MCPLow riskUnclaimed
wyrd
Exposes one granted folder to any AI client, read-only, behind a path-containment fence.
wyrdmcp.comwyrdmcp.com/wyrd
server.json
{
"$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
"name": "com.wyrdmcp/wyrd",
"description": "Exposes one granted folder to any AI client, read-only, behind a path-containment fence.",
"repository": {
"url": "https://github.com/MortalPastry/wyrd-mcp",
"source": "github"
},
"version": "0.3.0",
"packages": [
{
"registryType": "npm",
"identifier": "wyrd-mcp",
"version": "0.3.0",
"transport": {
"type": "stdio"
},
"packageArguments": [
{
"description": "Absolute path to the single folder to serve, read-only. Wins over WYRD_GRANT. Any path inside it can be requested, hidden entries included, such as .env and .git/config, apart from a handful of name spellings refused as input: a drive-letter-and-colon prefix such as C:notes on every host, and on Windows a colon inside a component (which names a data stream rather than a file) or a reserved device name such as NUL.md. What comes back is narrower than what can be requested: a directory is refused, and so are bytes that are not valid UTF-8. That limits what is readable, not what is reachable; grant a subfolder containing only what you mean to share.",
"format": "filepath",
"type": "named",
"name": "--grant"
},
{
"description": "Optional. Absolute path to one module file that answers search instead of the built-in search. Wins over WYRD_SEARCH_BACKEND. The module runs inside the server process and is not confined to the granted folder; omit unless you trust it.",
"format": "filepath",
"type": "named",
"name": "--search-backend"
}
],
"environmentVariables": [
{
"description": "Absolute path to the single folder to serve, read-only. Used when --grant is not passed. The server refuses to start if neither is set.",
"format": "filepath",
"name": "WYRD_GRANT"
},
{
"description": "Optional. Absolute path to one module file that answers search instead of the built-in search. Used when --search-backend is not passed. The module runs inside the server process and is not confined to the granted folder; leave unset unless you trust it.",
"format": "filepath",
"name": "WYRD_SEARCH_BACKEND"
}
]
}
]
}Permissions
DeclaredDetected
Runs code—
nodeInstalls—
npm:wyrd-mcp@0.3.0Runs install scripts—None
NetworkNoneNone
Needs credentialsNoneNone
Outside the workspace—None
Agent tools—None
Checks
Low risk · Nothing worth a warning was found.
Not reviewed by a person · Checked by rules; the model review is not switched on yet.
Versions
- #10.3.0latestOct 7, 2026
wyrdOpen in Codeg