protogrid

Search / io.github.infoinlet-marketplace/mcp-email

mcp-email

L0 · runs locally

Email for AI agents — read inbox (IMAP), search, and send (SMTP).

v0.1.1 · active · repository · descriptor JSON · versions

Runs on your machine: something must execute the package.Only local packages are published (npm, PyPI, OCI, …). The registry never executes them, so tools are unknown until you run it.
Quality–not scored
Trust70of 100
Packages1
Tools seen0

Connect

8 clients · secrets stay placeholders
{
  "mcpServers": {
    "mcp-email": {
      "command": "npx",
      "args": [
        "-y",
        "@infoinlet/[email protected]"
      ]
    }
  }
}
claude mcp add mcp-email -- npx -y @infoinlet/[email protected]
[mcp_servers.mcp-email]
command = "npx"
args = ["-y", "@infoinlet/[email protected]"]
{
  "$schema": "https://opencode.ai/config.json",
  "mcp": {
    "mcp-email": {
      "type": "local",
      "command": [
        "npx",
        "-y",
        "@infoinlet/[email protected]"
      ],
      "enabled": true
    }
  }
}
{
  "mcpServers": {
    "mcp-email": {
      "command": "npx",
      "args": [
        "-y",
        "@infoinlet/[email protected]"
      ]
    }
  },
  "deeplink": "cursor://anysphere.cursor-deeplink/mcp/install?name=mcp-email&config=eyJjb21tYW5kIjoibnB4IiwiYXJncyI6WyIteSIsIkBpbmZvaW5sZXQvbWNwLWVtYWlsQDAuMS4xIl19"
}
{
  "servers": {
    "mcp-email": {
      "type": "stdio",
      "command": "npx",
      "args": [
        "-y",
        "@infoinlet/[email protected]"
      ]
    }
  }
}
{
  "mcpServers": {
    "mcp-email": {
      "command": "npx",
      "args": [
        "-y",
        "@infoinlet/[email protected]"
      ]
    }
  }
}
extensions:
  "mcp-email":
    enabled: true
    name: "mcp-email"
    type: stdio
    cmd: "npx"
    args:
      - "-y"
      - "@infoinlet/[email protected]"
    timeout: 300

This is a local package: the command runs on your machine.

Quality – / 100not scored

Not scored: fewer than three checks apply, usually because no remote answered a credential-free probe or the server is a local package.

protocoln/a · weight 25
  • n/a
    protocol.modern, protocol.stateless, protocol.transport, protocol.list_ttlno remote answered a protocol handshake (not probed yet, unreachable, or local-only)
authorizationn/a · weight 15
  • n/a
    auth.prm, auth.as_metadata, auth.cimdno remote uses OAuth
  • n/a
    auth.secret_in_urlno templated URL
tool hygienen/a · weight 30
  • n/a
    tools.descriptions, tools.description_length, tools.schemas, tools.annotations, tools.directory_hints, tools.token_cost, tools.api_dumptool list unknown (behind auth, not probed, or empty)
stabilityn/a · weight 15
  • n/a
    stability.changes, stability.rug_pulltool list unknown
dependencies33 · weight 15
  • fail
    deps.known_vulns5 advisories to act on (malicious, or rated high or critical with a fix available): GHSA-2x7j-588g-ccc2 in [email protected] (direct, fixed in 9.1.0), GHSA-p6gq-j5cr-w38f in [email protected] (direct, fixed in 9.0.1), GHSA-r7g4-qg5f-qqm2 in [email protected] (direct, fixed in 8.0.8), ...; 10 more of lower severity or without a fix
  • fail
    deps.mcp_sdk_version@modelcontextprotocol/sdk 1.30.1 has 1 known advisory (GHSA-6qxp-vccf-f47h); update @modelcontextprotocol/sdk to 1.31.0 or later
  • pass
    deps.resolvable@infoinlet/[email protected] resolved: 146 packages

Tool list unknown · checked 2026-10-10 01:26 UTC

Tool changes

No tool definition changes recorded. A server's first observation is its baseline; later probes record what changes.

Checks run on what our credential-free, read-only probes observe; tools are never called and no code audit is performed. How it is computed.

