com.mcparmory/contentful-management
OCI · GHCR.IO/MCPARMORY/CONTENTFUL-MANAGEMENT:1.0.3 · 2 COMPONENTS · SCANNED SEP 20
Create, update, and publish content across spaces and environments
How this component scores in each security and reliability category. Every signal is checked automatically from public evidence about the published package, including repeated runs of it in an isolated sandbox, and we only credit what we can confirm. How we score → Why this is hard to score →
Supply Chain Security0
- Malware scan not yet available for this package.Unverified
- Known CVEs could not be checked: this artifact ships no SBOM, so there is no dependency list to read. Publishing one would let us assess it.Unverified
- Install-script risk not yet assessed.Unverified
- Dependency health could not be checked: this artifact ships no SBOM, so there is no dependency list to read. Publishing one would let us assess it.Unverified
Provenance & Transparency32
- Source repository is publicly reachable at the declared URL. View diagnostics → Pass
- Provenance check failed: no build-provenance attestation is published. See how to fix → View diagnostics → Fail
- License check failed: no license is declared. See how to fix → Fail
- Actively maintained (last published 130 days ago).Pass
- Disclosure check failed: no security disclosure policy was found in the source repository. See how to fix → Fail
Schema Quality & AI Usability67
- AI-judged instruction clarity (good).Pass
- Tool/resource definitions use about 10656 tokens (~85/item across 124 items; 124 tools + 0 resources), lean.Pass
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management80
- Stability observed for 24 of 30 days with no destabilising changes; credit accrues until the full window elapses.Partial
Tool Coverage100
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 100% of tool parameters carry a description.Pass
Tool Safety95
- No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
- 20 of 25 tool(s) whose name or description implies an irreversible operation declare an MCP destructiveHint annotation; "publish_content_type" implies "publish" and declares no destructiveHint at all, which the MCP spec reads as destructive by default. See how to fix → Partial
- An AI judge read all 124 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
- Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
Unverified: 1 category
A category scored 0 because we could not verify it: a data source with nothing on this package, evidence we could not reach, or a check we could not run. We only credit what we can confirm.
How do I install the com.mcparmory/contentful-management MCP server?
com.mcparmory/contentful-management runs locally as a container image, launched with docker run --rm -i ghcr.io/mcparmory/contentful-management:1.0.3. Ready-made configuration for Claude, Cursor, VS Code, Codex and 3 more is on this page, copied from each client's own documentation.
oci · ghcr.io/mcparmory/contentful-management:1.0.3
claude mcp add com-mcparmory-contentful-management -- docker run --rm -i ghcr.io/mcparmory/contentful-management:1.0.3
{
"mcpServers": {
"com-mcparmory-contentful-management": {
"command": "docker",
"args": [
"run",
"--rm",
"-i",
"ghcr.io/mcparmory/contentful-management:1.0.3"
]
}
}
} {
"servers": {
"com-mcparmory-contentful-management": {
"command": "docker",
"args": [
"run",
"--rm",
"-i",
"ghcr.io/mcparmory/contentful-management:1.0.3"
]
}
}
} codex mcp add com-mcparmory-contentful-management -- docker run --rm -i ghcr.io/mcparmory/contentful-management:1.0.3
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"com-mcparmory-contentful-management": {
"type": "local",
"command": [
"docker",
"run",
"--rm",
"-i",
"ghcr.io/mcparmory/contentful-management:1.0.3"
],
"enabled": true
}
}
} mcp_servers:
com-mcparmory-contentful-management:
command: "docker"
args: ["run", "--rm", "-i", "ghcr.io/mcparmory/contentful-management:1.0.3"] {
"McpServers": {
"com-mcparmory-contentful-management": {
"Transport": "stdio",
"Command": "docker",
"Arguments": [
"run",
"--rm",
"-i",
"ghcr.io/mcparmory/contentful-management:1.0.3"
]
}
}
} {
"mcpServers": {
"com-mcparmory-contentful-management": {
"command": "docker",
"args": [
"run",
"--rm",
"-i",
"ghcr.io/mcparmory/contentful-management:1.0.3"
]
}
}
} Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 20 Sept 26 −3
- Stability: pass → 0.80 functional
- 19 Sept 26 0
- Stability: 0.97 → pass security
- 18 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 93 to 97. That category is still filling its 30-day observation window: 28 days of observed history at the previous scan, 29 at this one. The score rises as the window fills, whether or not the server changes.
