MCP servers for CMS platforms, blogs, docs sites, publishing and structured content. Each entry is scanned with the deterministic Capability-Flow Trust Model — grades are computed, never self-reported.
Security scan results for the Nest MCP server.
Security scan results for the Docs MCP server.
Security scan results for the Clickup MCP server.
Security scan results for the Agentmemory MCP server.
Security scan results for the Actors MCP server.
Security scan results for the Goke MCP server.
Security scan results for the Docusaurus Plugin MCP server.
Security scan results for the Confluence MCP server.
Security scan results for the Notebooklm MCP server.
Security scan results for the Ios Simulator MCP server.
Security scan results for the Malicious MCP server.
Security scan results for the Tools MCP server.
Security scan results for the Knip MCP server.
Security scan results for the Intlayer MCP server.
Security scan results for the Client MCP server.
Security scan results for the Think Tool MCP server.
Security scan results for the Agents MCP server.
Security scan results for the Strapi MCP server.
Security scan results for the Developer MCP server.
Security scan results for the Html To Markdown MCP server.
Security scan results for the Mosadd MCP server.
Security scan results for the Cloudflare Image MCP server.
Security scan results for the Emcp Proxy MCP server.
Security scan results for the Dev MCP server.
The release notes are written, but they still have to land in three places: the company blog, the docs site and the changelog. Wired into a content management MCP server, an AI assistant makes those hops itself — the Model Context Protocol gives it structured access to your publishing stack, so it drafts the post in your CMS, updates the docs entry and queues the changelog without anyone shuttling text between browser tabs.
Most servers in this category wrap the APIs of headless and traditional CMS platforms — WordPress, Contentful, Sanity, Strapi, Ghost, Drupal — plus docs tools like Notion and git-backed static sites. Connected, an assistant can create and update entries against your content model, manage tags and media metadata, and move items from draft through review to publish. Teams often pair them with Developer Tools servers for docs-as-code pipelines and Marketing & Social servers to distribute what gets published; the full MCP Trust Registry covers both.
A CMS token is a key to your public voice, and that shapes the threat model here:
Every listing therefore carries an automated security verdict: the open-source mcptrustchecker engine reads the published npm or PyPI package, maps its capabilities into a blast-radius profile and grades evidence-backed findings into an A–F Trust Score — deterministic, no LLM in the loop, no paid placement. The scoring model is public, and the same checks run through the free scan API.
It can be, if scopes stay narrow: issue a token limited to draft creation, keep the actual publish step behind human approval, and review the server's Trust Score and findings first. Treat the score as an automated opinion about the published code, not a certification, and re-check it after the package updates.