maplibre-mcp
NPM · MAPLIBRE-MCP · SCANNED OCT 4
An MCP server that lets AI agents check, render and show MapLibre styles
Available components
How this component scores in each security and reliability category. Every signal is checked automatically from public evidence about the published package, including repeated runs of it in an isolated sandbox, and we only credit what we can confirm. How we score → Why this is hard to score →
Supply Chain Security99
- No malware found by supply-chain analysis.Pass
- No known CVEs affecting this package version or its production dependencies.Pass
- No install/post-install scripts declared.Pass
- 13 of 46 dependencies flagged as unhealthy. View diagnostics → Partial
Provenance & Transparency100
- Source repository is publicly reachable at the declared URL. View diagnostics → Pass
- Cryptographically verified build provenance (signed, bound to birkskyum/maplibre-mcp). View diagnostics → Pass
- Clear OSI-approved license (MIT).Pass
- Actively maintained (last published 0 days ago).Pass
- Publishes a security disclosure policy (SECURITY.md).Pass
Schema Quality & AI Usability0
- Schema quality not yet verified: we do not have a sandbox capture of the MCP schema this version of the package serves yet.Unverified
Stability & Change Management0
- Stability not yet verified: we do not have a sandbox capture of the MCP schema this version of the package serves yet.Unverified
Tool Coverage0
- Tool coverage not yet verified: we do not have a sandbox capture of the tool definitions this version of the package serves yet.Unverified
Tool Safety0
- Tool safety not yet verified: we do not have a sandbox capture of the tool definitions this version of the package serves yet.Unverified
Capabilities0
- Protocol version not yet verified: we do not have a sandbox capture of the MCP handshake this version of the package performs yet.Unverified
Unverified: 5 categories
Categories scored 0 because our sandbox has not given us the schema these checks need to read. That is a gap on our side rather than a finding about the package, and we only credit what we can confirm, so the score stands at 0 until the capture succeeds. We are working through the fleet, so this normally clears without any action from you. How we score packages →
How do I install the maplibre-mcp server?
maplibre-mcp runs locally as an npm package, launched with npx -y maplibre-mcp. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.
npm · maplibre-mcp
claude mcp add birkskyum-maplibre-mcp -- npx -y maplibre-mcp
{
"mcpServers": {
"birkskyum-maplibre-mcp": {
"command": "npx",
"args": [
"-y",
"maplibre-mcp"
]
}
}
} {
"servers": {
"birkskyum-maplibre-mcp": {
"command": "npx",
"args": [
"-y",
"maplibre-mcp"
]
}
}
} codex mcp add birkskyum-maplibre-mcp -- npx -y maplibre-mcp
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"birkskyum-maplibre-mcp": {
"type": "local",
"command": [
"npx",
"-y",
"maplibre-mcp"
],
"enabled": true
}
}
} openclaw mcp add birkskyum-maplibre-mcp --command npx --arg -y --arg maplibre-mcp
mcp_servers:
birkskyum-maplibre-mcp:
command: "npx"
args: ["-y", "maplibre-mcp"] {
"McpServers": {
"birkskyum-maplibre-mcp": {
"Transport": "stdio",
"Command": "npx",
"Arguments": [
"-y",
"maplibre-mcp"
]
}
}
} assistant mcp add birkskyum-maplibre-mcp -t stdio -c npx -a -y maplibre-mcp
{
"mcpServers": {
"birkskyum-maplibre-mcp": {
"command": "npx",
"args": [
"-y",
"maplibre-mcp"
]
}
}
} Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 4 Oct 26 −28
- Stability: 0.23 → unverified ▼ security
- Tool safety: pass → unverified ▼ security
- Capabilities: pass → unverified ▼ functional
- Schema quality: 0 → unverified ▼ functional
- Tool coverage: 100 → unverified ▼ functional
- Package version: 0.8.1 → 0.9.1 functional
- 3 Oct 26 +1
- Stability: 0.20 → unverified ▼ security
- Tool safety: pass → unverified ▼ security
- Malware scan: pass → unverified ▼ security
- Capabilities: pass → unverified ▼ functional
- Schema quality: 0 → unverified ▼ functional
- Tool coverage: 100 → unverified ▼ functional
- Package version: 0.7.1 → 0.8.1 functional
- Package version: 0.7.1 → 0.8.0 functional
- 1 Oct 26 +16
- Malware scan: unverified → pass ▲ security
- 30 Sept 26 0
- Malware scan: unverified → pass ▲ security
- Package version: 0.7.0 → 0.7.1 functional
- 29 Sept 26 −14
- Malware scan: pass → unverified ▼ security
- Schema quality: 2025 → 2416 ▼ functional
- Package version: 0.6.1 → 0.7.0 functional
- 28 Sept 26 0
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- 27 Sept 26 +1
- Stability: unverified → 0.03 ▲ functional
- Package version: 0.6.0 → 0.6.1 functional
- 26 Sept 26 74
First indexed and scored.
