Git MCP Server (Ray0907/git-mcp-server) is an MCP server listed on the M8ven Trust Index. It scores 72 out of 100, grade C. It declares 23 tools. No publisher has claimed this listing.
A modular MCP server that provides a unified interface for interacting with GitHub and GitLab, including enterprise and self-hosted instances. It enables comprehensive management of repositories, issues, pull requests, and CI/CD pipelines through natural language.
Caution. Specific findings reduced this grade. They are listed on the page. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.
How we verified
Verified is a snapshot. Live keeps it current, and builds your track record.
⚡ Connect GitHub → continuous verification on every pushwhy connect →Who stands behind it
Ray0907
Source: Glama
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access →
Install from
The grade above is for the source repository. Registries can serve a different version, so we mark the ones we were not able to read.
These names and descriptions are the publisher's own, read from the source code. We print them as written. Our assessment is the findings above, not this list.
create_issueCreate a new issue in a project
get_issueGet details of a specific issue in a project
list_issuesList issues in a project with optional filters
update_issueUpdate an existing issue in a project
create_pull_requestCreate a new pull request (merge request in GitLab)
get_pull_request_diffsGet the changes/diffs of a pull request to see what files were modified
get_pull_requestGet details of a pull request (merge request in GitLab)
list_pull_requestsList pull requests (merge requests in GitLab) with optional filters
merge_pull_requestMerge a pull request (merge request in GitLab)
create_commentAdd a comment to an issue or pull request
list_commentsList all comments on an issue or pull request
get_job_logGet the log/trace output of a CI/CD job
get_pipelineGet details of a specific CI/CD pipeline (workflow run in GitHub)
list_pipeline_jobsList all jobs in a CI/CD pipeline to see results
list_pipelinesList CI/CD pipelines (workflow runs in GitHub) with optional filters
create_branchCreate a new branch in the repository. Use this before making code changes to work on a separate branch.
get_file_contentsGet the contents of a file or directory from a repository
get_repository_treeList files and directories in a repository. Use recursive=true to get full tree.
list_branchesList branches in a repository. Optionally search for specific branches.
list_commitsList commits in a repository. Filter by branch, path, date range, or author.
push_filesPush multiple files to a repository in a single commit. Supports create, update, delete, and move actions.
search_codeSearch for code in a repository. Returns matching files and lines.
get_meGet information about the currently authenticated user.
Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.
@modelcontextprotocol/sdk has cross-client data leak via shared server/transport instance reuse
Anthropic's MCP TypeScript SDK has a ReDoS vulnerability
GIT_API_URL"": "https://github.your-company.com/api/v3",GIT_AUTH_COOKIE_PATHGIT_AUTH_TYPENo bearer Auth type: bearer or private-tokenGIT_OAUTH_CLIENT_IDGIT_OAUTH_TOKEN_PATHGIT_PROVIDER"": "github",GIT_READ_ONLY"": "true"GIT_TOKEN"": "ghp_xxxxxxxxxxxxxxxxxxxx"GIT_TOOL_FILTERGIT_USE_OAUTHLOG_LEVELNo info Log level: debug, info, warn, errorMCP_HOSTMCP_PORTMCP_TRANSPORTTool annotations
No tools have read-only/destructive annotations
Add readOnlyHint or destructiveHint annotations to every tool so hosts can warn users before invoking.
All four hints declared on every tool
23/23 tools missing one or more hints — create_issue (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); get_issue (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); list_issues (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint), +20 more. OpenAI's directory rejects tools where any of the four hints are missing or non-boolean.
For every tool, set all four hints (readOnlyHint, destructiveHint, idempotentHint, openWorldHint) to explicit true/false values that match the handler’s actual behaviour.
Production dependencies are patched
0 critical, 2 high severity in production deps — @modelcontextprotocol/sdk@1.24.3 (high), @modelcontextprotocol/sdk@1.24.3 (high)
Run npm audit fix, or upgrade the affected packages to a non-vulnerable version.
Domain consistency
npm scope @raytien doesn't match GitHub owner ray0907
Use the same org name across GitHub, npm, and your homepage so users can verify the publisher.
Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.
[](https://m8ven.ai/mcp/ray0907/git-mcp-server)?variant=verified from the URL.Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.
https://m8ven.ai/api/mcp/tool-check