n8n-mcp (czlonkowski/n8n-mcp) is an MCP server listed on the M8ven Trust Index. It scores 76 out of 100, grade B. It declares 25 tools. No publisher has claimed this listing.
A MCP for Claude Desktop / Claude Code / Windsurf / Cursor to build n8n workflows for you
Caution. Specific findings reduced this grade. They are listed on the page. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.
How we verified
Verified is a snapshot. Live keeps it current, and builds your track record.
⚡ Connect GitHub → continuous verification on every pushwhy connect →Who stands behind it
czlonkowski
Source: github_topic · also listed on modelscope
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access →
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
AUTH_RATE_LIMIT_MAXAUTH_RATE_LIMIT_WINDOWAUTH_TOKENAUTH_TOKEN_FILEAWS_EXECUTION_ENVAZURE_FUNCTIONS_ENVIRONMENTBASE_URLCORS_ORIGINCOVERAGE_DIRCOVERAGE_REPORTERDISABLED_TOOLSn8n_create_workflow,n8n_update_full_workflow,n8n_update_partial_workflow,n8n_delete_workflow,n8n_autofix_workflow,n8n_deploy_template,n8n_test_workflow,n8n_manage_credentials,n8n_manage_datatableDISABLED_TOOL_OPERATIONSn8n_workflow_versions:delete,rollback,prune;n8n_executions:delete;n8n_evaluations:run,cancel;n8n_manage_folders:create,rename,move,deleteDISABLE_CONSOLE_OUTPUTDISABLE_TELEMETRYENABLE_MULTI_TENANTFEATURE_TEST_COVERAGEFLY_APP_NAMEGITHUB_REFGITHUB_REPOSITORYGITHUB_RUN_IDGITHUB_RUN_NUMBERGITHUB_SHAGIT_COMMITGOOGLE_CLOUD_PROJECTHEROKU_APP_NAMEHOSTIS_CONTAINERIS_DOCKERKUBERNETES_SERVICE_HOSTLOG_LEVELMCP_AUTH_TOKENMCP_MODEMCP_PORTMCP_URLMULTI_TENANT_ALLOW_CONCURRENT_SESSIONSMULTI_TENANT_SESSION_STRATEGYN8N_API_KEYThese tools require N8N_API_URL and in your configuration.N8N_API_URLThese tools require and N8N_API_KEY in your configuration.N8N_CUSTOM_PATHN8N_MCP_CONFIG_VOLUMEN8N_MCP_MAX_SESSIONSN8N_MCP_TELEMETRY_DISABLEDN8N_MCP_USER_IDN8N_MODEN8N_MODULES_PATHN8N_SKILLS_SOURCEPUBLIC_URLRENDERSESSION_TIMEOUT_MINUTESSKIP_WORKFLOW_VALIDATIONTELEMETRY_DISABLEDTEST_MAX_WORKERSTRUST_PROXYUSE_FIXED_HTTPPORTSUPABASE_ANON_KEYSUPABASE_SERVICE_ROLE_KEYSUPABASE_URLAll four hints declared on every tool
21/25 tools missing one or more hints — n8n_create_workflow (missing: idempotentHint); n8n_get_workflow (missing: destructiveHint); n8n_delete_workflow (missing: idempotentHint), +18 more. OpenAI's directory rejects tools where any of the four hints are missing or non-boolean.
For every tool, set all four hints (readOnlyHint, destructiveHint, idempotentHint, openWorldHint) to explicit true/false values that match the handler’s actual behaviour.
Tool test coverage
Only 1/25 tools referenced in tests (4%)
Write tests that reference each tool by name so every tool has at least one test.
Shell command execution
7 child_process calls — runs shell commands
Prefer library functions over shell-outs. If you must shell out, ensure all inputs are properly escaped.
Secrets stay with their owner
2 secret/sensitive values flow into network calls (MCP_AUTH_TOKEN → dynamic, AUTH_TOKEN → dynamic)
Audit where credentials are sent. A NOTION_TOKEN should only reach api.notion.com — never a third-party host.
Secrets not logged
3 secret values sent to console.log
Redact or omit secret values from log output.
Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.
[](https://m8ven.ai/mcp/czlonkowski/n8n-mcp)?variant=verified from the URL.Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.
https://m8ven.ai/api/mcp/tool-check