Tamperlens MCP Server
by haruodevcom.tamperlens/mcpv1.36.0
Document forensics via the Tamperlens API: detect post-creation edits, failed redactions and embedded prompt injection in PDFs, Office files and images.
context tax
queued
security
queued
cold start
queued
freshness
Maintained46d ago
Install Tamperlens MCP server
Install in Claude Code
claude mcp add tamperlens -e TAMPERLENS_API_KEY='<tamperlens-api-key>' -- npx -y tamperlens-mcpInstall in Cursor
{
"mcpServers": {
"tamperlens": {
"command": "npx",
"args": [
"-y",
"tamperlens-mcp"
],
"env": {
"TAMPERLENS_API_KEY": "<tamperlens-api-key>"
}
}
}
}Add to ~/.cursor/mcp.json (global) or .cursor/mcp.json (project).
Install in Claude Desktop
{
"mcpServers": {
"tamperlens": {
"command": "npx",
"args": [
"-y",
"tamperlens-mcp"
],
"env": {
"TAMPERLENS_API_KEY": "<tamperlens-api-key>"
}
}
}
}Settings → Developer → Edit Config (claude_desktop_config.json), then restart.
Install in VS Code
{
"servers": {
"tamperlens": {
"type": "stdio",
"command": "npx",
"args": [
"-y",
"tamperlens-mcp"
],
"env": {
"TAMPERLENS_API_KEY": "<tamperlens-api-key>"
}
}
}
}Add to .vscode/mcp.json in your workspace.
Install in Windsurf
{
"mcpServers": {
"tamperlens": {
"command": "npx",
"args": [
"-y",
"tamperlens-mcp"
],
"env": {
"TAMPERLENS_API_KEY": "<tamperlens-api-key>"
}
}
}
}Add to ~/.codeium/windsurf/mcp_config.json.
Configuration
| Variable | Required | Secret | Description |
|---|---|---|---|
| TAMPERLENS_API_KEY | — | yes | Optional. Without it the anonymous allowance applies (10 documents/hour); a free key from tamperlens.com/account raises it. compare_documents requires a key. |
| TAMPERLENS_BASE_URL | — | — | Optional. Defaults to the public deployment at https://tamperlens.com. |
| TAMPERLENS_ALLOWED_DIRS | — | — | Optional. Colon- or comma-separated absolute directories to confine local file reads to. Unset means any absolute path the process can read (the default). Set it to an intake directory so a path argument cannot reach secrets like ~/.ssh or a stray .env; symlinks out of a root are resolved and refused. |
Freshness
Maintained — last maintenance signal 46d ago. The newest of the signals below sets the band.
Last commit (default branch)
2026-08-25 · 46d ago · GitHub
Latest release
2026-08-24 · 47d ago · GitHub · v1.36.0
Package published
no data · npm/PyPI
Registry entry updated
2026-08-25 · 46d ago · official registry · v1.36.0
FAQ
›How do I install the Tamperlens MCP server in Claude Code?
Run: claude mcp add tamperlens -e TAMPERLENS_API_KEY='<tamperlens-api-key>' -- npx -y tamperlens-mcp. For Cursor, VS Code, Claude Desktop and Windsurf, use the install tabs above.
›Does Tamperlens require an API key?
Yes. It expects TAMPERLENS_API_KEY, of which 1 is a secret.
›Can I use Tamperlens as a remote (hosted) MCP server?
No hosted endpoint is published; it runs locally over stdio.
›Is Tamperlens in the official MCP registry?
Yes, as com.tamperlens/mcp.
Alternatives to Tamperlens
Other security MCP servers.