Universal documentation knowledge-graph MCP server with hybrid full-text + vector search. Indexes local files and remote sources from Notion, Jira, Obsidian, Linear, GitHub, and Confluence into a single SQLite knowledge graph, exposing it to AI agents via the Model Context Protocol.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.
minimatch ReDoS: nested *() extglobs generate catastrophically backtracking regular expressions
minimatch has a ReDoS via repeated wildcards with non-matching literal in pattern
minimatch has ReDoS: matchOne() combinatorial backtracking via multiple non-adjacent GLOBSTAR segments
yaml is vulnerable to Stack Overflow via deeply nested YAML collections
process.env. You'll be asked to provide them before it can run.AZURE_OPENAI_API_KEYAZURE_OPENAI_ENDPOINTCOHERE_API_KEYDOCGRAPH_DEBUG— Set =1 to log JSON-RPC traffic to stderr.DOCGRAPH_LOGDOCGRAPH_MAX_PROJECTS— directory. Projects are kept in a small LRU (default =16) so long-runningDOCGRAPH_NO_WATCH— 1 (environment variable)DOCGRAPH_PROJECT— is inferred from the server's working directory, the env var, or theDOCGRAPH_WATCH_POLLINGFIREWORKS_API_KEYGOOGLE_API_KEYHUGGINGFACE_API_KEYMINIMAX_API_KEYMINIMAX_GROUP_IDMISTRAL_API_KEYOPENAI_API_KEY— export =sk-...REPLICATE_API_KEYTOGETHER_API_KEYVOYAGEAI_API_KEY[](https://m8ven.ai/mcp/carrilloapps-docgraph-y12dqz)