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 4 Oct 2026 · Analysed npm/maplibre-mcp@0.9.1
Provenance Verified
A signed build attestation was found and verified, binding this exact artifact to the source repository it claims to come from.
| Result | Verified |
|---|---|
| Ecosystem | npm |
| Reason | Verified |
| Discovered via | Registry attestation endpoint |
| Source repo | birkskyum/maplibre-mcp |
| Certificate issuer | https://token.actions.githubusercontent.com |
| Certificate SAN | https://github.com/birkskyum/maplibre-mcp/.github/workflows/publish.yml@refs/tags/v0.9.1 |
| Rekor log index | 3078660486 |
| Predicate type | SLSA build provenance https://slsa.dev/provenance/v1 |
| Subject digest | sha512:45867b0d59840139b1fe855c4305919a1bdda6cb0c9a32044e9bdae39492282212255890ab57b2de1bfa10bcbabf95709fd46fb4771f1bb70e552f10c |
Background: How many MCP packages publish verified provenance →
Dependencies 46 packages
| Packages resolved | 46 |
|---|---|
| Stale | 12 |
| No linked repository | 1 |
| Tree resolution | Complete |
Background: SBOMs and build attestations, explained →
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
compare_styles Compare styles ~226
Renders two versions of a MapLibre style at the same camera, and returns one image with the style before, the style after, and their differences in red. Use it after changing a style, to check that the change did what you meant and nothing else, at a few places and zoom levels. Pass each style as an object, a URL or a file path.
| Name | Type | Req | Description |
|---|---|---|---|
| after | object | yes | The style after the change. |
| bearing | number | – | The compass direction at the top of the map, in degrees. |
| before | object | yes | The style before the change. |
| bounds | array | – | [west, south, east, north] to fit the map to, instead of center and zoom. |
| center | array | – | [longitude, latitude] of the map center. |
| height | integer | – | – |
| pitch | number | – | Tilt in degrees from looking straight down. |
| renderer | string | – | The MapLibre renderer to draw both with. |
| width | integer | – | Width of each of the three images. |
| zoom | number | – | – |
No output schema declared.
No examples provided.
debug_layers Debug layers ~269
Says for each layer of a style whether it draws anything at a place and zoom, and when it draws nothing, why: it is hidden or outside its zoom range, the tile lacks its source layer, its filter matches no feature (listed with the values the tile has), a fill layer gets no polygons, its opacity, width or size is 0 or its color transparent, or icons are missing from the sprite. It also notes text that GL JS draws with local fonts and MapLibre Native leaves out, because the style has no glyphs URL or the glyph server lacks its font stack. It reads the vector tiles and GeoJSON data at the place. Use it when a layer draws nothing. Pass the style as an object, a URL or a file path.
| Name | Type | Req | Description |
|---|---|---|---|
| center | array | – | [longitude, latitude] of the place. Defaults to the center of the style. |
| layers | array | – | Only check these layers, by id. Defaults to every layer. |
| path | string | – | Path to a style JSON file, relative to the directory the server runs in. |
| style | object | – | The style as a JSON object. |
| url | string | – | URL of a style JSON document. |
| zoom | number | – | Zoom level. Defaults to the zoom of the style. |
No output schema declared.
No examples provided.
describe_gl_js_api Describe GL JS API ~212
Looks up a class, method, option, event or function of MapLibre GL JS, like "Map", "Map#flyTo", "MapOptions.maxPitch", "click" or "addProtocol", in the type definitions that GL JS ships. Returns its signature, documentation, parameters, default and examples, and for a class or an options type, its members. Answers for the GL JS version this server renders with, or for another version, like the one a project uses. Check here before using a method or option you are not sure exists in MapLibre, since Mapbox GL JS has some that MapLibre GL JS does not.
| Name | Type | Req | Description |
|---|---|---|---|
| name | string | yes | The name to look up, like "Map#flyTo", "flyTo" or "MapOptions". |
| version | string | – | A GL JS version or range, like "5.6.0" or "5", whose type definitions are fetched from jsDelivr. Defaults to the version this server renders with. |
No output schema declared.
