Project management CLI + MCP server for AI agents. Register projects once, open them anywhere, sync to S3, auto-init git, and wire into the hasna ecosystem.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.
@modelcontextprotocol/sdk has cross-client data leak via shared server/transport instance reuse
Anthropic's MCP TypeScript SDK has a ReDoS vulnerability
Model Context Protocol (MCP) TypeScript SDK does not enable DNS rebinding protection by default
process.env. You'll be asked to provide them before it can run.HASNA_PROJECTS_DATABASE_URL— for runtime or smoke commands and do not printHASNA_PROJECTS_DB_PATHHASNA_PROJECTS_STORAGE_MODEHASNA_WORKSPACES_DB_PATHHOSTNAMEMCP_HTTP— 1 MCP_HTTP_PORT=8871 projects-mcpMCP_HTTP_PORT— MCP_HTTP=1 =8871 projects-mcpMCP_STDIOOPENROUTER_API_KEY— Prompt mode uses AI SDK with OpenRouter. Configure the key with , PROJECTS_OPENROUTER_API_KEY, or the local secrets vault. The default model is openai/gpt-4o-mini.OPENROUTER_MODELPROJECTS_AGENT_CONTEXT_LIMITPROJECTS_AGENT_MODELPROJECTS_DATABASE_URL— the value. remains available as a local/self-hostedPROJECTS_JSONPROJECTS_OPENROUTER_API_KEY— Prompt mode uses AI SDK with OpenRouter. Configure the key with OPENROUTER_API_KEY, , or the local secrets vault. The default model is openai/gpt-4o-mini.PROJECTS_OPENROUTER_SECRET_KEYPROJECTS_STORAGE_MODEPROJECTS_USE_SECRETSSHELLWORKSPACES_AGENT_CONTEXT_LIMITWORKSPACES_AGENT_MOCKWORKSPACES_AGENT_MODELWORKSPACES_JSONWORKSPACES_OPENROUTER_API_KEYWORKSPACES_OPENROUTER_SECRET_KEYWORKSPACES_USE_SECRETS[](https://m8ven.ai/mcp/hasna-projects-1e9aqy)