About this integration
MCP server for fetching URLs, safe against SSRF, DNS rebinding, and redirect-to-internal attacks.
- Transport
- stdio
- Authentication
- none
- Initial setup
- none
- Runtime
- unattended
- Evidence
- documented
- Version
- 0.1.3
- Package
- safe-fetch-mcp-server
- Last compatibility test
- Not independently tested
Connect your agent
safe-fetch-mcp-serverExisting identity and connection fields are preserved. Publisher documentation was reviewed without executing fetches or independently reproducing security claims. Returned web content remains untrusted data; optional SAFE_FETCH_ALLOW_LOCAL weakens private-network blocking and should be used only in trusted local development.
Capabilities: HTTP and HTTPS content fetching, HTML-to-Markdown conversion, Redirect and DNS-rebinding checks, Response-size and timeout enforcement
Connected profiles
Additional details
io.github.Sanoy24/safe-fetch
Source ↗ · Checked 2026-09-170.1.3
Source ↗ · Checked 2026-09-17CC0-1.0; package licenses are separate
Source ↗ · Checked 2026-09-17npm
Source ↗ · Checked 2026-09-17safe-fetch-mcp-server
Source ↗ · Checked 2026-09-190.1.3
Source ↗ · Checked 2026-09-19The package is safe-by-default in its documented local stdio mode and is spawned on demand through npx without a build step.
Source ↗ · Checked 2026-09-19The default local stdio configuration requires no credential or other configuration; optional HTTP mode and local-target overrides are separate deployment choices.
Source ↗ · Checked 2026-09-19The existing listing remains stdio and spawns npx -y safe-fetch-mcp-server; no remote MCP endpoint is introduced.
Source ↗ · Checked 2026-09-19Publisher documentation reviewed; package and integration endpoint not executed or independently security-audited.
Source ↗ · Checked 2026-09-19