No examples provided.
describe_sources Describe sources ~153
Reads the metadata of every source in a MapLibre style (TileJSON, PMTiles headers and GeoJSON data) and lists the source layers and fields each one provides. Then checks that every layer uses a source, source layer and fields that exist. Use it before writing layers against data you do not know. inspect_tile shows the values the fields take, and debug_layers says what each layer draws at a place. Pass the style as an object, a URL or a file path.
| Name | Type | Req | Description |
|---|---|---|---|
| path | string | – | Path to a style JSON file, relative to the directory the server runs in. |
| style | object | – | The style as a JSON object. |
| url | string | – | URL of a style JSON document. |
No output schema declared.
No examples provided.
describe_style_spec Describe style spec ~132
Looks up a name in the MapLibre Style Specification: a layer type (like "fill"), a layer or root property (like "fill-extrusion-height" or "sky"), a source type (like "geojson") or an expression operator (like "interpolate"). Returns its documentation, type, default, allowed values, expression support and which MapLibre GL JS and MapLibre Native versions support it. Check here before using a property you are not sure exists in MapLibre, since Mapbox GL JS has properties that MapLibre does not.
| Name | Type | Req | Description |
|---|---|---|---|
| name | string | yes | The name to look up. |
No output schema declared.
No examples provided.
find_basemaps Find basemaps ~159
Lists the basemaps in Make with MapLibre (makewithmaplibre.com): ready-made MapLibre styles from OpenFreeMap, Protomaps, MapTiler, Stadia Maps, VersaTiles and others, with their style URLs and whether they need an API key, plus raster and elevation tiles. Pass a style URL as url to render_style or compare_styles to see it, or start a style from it.
| Name | Type | Req | Description |
|---|---|---|---|
| free | boolean | – | true for only the basemaps that need no API key, false for only those that do. |
| query | string | – | Words that each basemap has to contain, in its name, provider or description, like "dark", "satellite" or "openfreemap". |
No output schema declared.
No examples provided.
format_style Format style ~103
Formats a MapLibre style with the keys in the order of the style specification and two space indentation, the same way as gl-style-format. A style given as a file path is formatted in place, otherwise the formatted JSON is returned.
| Name | Type | Req | Description |
|---|---|---|---|
| path | string | – | Path to a style JSON file, relative to the directory the server runs in. |
| style | object | – | The style as a JSON object. |
| url | string | – | URL of a style JSON document. |
No output schema declared.
No examples provided.
inspect_tile Inspect tile ~321
Reads the vector tile of a source at a place and zoom, and lists each source layer with its number of features, their geometry types, the values of each field and a few example features. It also gives the zoom range of the source and the source layers its metadata lists that the tile lacks. Use it to learn the values data really has, like the classes of roads, before writing filters and expressions. The source is either the id of a source in the style you pass, or the URL of a vector source: a TileJSON URL like a Martin source, a PMTiles archive, or a tile URL with {z}, {x} and {y}. Reads MVT and MLT tiles.
| Name | Type | Req | Description |
|---|---|---|---|
| center | array | – | [longitude, latitude] of the place to read. Defaults to the center of the style or the source. |
| examples | integer | – | How many example features to show for each source layer. Defaults to 3. |
| layer | string | – | Only list this source layer. |
| path | string | – | Path to a style JSON file, relative to the directory the server runs in. |
| source | string | – | The id of a source in the style, or the URL of a vector source. Defaults to the only vector source of the style. |
| style | object | – | The style as a JSON object. |
| url | string | – | URL of a style JSON document. |
| zoom | number | – | Zoom level of the tile. Defaults to the zoom of the style, or the highest zoom of the source. |
No output schema declared.
No examples provided.
migrate_style Migrate style ~114
Migrates an old style to the current MapLibre Style Specification, the same way as gl-style-migrate: version 7 styles become version 8, and legacy functions and filters become expressions. A style given as a file path is migrated in place, otherwise the migrated JSON is returned.
| Name | Type | Req | Description |
|---|---|---|---|
| path | string | – | Path to a style JSON file, relative to the directory the server runs in. |
| style | object | – | The style as a JSON object. |
| url | string | – | URL of a style JSON document. |
No output schema declared.
