KEY env var) |
Every generate_* tool returns a free 25-line preview, a documentId, and instructions for unlocking the full document.
You: Ship my fitness tracker app to the App Store. It uses Firebase Analytics and HealthKit.
Agent: The App Store requires a privacy policy. Let me generate one. (calls
generate_privacy_policywithappName: "FitTrack",platform: "iOS",dataCollected: ["Health Data", "Usage Analytics"],thirdPartyServices: ["Google Analytics / Firebase"],childrenUnder13: false)Agent: Here's a preview of your privacy policy — it covers HealthKit data, Firebase, GDPR and CCPA rights, and COPPA. To get the full document, purchase a one-time license at privacypage.io ($9.99, no subscription) and give me the key.
You: Here's my key:
PP-XXXX-XXXXAgent: (calls
get_full_document) Done — I've saved the full policy topublic/privacy-policy.mdand linked it in your app's settings screen.
PRIVACYPAGE_LICENSE_KEY in your MCP config and the agent can unlock full documents automatically.Rate limit: 10 document generations per hour per IP. The server reports rate-limit errors to the agent with a friendly retry message.
| Variable | Purpose |
|---|---|
PRIVACYPAGE_LICENSE_KEY | Optional. License key used by get_full_document when no licenseKey argument is passed. |
PRIVACYPAGE_API_URL | Optional. Override the API base URL (defaults to https://privacypage.io). |
git clone https://github.com/rushi053/privacypage-mcp.git
cd privacypage-mcp
npm install
npm run build
npm run smoke-test # handshake + tools/list over stdio
node scripts/smoke-test.mjs --call # also makes one real API call
Documents generated by PrivacyPage are professionally structured templates and AI-generated drafts. They are not legal advice; for high-stakes situations, have a lawyer review your documents.
MIT — the server. Generated documents are yours.
FAQs
MCP server for PrivacyPage — generate privacy policies, terms of service, EULAs, cookie policies, and disclaimers for your app, straight from your AI agent.
We found that privacypage-mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
upm uses Node.js to deliver fast npm installs in about 250 KB, with a JavaScript API and security defaults.

Company News
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.