Trust 70 / 100

duplicate-repo
provenance80
livenessn/a
freshness65
hygiene60

+repository +namespace-matches-repo ~liveness-unmeasured ~updated-133d-ago -duplicate-repo(30 names)

Derived from observable signals (official registry feed and our own credential-free probes); no code audit performed. How it is computed.

Dependencies

@infoinlet/[email protected] npm145 dependencies, resolved · MCP SDK @modelcontextprotocol/sdk 1.30.1 · advisories checked 2026-10-09

advisoryseveritypackagefixed in
GHSA-6qxp-vccf-f47hMCP TypeScript SDK: OAuth client could send credentials to an authorization server chosen by the MCP serverhigh@modelcontextprotocol/[email protected]MCP SDK, directfixed in 1.31.0
GHSA-2x7j-588g-ccc2Nodemailer: Quadratic (O(n²)) time complexity in addressparser allows remote denial of service via a crafted address listhigh[email protected]directfixed in 9.1.0
GHSA-p6gq-j5cr-w38fNodemailer: Message-level raw option bypasses disableFileAccess/disableUrlAccess, enabling arbitrary file read and full-response SSRF in the delivered messagehigh[email protected]directfixed in 9.0.1
GHSA-r7g4-qg5f-qqm2Nodemailer: Improper TLS Certificate Validation in OAuth2 Token Fetch Enables Credential Interceptionhigh[email protected]directfixed in 8.0.8
GHSA-rcmh-qjqh-p98vNodemailer’s addressparser is vulnerable to DoS caused by recursive callshigh[email protected]directfixed in 7.0.11
GHSA-v53p-9fqp-m79jNodemailer: Quadratic backtracking in the addressparser free-text fallback allows remote denial of servicehigh[email protected]directfixed in 10.0.6
GHSA-268h-hp4c-crq3Nodemailer: CRLF injection in Nodemailer List-* header comments allows arbitrary message header injectionmoderate[email protected]directfixed in 8.0.9
GHSA-6vj9-mwq6-2f5vNodemailer: Process-global DNS cache reuses TLS `servername` across transports, enabling cross-tenant SMTP credential disclosuremoderate[email protected]directfixed in 10.0.2
GHSA-8m3c-c648-2xjjNodemailer: resolveContent() on a MailMessage bypasses disableFileAccess/disableUrlAccess when called with the legacy signaturemoderate[email protected]directfixed in 9.1.1
GHSA-8vvx-rff5-p5rqNodemailer: Nested structured recipient arrays bypass the parser depth limit and cause stack exhaustion DoSmoderate[email protected]directfixed in 10.0.2

6 more advisories in the dependencies endpoint.

Dependency graphs from deps.dev; advisories from OSV.dev, including the GitHub Advisory Database and the PyPI Advisory Database; all CC BY 4.0. The graph is what a clean install of this version resolves today; nothing was installed or run. How it is checked.

Endpoints

packageregistryversionruntimesecrets
@infoinlet/mcp-emailnpm0.1.1–

Tools (0)

No tools observed. Local packages are never executed by the registry.

Schemas: list_tools.

Also listed as

29 other active names share this repository (showing 10): io.github.infoinlet-marketplace/mcp-browser-research, io.github.infoinlet-marketplace/mcp-calendar, io.github.infoinlet-marketplace/mcp-clickhouse, io.github.infoinlet-marketplace/mcp-codeaudit, io.github.infoinlet-marketplace/mcp-data, io.github.infoinlet-marketplace/mcp-elasticsearch, io.github.infoinlet-marketplace/mcp-fetch, io.github.infoinlet-marketplace/mcp-filesystem, io.github.infoinlet-marketplace/mcp-git, io.github.infoinlet-marketplace/mcp-github

Official server.json
{
  "name": "io.github.infoinlet-marketplace/mcp-email",
  "$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
  "version": "0.1.1",
  "packages": [
    {
      "version": "0.1.1",
      "transport": {
        "type": "stdio"
      },
      "identifier": "@infoinlet/mcp-email",
      "registryType": "npm"
    }
  ],
  "repository": {
    "url": "https://github.com/infoinlet-marketplace/marketplace",
    "source": "github",
    "subfolder": "services/mcp-email"
  },
  "description": "Email for AI agents — read inbox (IMAP), search, and send (SMTP)."
}