No examples provided.
render_style Render style ~247
Renders a MapLibre style to a PNG image, so you can see what the style looks like, for example after changing it. Also reports what the renderer noticed, such as style errors, failed requests, and fonts and icons that are missing. Pass the style as an object, a URL or a file path. Without center, zoom or bounds, the camera stored in the style is used.
| Name | Type | Req | Description |
|---|---|---|---|
| bearing | number | – | The compass direction at the top of the map, in degrees. |
| bounds | array | – | [west, south, east, north] to fit the map to, instead of center and zoom. |
| center | array | – | [longitude, latitude] of the map center. |
| height | integer | – | – |
| path | string | – | Path to a style JSON file, relative to the directory the server runs in. |
| pitch | number | – | Tilt in degrees from looking straight down. |
| renderer | string | – | The MapLibre renderer to draw with. |
| style | object | – | The style as a JSON object. |
| url | string | – | URL of a style JSON document. |
| width | integer | – | – |
| zoom | number | – | – |
No output schema declared.
No examples provided.
search_ecosystem Search the MapLibre ecosystem ~278
Searches Make with MapLibre (makewithmaplibre.com), a curated directory of what works with MapLibre: SDKs and framework bindings, GL JS plugins, routing and navigation, geocoding, styling and tiling tools, AI tools (MCP servers and agent skills), hosted APIs, the products built with MapLibre, and consultancies. Use it to pick an SDK for a platform or framework, find a plugin or a service, find a platform or data source to build on, or see which products use a library. Each result has its links and a page with more. Follow up with find_basemaps for style URLs to render.
| Name | Type | Req | Description |
|---|---|---|---|
| kind | string | – | Only entries of this kind. ai is MCP servers and agent skills for MapLibre. plugin includes the routing and geocoding controls for MapLibre GL JS. routing, geocoding, styling and tiling include the h… |
| limit | integer | – | The most results to return. |
| platform | string | – | Only entries that run on this platform. Hosted services and consultancies have no platform and are kept. |
| query | string | – | Words that each result has to contain, like "react", "draw" or "routing". Leave it out to list the most prominent entries. |
No output schema declared.
No examples provided.
show_map Show map ~143
Shows the user an interactive MapLibre map in the chat, with GeoJSON layers and markers on an OpenFreeMap basemap. The user sees the map and you do not; to look at a map yourself, use render_style. Without center and zoom, the map fits the layers and markers. Needs a client that supports MCP Apps.
| Name | Type | Req | Description |
|---|---|---|---|
| basemap | string | – | The OpenFreeMap style to draw on. |
| bearing | number | – | – |
| center | array | – | [longitude, latitude] of the map center. |
| layers | array | – | – |
| markers | array | – | – |
| pitch | number | – | – |
| zoom | number | – | – |
No output schema declared.
No examples provided.
validate_style Validate style ~104
Checks a MapLibre style against the MapLibre Style Specification and lists every problem, each with the path to the property it is about. Run it after editing a style. Pass the style as an object, a URL or a file path.
| Name | Type | Req | Description |
|---|---|---|---|
| path | string | – | Path to a style JSON file, relative to the directory the server runs in. |
| style | object | – | The style as a JSON object. |
| url | string | – | URL of a style JSON document. |
| Name | Type | Req | Description |
|---|---|---|---|
| problems | array | yes | – |
No examples provided.
What is the maplibre-mcp server?
maplibre-mcp is listed in the public MCP registry as io.github.birkskyum/maplibre-mcp. An MCP server that lets AI agents check, render and show MapLibre styles. This page covers its npm package (maplibre-mcp).
Is the maplibre-mcp server safe to use?
maplibre-mcp scores 50 out of 100 on VerifyMCP. We found no known CVEs affecting it as of 4 October 2026. It declares no install or post-install scripts. Its build provenance is signed and verified. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the maplibre-mcp server expose?
maplibre-mcp exposes 13 tools: validate_style, describe_style_spec, describe_sources, inspect_tile, debug_layers, and 8 more. Their descriptions and schemas cost roughly 2,461 tokens of context every time the server is loaded.
Is the maplibre-mcp server still maintained?
maplibre-mcp is still listed as active in the MCP registry. We last reached this channel on 4 October 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.
What licence is the maplibre-mcp server under?
maplibre-mcp declares the MIT licence, which is OSI-approved. That covers the source only, and says nothing about the cost of any service it calls.