AGPL-3.0-or-later · forever.

mcp · anthropic

Filesystem

Read and write local files with path-based access control.

Vendored from the released binary · supernovae-st/nika@25f502adb7ec (v0.111.0) · digest-verified, re-derived at build, gated in CI

free · 1 env · ⚠ destructive · official

Call it from a workflow

nika: wire-filesystem
tasks:
  work:
    invoke:
      tool: "mcp:filesystem/<tool>"
permits:
  tools: ["mcp:filesystem/<tool>"]

The permit names the exact tool · absent means the empty boundary, and the run refuses before a call leaves.

Packages · 1

  • npm · @modelcontextprotocol/server-filesystem

Env vars · 1

  • FILESYSTEM_ALLOWED_PATHS

Names only · secrets ride the environment, never a file.