zipnative MCP — ZIP creation, inspection, secure extraction & verification MCP Server
io.github.Nizoka/zipnative-mcp
What is the zipnative MCP — ZIP creation, inspection, secure extraction & verification MCP server?
ZIP MCP server: create, inspect, verify, extract securely, modify without recompression. 13 tools
How to install zipnative MCP — ZIP creation, inspection, secure extraction & verification
Copy-paste configuration for popular MCP clients.
ZIPNATIVE_MCP_OUTPUT_DIRAbsolute path of the one sandbox directory: zipPath / sourcePath inputs are read from it and outputMode='file' / outputDir outputs are written under it (never overwritten; the real path of every file read and of every parent written must stay inside — a planted symlink or junction is SECURITY_VIOLATION). Unset: every tool works on base64 only (no file I/O beyond the opt-in cache).
ZIPNATIVE_MCP_CACHE_DIROpt-in content-addressed response cache directory (SHA-256 keyed, 1h TTL, 256 MiB LRU, plaintext at rest). Never caches zipPath / sourcePath inputs, file output, defaultDate='now', parallel, describe_engine or draft_governance_issue.
ZIPNATIVE_MCP_PORTServe Streamable HTTP on this loopback port (POST /mcp) instead of stdio (MCP 2026-07-28, stateless, legacy fallback). Unauthenticated unless ZIPNATIVE_MCP_HTTP_TOKEN is set.
ZIPNATIVE_MCP_HTTP_TOKENsecretOpt-in bearer token for the HTTP transport (>= 16 chars, no whitespace; a weaker value refuses to start). When set, /mcp requires 'Authorization: Bearer <token>' or answers 401. Compared constant-time, never logged.
ZIPNATIVE_MCP_MAX_UNCOMPRESSED_BYTESOperator ceiling for limits.maxEntryUncompressedSize and limits.maxTotalUncompressedSize in bytes (default 8589934592 = 8 GiB, the engine default). Integer >= 1024, read once at startup; an invalid value refuses to start. A per-call value above it is refused with LIMIT_CEILING_EXCEEDED.
ZIPNATIVE_MCP_MAX_ENTRIESOperator ceiling for limits.maxEntries and scan_zip_forward maxEntries (default 100000, the engine default; the scanner's default budget of 10000 is clamped to it, only an explicit value above it is refused). Integer >= 1, read once at startup; an invalid value refuses to start.
ZIPNATIVE_MCP_WORKERSOperator ceiling for create_zip parallel.workers (default 8; with no explicit workers the engine default max(1, min(cores - 1, 8)) applies, bounded by this ceiling; 0 disables worker threads and keeps compression on the calling thread). Integer >= 0, read once at startup; an invalid value refuses to start.
Related MCP servers
PDF MCP: generate PDF/A & PDF/X-4, sign & verify PAdES (LTV), forms, merge, split, encrypt. 28 tools

io.github.NodeDex/nodedex
Your project's decision history for agents: decisions, dead-ends, constraints - queryable, local.
Blockchain JSON-RPC on 23 EVM chains for AI agents - free tier, API key, or x402 pay-per-call.

projectmind
Persistent project memory for AI coding agents: one compact digest instead of re-reading the repo.
Provenance and governance layer for AI-readable knowledge. NodeRail answers what AI should trust.

Business-registry data for agents: one-call Poland KYB verdict, UBO, insolvency, adverse media

