Skip to content
mcp/skillhub

Zipnative MCP Server

by nizokaio.github.Nizoka/zipnative-mcpv1.0.0

ZIP MCP server: create, inspect, verify, extract securely, modify without recompression. 13 tools

0Node.jsstdioofficial registry

context tax

queued

security

queued

cold start

queued

freshness

Maintained32d ago

Install Zipnative MCP server

Install in Claude Code

claude mcp add zipnative -e ZIPNATIVE_MCP_HTTP_TOKEN='<zipnative-mcp-http-token>' -- npx -y zipnative-mcp

Configuration

VariableRequiredSecretDescription
ZIPNATIVE_MCP_OUTPUT_DIR——Absolute path of the one sandbox directory: zipPath / sourcePath inputs are read from it and outputMode='file' / outputDir outputs are written under it (never overwritten; the real path of every file read and of every parent written must stay inside — a planted symlink or junction is SECURITY_VIOLATION). Unset: every tool works on base64 only (no file I/O beyond the opt-in cache).
ZIPNATIVE_MCP_CACHE_DIR——Opt-in content-addressed response cache directory (SHA-256 keyed, 1h TTL, 256 MiB LRU, plaintext at rest). Never caches zipPath / sourcePath inputs, file output, defaultDate='now', parallel, describe_engine or draft_governance_issue.
ZIPNATIVE_MCP_PORT——Serve Streamable HTTP on this loopback port (POST /mcp) instead of stdio (MCP 2026-07-28, stateless, legacy fallback). Unauthenticated unless ZIPNATIVE_MCP_HTTP_TOKEN is set.
ZIPNATIVE_MCP_HTTP_TOKEN—yesOpt-in bearer token for the HTTP transport (>= 16 chars, no whitespace; a weaker value refuses to start). When set, /mcp requires 'Authorization: Bearer <token>' or answers 401. Compared constant-time, never logged.
ZIPNATIVE_MCP_MAX_UNCOMPRESSED_BYTES——Operator ceiling for limits.maxEntryUncompressedSize and limits.maxTotalUncompressedSize in bytes (default 8589934592 = 8 GiB, the engine default). Integer >= 1024, read once at startup; an invalid value refuses to start. A per-call value above it is refused with LIMIT_CEILING_EXCEEDED.
ZIPNATIVE_MCP_MAX_ENTRIES——Operator ceiling for limits.maxEntries and scan_zip_forward maxEntries (default 100000, the engine default; the scanner's default budget of 10000 is clamped to it, only an explicit value above it is refused). Integer >= 1, read once at startup; an invalid value refuses to start.
ZIPNATIVE_MCP_WORKERS——Operator ceiling for create_zip parallel.workers (default 8; with no explicit workers the engine default max(1, min(cores - 1, 8)) applies, bounded by this ceiling; 0 disables worker threads and keeps compression on the calling thread). Integer >= 0, read once at startup; an invalid value refuses to start.

Freshness

Maintained — last maintenance signal 32d ago. The newest of the signals below sets the band.

  1. Last commit (default branch)

    2026-09-07 · 32d ago · GitHub

  2. Latest release

    2026-09-07 · 32d ago · GitHub · v1.0.0

  3. Package published

    no data · npm/PyPI

  4. Registry entry updated

    2026-09-07 · 32d ago · official registry · v1.0.0

FAQ

›How do I install the Zipnative MCP server in Claude Code?

Run: claude mcp add zipnative -e ZIPNATIVE_MCP_HTTP_TOKEN='<zipnative-mcp-http-token>' -- npx -y zipnative-mcp. For Cursor, VS Code, Claude Desktop and Windsurf, use the install tabs above.

›Does Zipnative require an API key?

Yes. It expects ZIPNATIVE_MCP_HTTP_TOKEN, of which 1 is a secret.

›Can I use Zipnative as a remote (hosted) MCP server?

No hosted endpoint is published; it runs locally over stdio.

›Is Zipnative in the official MCP registry?

Yes, as io.github.Nizoka/zipnative-mcp.