AutoVault is an MCP server that provides a local-first vault for AI agent skills, enabling validation, signing, and serving of SKILL.md files to agents through stdio or HTTP.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.
@modelcontextprotocol/sdk has cross-client data leak via shared server/transport instance reuse
Anthropic's MCP TypeScript SDK has a ReDoS vulnerability
Model Context Protocol (MCP) TypeScript SDK does not enable DNS rebinding protection by default
process.env. You'll be asked to provide them before it can run.AUTOVAULT_ADMIN_EMAIL— admin@example.com \AUTOVAULT_ADMIN_PASSWORD— replace-with-a-long-random-password \AUTOVAULT_AGENTSKILLS_BASEAUTOVAULT_ALLOWED_ORIGINS— unset Optional CORS allowlist for remote mode.AUTOVAULT_ANIMATIONAUTOVAULT_ASCIIAUTOVAULT_DB_PATH— $AUTOVAULT_STORAGE_PATH/autovault.sqlite SQLite capability index.AUTOVAULT_HTTP_PORT— 3000 HTTP port when PORT is not injected by the platform.AUTOVAULT_LOG_DIAGNOSTICS— unset Set to 1 to let structured diagnostic logs pass through public CLI output suppression.AUTOVAULT_LOG_LEVEL— info debug, info, warn, or error.AUTOVAULT_MODE— local local for stdio/library use, remote for HTTP MCP.AUTOVAULT_PROFILE_CONFIG_PATH— $AUTOVAULT_STORAGE_PATH/profiles.config.json Optional named profile config.AUTOVAULT_PROFILE_LINKS— unset Comma-separated agent=/skills/root links for profile sync.AUTOVAULT_PUBLIC_URL— required in remote mode Public origin for OAuth metadata and callbacks.AUTOVAULT_REMOTE_URLAUTOVAULT_SEARCH_MODE— text Search backend. Metadata text search is the current implementation.AUTOVAULT_SECURITY_STRICT— In strict mode (=true, the default), denylist hitsAUTOVAULT_STORAGE_PATH— local filesystem storage underAUTOVAULT_UI_BUNDLE_CHANNELAUTOVAULT_UI_BUNDLE_MANIFEST_URLAUTOVAULT_UI_BUNDLE_URLAUTOVAULT_UI_DEV_STATIC_ROOTAUTOVAULT_UI_OFFLINEAUTOVAULT_VERBOSEFORCE_COLORGITHUB_TOKEN— unset Optional GitHub API rate-limit headroom.NO_COLORPORT— AUTOVAULT_HTTP_PORT 3000 HTTP port when is not injected by the platform.TERMWT_SESSION[](https://m8ven.ai/mcp/autoworks-ai-autovault-9kr6bc)