Enables secure interaction with Notion through a suite of tools for searching, reading, and modifying pages and databases. It features OAuth 2.1 authentication with PKCE and encrypted token storage to provide an enterprise-ready interface for MCP clients.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.
ajv has ReDoS when using `$data` option
process.env. You'll be asked to provide them before it can run.ACCESS_TOKEN_TTL_MSALLOWED_ORIGINS— Origin allowlist for browser clients via .ALLOWED_REDIRECT_URIS— for your MCP clientAUTH_CODE_TTL_MSBASE_URL— (if not localhost)MCP_CLIENT_IDNOTION_CLIENT_ID— / NOTION_CLIENT_SECRETNOTION_CLIENT_SECRET— NOTION_CLIENT_ID /NOTION_REDIRECT_URINOTION_VERSION— (default: 2025-09-03)PORTRATE_LIMIT_MAX_AUTHRATE_LIMIT_MAX_MCPRATE_LIMIT_WINDOW_MSREFRESH_TOKEN_TTL_MSSTATE_SIGNING_KEY— to another random secretSTATE_SIGNING_KEY_FILE— (Optional) TOKEN_ENC_KEY_FILE / for file-based secrets (defaults under ./data/)TOKEN_ENC_KEY— to the generated base64 keyTOKEN_ENC_KEY_FILE— (Optional) / STATE_SIGNING_KEY_FILE for file-based secrets (defaults under ./data/)TOKEN_STORE_PATH[](https://m8ven.ai/mcp/edenking0621-png-mcp-12vpwi)