discord-mcp (scarecr0w12/discord-mcp) is an MCP server listed on the M8ven Trust Index. It scores 70 out of 100, grade C. It declares 76 tools. No publisher has claimed this listing.
MCP server with over 70 tools to manage and maintain an entire Discord server.
Caution. Specific findings reduced this grade. They are listed on the page. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.
How we verified
Verified is a snapshot. Live keeps it current, and builds your track record.
⚡ Connect GitHub → continuous verification on every pushwhy connect →Who stands behind it
scarecr0w12
Source: Glama
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access →
Install from
The grade above is for the source repository. Registries can serve a different version, so we mark the ones we were not able to read.
These names and descriptions are the publisher's own, read from the source code. We print them as written. Our assessment is the findings above, not this list.
get_audit_logsGet audit logs from a server
list_audit_log_typesList all available audit log action types
list_automod_rulesList all auto-moderation rules in a server
get_automod_ruleGet details of a specific auto-moderation rule
delete_automod_ruleDelete an auto-moderation rule
toggle_automod_ruleEnable or disable an auto-moderation rule
list_channelsList all channels in a Discord server
get_channel_infoGet detailed information about a specific channel
create_channelCreate a new channel in a Discord server
delete_channelDelete a channel from a Discord server
modify_channelModify channel settings (name, topic, permissions, position, etc.)
list_emojisList all custom emojis in a server
create_emojiCreate a custom emoji in a server
delete_emojiDelete a custom emoji from a server
modify_emojiModify a custom emoji in a server
list_stickersList all custom stickers in a server
create_stickerCreate a custom sticker in a server
delete_stickerDelete a custom sticker from a server
modify_stickerModify a custom sticker in a server
list_eventsList all scheduled events in a server
get_event_infoGet detailed information about a scheduled event
create_eventCreate a scheduled event in a server
modify_eventModify a scheduled event
delete_eventDelete a scheduled event
get_event_subscribersGet users subscribed to a scheduled event
list_invitesList all invites in a server
get_invite_infoGet information about a specific invite
create_inviteCreate an invite for a channel
delete_inviteDelete an invite
list_membersList members in a Discord server (fetches up to 1000 members)
get_member_infoGet detailed information about a specific member
modify_memberModify member properties (nickname, roles, timeout, etc.)
kick_memberKick a member from the server
ban_memberBan a member from the server
unban_memberUnban a user from the server
list_bansList all banned users in a server
send_messageSend a message to a channel
get_messagesGet messages from a channel
edit_messageEdit a message sent by the bot
delete_messageDelete a message from a channel
bulk_delete_messagesBulk delete messages from a channel (up to 100, messages must be < 14 days old)
pin_messagePin a message in a channel
unpin_messageUnpin a message in a channel
get_pinned_messagesGet all pinned messages in a channel
add_reactionAdd a reaction to a message
remove_reactionsRemove reactions from a message
get_channel_permissionsGet all permission overwrites for a channel
set_channel_permissionSet permission overwrite for a role or member on a channel
delete_channel_permissionDelete a permission overwrite for a role or member on a channel
list_permissionsList all available Discord permission names that can be used for roles and channel overwrites
sync_channel_permissionsSync a channel's permissions with its parent category
list_rolesList all roles in a Discord server
get_role_infoGet detailed information about a specific role
create_roleCreate a new role in a Discord server
delete_roleDelete a role from a Discord server
modify_roleModify role properties (name, color, permissions, position, etc.)
assign_roleAssign a role to a member
remove_roleRemove a role from a member
list_serversList all Discord servers (guilds) the bot has access to
get_server_infoGet detailed information about a specific Discord server
modify_serverModify server settings (requires appropriate permissions)
list_threadsList all threads in a channel
create_threadCreate a new thread
create_forum_postCreate a new post in a forum channel
modify_threadModify a thread
delete_threadDelete a thread
join_threadMake the bot join a thread
leave_threadMake the bot leave a thread
add_thread_memberAdd a member to a thread
remove_thread_memberRemove a member from a thread
list_channel_webhooksList all webhooks in a channel
list_guild_webhooksList all webhooks in a server
create_webhookCreate a webhook in a channel
delete_webhookDelete a webhook
modify_webhookModify a webhook
send_webhook_messageSend a message using a webhook
Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.
@modelcontextprotocol/sdk has cross-client data leak via shared server/transport instance reuse
Anthropic's MCP TypeScript SDK has a ReDoS vulnerability
DISCORD_BOT_TOKENyour_bot_token_hereMCP_TRANSPORTTransport mode (stdio or http) httpPORTTool annotations
No tools have read-only/destructive annotations
Add readOnlyHint or destructiveHint annotations to every tool so hosts can warn users before invoking.
All four hints declared on every tool
76/76 tools missing one or more hints — get_audit_logs (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); list_audit_log_types (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); list_automod_rules (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint), +73 more. OpenAI's directory rejects tools where any of the four hints are missing or non-boolean.
For every tool, set all four hints (readOnlyHint, destructiveHint, idempotentHint, openWorldHint) to explicit true/false values that match the handler’s actual behaviour.
Tool inputs are validated
73/76 tool handlers declare input schemas (96%)
Declare an inputSchema with zod/joi/yup on every tool definition.
Tool handlers catch errors
Only 1/76 tool handlers wrap calls in try/catch (1%)
Wrap each tool handler body in try/catch and return a structured error response.
Tests exist
No test files found
Add tests that exercise each declared tool.
Production dependencies are patched
0 critical, 2 high severity in production deps — @modelcontextprotocol/sdk@1.25.1 (high), @modelcontextprotocol/sdk@1.25.1 (high)
Run npm audit fix, or upgrade the affected packages to a non-vulnerable version.
Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.
[](https://m8ven.ai/mcp/scarecr0w12/discord-mcp)?variant=verified from the URL.Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.
https://m8ven.ai/api/mcp/tool-check