53
/ 100
1 month ago
npm

OfficeDev/microsoft-365-agents-toolkit✓ Official

MCP server for Microsoft 365 Agents Toolkit

OfficeDev/microsoft-365-agents-toolkit· npm: @microsoft/m365agentstoolkit-mcp· listed on npm
Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
⚠️
Known vulnerabilities in dependencies: 2 high
Affects packages this MCP installs at runtime. Upgrade or remove the affected dependency.
No credential exfiltration, no sensitive file access, no obfuscation
Static analysis found nothing flowing your secrets to unexpected places.
Open source with a license and README
Anyone can audit the code, the license is declared, and the publisher documents what it does.
🔐
You'll be asked for 5 credentials: AZURE_ACCOUNT_PASSWORD, AZURE_SERVICE_PRINCIPAL_SECRET, CLIENT_PASSWORD, GITHUB_TOKEN, M365_ACCOUNT_PASSWORD
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// known CVEs in dependencies2 high2 medium5 low

Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.

highpnpm@8.6.12GHSA-2phv-j68v-wwqx

pnpm vulnerable to Command Injection via environment variable substitution

highpnpm@8.6.12GHSA-7vhp-vf5g-r2fw

pnpm Has Lockfile Integrity Bypass that Allows Remote Dynamic Dependencies

mediumpnpm@8.6.12GHSA-v253-rj99-jwpq

pnpm has Path Traversal via arbitrary file permission modification

mediumpnpm@8.6.12GHSA-vm32-9rqf-rh3r

pnpm no-script global cache poisoning via overrides / `ignore-scripts` evasion

lowpnpm@8.6.12GHSA-6pfh-p556-v868

pnpm: Binary ZIP extraction allows arbitrary file write via path traversal (Zip Slip)

Depend on this server? Get alerted when its CVEs change.Watch this server free →
// required environment variables
This server reads these from process.env. You'll be asked to provide them before it can run.
configAGENT_BUILDDIRECTORY
configATK_CLI_SKILL
configAZURE_ACCOUNT_NAME
configAZURE_ACCOUNT_OBJECT_ID
🔐 secretAZURE_ACCOUNT_PASSWORD
configAZURE_SERVICE_PRINCIPAL_ID
🔐 secretAZURE_SERVICE_PRINCIPAL_SECRET
configAZURE_SUBSCRIPTION_ID
configAZURE_TENANT_ID
configBOT_TYPE
configBUILD_SOURCEBRANCHNAME
configBUILD_URL
configCLIENT_ID
🔐 secretCLIENT_PASSWORD
configCOMPARE_EXIT_CODE
configCOVERAGE_BASE_REF
configGITHUB_ACTIONS
configGITHUB_EVENT_PATH
configGITHUB_REPOSITORY
🔐 secretGITHUB_TOKEN
configJENKINS_URL
configM365_ACCOUNT_NAME
🔐 secretM365_ACCOUNT_PASSWORD
configM365_TENANT_ID
configPORT
configSIDELOADING_SERVICE_SCOPE
configTEAMSFX_CLI_BIN_NAME
configTEAMSFX_CONFIG_FILE_PATH
configTEAMS_APP_TENANT_ID
configTENANT_ID
configport
// full audit trail
The full breakdown of what we checked, the deductions that landed, the network hosts, the dependency advisories, and concrete fix guidance is available to verified publishers.
// improvement guidance — verified publishers only
We have 2 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/microsoft-m365agentstoolkit-mcp-1mejws)](https://m8ven.ai/mcp/microsoft-m365agentstoolkit-mcp-1mejws)
commit: cf95bb03a8031491b6a86a4820fa39760a4e813e
code hash: f6204d6e836d13c9f3f865f00d494cfc0628896a5b54a5eddf563a7f26c8d977
verified: 6/13/2026, 9:49:45 AM
view raw JSON →