SapB1McpServer (YarinYang-Soetek/SapB1McpServer) is an MCP server listed on the M8ven Trust Index. It scores 74 out of 100, grade C. It declares 29 tools. No publisher has claimed this listing.
Emerging. No concerning findings. Grades remain capped until the project builds reputation through adoption. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.
How we verified
Verified is a snapshot. Live keeps it current, and builds your track record.
⚡ Connect GitHub → continuous verification on every pushwhy connect →Who stands behind it
YarinYang-Soetek
Source: github_repo_search
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access →
Install from
The grade above is for the source repository. Registries can serve a different version, so we mark the ones we were not able to read.
These names and descriptions are the publisher's own, read from the source code. We print them as written. Our assessment is the findings above, not this list.
sap_b1_list_environments列出目前所有已配置的 SAP B1 / VM 資料庫連線環境清單與當前作用中環境
sap_b1_set_active_env切換作用中的預設 SAP B1 連線環境
sap_b1_list_databases列出當前 SQL Server 實例上的所有在線資料庫,並自動進行指紋特徵辨識 (SAP B1 帳套庫 vs 第三方/中介庫如 POS/MES/EDI/Queue)
azure_devops_get_config檢視當前 Azure DevOps 連線配置 (組織名稱、預設專案與 Token 遮罩狀態)
azure_devops_set_config動態更新 Azure DevOps 連線配置 (組織名稱、PAT Token 或預設專案名稱)
azure_devops_list_projects列出目前 Azure DevOps 組織帳號下所有具有權限的專案 (Projects) 清單
azure_devops_list_repos列出指定 Azure DevOps 專案下的所有 Git 儲存庫 (Repositories)
azure_devops_list_files瀏覽指定 Git 儲存庫特定路徑下的目錄與檔案清單
azure_devops_get_file讀取 Azure DevOps 上指定儲存庫與路徑的原始碼檔案內容 (支援 C#, SQL, JS, XML 等)
azure_devops_get_symbols【AST 語法樹符號檢索】解析指定 C# (.cs) 或 SQL (.sql) 檔案中的所有類別、方法、預存程序、介面或屬性清單與行號
azure_devops_get_symbol_content【精準方法/SP 程式碼擷取】僅擷取特定類別、方法或預存程序的完整區塊 (含 docstring/註解),避免讀取整個大檔案造成 Token 爆炸
azure_devops_diff_files【跨專案/跨分支差異比對】比對兩個不同專案或儲存庫中檔案的語意符號差異 (新增/刪除的方法或預存程序)
azure_devops_get_work_item【需求/Bug 詳情查詢】根據 Work Item ID 讀取需求單、Bug、Task 的詳細描述、Acceptance Criteria、負責人與目前狀態
azure_devops_search_work_items【需求/Bug 關鍵字檢索】以關鍵字或狀態搜尋指定專案下的 Work Items (User Story, Bug, Task, Feature)
azure_devops_list_pull_requests查詢指定專案儲存庫的 Pull Requests 清單 (支援 active, completed, abandoned, all)
azure_devops_create_branch【防禦性建立分支】在指定儲存庫建立新開發/修復分支 (強制命名規範為 ai-patch/*, fix/* 或 feat/*)
azure_devops_create_pull_request【防禦性發起 PR】建立 Pull Request (預設強制以 Draft 草稿形式建立,供人工審查)
azure_devops_search_code在 Azure DevOps 全域或指定專案中快速搜尋代碼關鍵字、預存程序名稱 (例如 LES_SP_CheckApprovalPO) 或函式名稱
azure_devops_list_commits查詢指定儲存庫的最近 Git 提交歷史紀錄 (Commits)
sap_b1_get_document【快捷單據提取】輸入單號與單據類型,自動擷取整張單據的表頭 (Header)、明細列 (Lines) 與自訂欄位 (UDF)
sap_b1_get_doc_flow【單據生命週期/上下游追蹤】根據單號與單據類型,自動追蹤其來源單據 (BaseEntry) 與下游目標單據 (如 訂單 -> 交貨單 -> 發票)
sap_b1_query_sql執行 SAP Business One 安全唯讀 SQL 查詢 (僅限 SELECT / WITH,預設上限 500 筆,自動加 NOLOCK 與效能統計)
sap_b1_validate_sql驗證複雜 SQL 是否合法,使用 SET NOEXEC ON 乾跑檢驗,不影響真實資料
sap_b1_get_table_schema查詢指定資料表 (如 OCRD, ORDR, RDR1 或自訂表) 的欄位名稱、型別、長度與 Null 限制
sap_b1_get_udf查詢指定 SAP 表單上的所有 UDF 自訂欄位 (從 CUFD 抓取欄位並自動關聯 UFD1 下拉選單有效值對照)
sap_b1_get_udf_dictionary【SA 專用業務欄位字典】全面輸出 SAP 表單的 UDF 自訂欄位名稱、中英文業務描述、型別與合法有效值 (Valid Values) 字典
sap_b1_get_sp_definition讀取指定 Stored Procedure 的完整 SQL 原始碼定義 (包含 SBO_SP_TransactionNotification 或自訂 SP)
sap_b1_get_sp_parameters查詢指定 Stored Procedure 的所有輸入/輸出參數清單、資料型別與長度
sap_b1_trace_sp_dependencies【SP 巢狀依賴與呼叫鏈追蹤】分析指定 Stored Procedure 呼叫的所有子 SP、參照之資料表 (Tables) 與視圖 (Views)
Tool annotations
No tools have read-only/destructive annotations
Add readOnlyHint or destructiveHint annotations to every tool so hosts can warn users before invoking.
All four hints declared on every tool
29/29 tools missing one or more hints — sap_b1_list_environments (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); sap_b1_set_active_env (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); sap_b1_list_databases (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint), +26 more. OpenAI's directory rejects tools where any of the four hints are missing or non-boolean.
For every tool, set all four hints (readOnlyHint, destructiveHint, idempotentHint, openWorldHint) to explicit true/false values that match the handler’s actual behaviour.
License file
No license file
Add a LICENSE file (MIT, Apache-2.0, etc.).
Tests exist
No test files found
Add tests that exercise each declared tool.
Shell command execution
1 call in production code run through a shell (src/setup.js:19)
Prefer library functions over shell-outs. If you must shell out, ensure all inputs are properly escaped.
Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.
[](https://m8ven.ai/mcp/yarinyang-soetek/sapb1mcpserver)?variant=verified to the badge URL.Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.
https://m8ven.ai/api/mcp/tool-check