- 16 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 87 to 90. That category is still filling its 30-day observation window: 26 days of observed history at the previous scan, 27 at this one. The score rises as the window fills, whether or not the server changes.
- 14 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 80 to 83. That category is still filling its 30-day observation window: 24 days of observed history at the previous scan, 25 at this one. The score rises as the window fills, whether or not the server changes.
- 13 Sept 26 −3
- Stability: pass → 0.80 functional
- 12 Sept 26 0
- Stability: 0.97 → pass security
- 11 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 93 to 97. That category is still filling its 30-day observation window: 28 days of observed history at the previous scan, 29 at this one. The score rises as the window fills, whether or not the server changes.
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 20 Sept 2026 · Analysed oci/ghcr.io/mcparmory/contentful-management:1.0.3
Provenance No attestation
The registry publishes no build provenance for this version, so there is nothing to verify.
| Result | No attestation |
|---|---|
| Ecosystem | oci |
| Reason | No attestation published |
Background: How many MCP packages publish verified provenance →
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
remove_space_member Remove Space Member ~72
Remove a member from a space by deleting their space membership. This revokes their access to the specified space.
| Name | Type | Req | Description |
|---|---|---|---|
| space_id | string | yes | The unique identifier of the space from which the member will be removed. |
| space_membership_id | string | yes | The unique identifier of the space membership record to delete. |
No output schema declared.
No examples provided.
revoke_access_token Revoke Access Token ~46
Revoke a personal access token to immediately invalidate it and prevent further API access using that token.
| Name | Type | Req | Description |
|---|---|---|---|
| token_id | string | yes | The unique identifier of the personal access token to revoke. |
No output schema declared.
No examples provided.
revoke_app_signing_secret Revoke App Signing Secret ~85
Revoke and remove the current signing secret for an app definition. This invalidates the existing secret, requiring a new one to be generated for future app authentications.
| Name | Type | Req | Description |
|---|---|---|---|
| app_definition_id | string | yes | The unique identifier of the app definition whose signing secret should be revoked. |
| organization_id | string | yes | The unique identifier of the organization that owns the app definition. |
No output schema declared.
No examples provided.
set_app_signing_secret Set App Signing Secret ~81
Create or overwrite the signing secret for an app definition. This secret is used to verify the authenticity of requests from Contentful to your app.
| Name | Type | Req | Description |
|---|---|---|---|
| app_definition_id | string | yes | The unique identifier of the app definition for which to set the signing secret. |
| organization_id | string | yes | The unique identifier of the organization that owns the app definition. |
No output schema declared.
No examples provided.
unarchive_asset Unarchive Asset ~91
Restore an archived asset in a specific environment, making it available for use again. This operation removes the archived status from the asset.
| Name | Type | Req | Description |
|---|---|---|---|
| asset_id | string | yes | The unique identifier of the asset to unarchive. |
| environment_id | string | yes | The unique identifier of the environment within the space where the asset is located. |
| space_id | string | yes | The unique identifier of the space containing the asset. |
No output schema declared.
No examples provided.
unarchive_entry Unarchive Entry ~100
Restore an archived entry to active status in a Contentful space. This operation reverses the archival of an entry, making it available for use again.
| Name | Type | Req | Description |
|---|---|---|---|
| entry_id | string | yes | The unique identifier of the entry to unarchive. |
| environment_id | string | yes | The environment identifier where the entry is stored. Typically 'master' for the default environment. |
| space_id | string | yes | The unique identifier of the Contentful space containing the entry. |
No output schema declared.
No examples provided.
uninstall_app Uninstall App ~98
Remove an installed app from a specific environment within a space. This operation permanently uninstalls the app and removes its access to the environment.
| Name | Type | Req | Description |
|---|---|---|---|
| app_definition_id | string | yes | The unique identifier of the app definition to uninstall. |
| environment_id | string | yes | The unique identifier of the environment from which the app will be uninstalled. |
| space_id | string | yes | The unique identifier of the space containing the environment where the app is installed. |
No output schema declared.
No examples provided.
unpublish_asset Unpublish Asset ~87
Unpublish an asset from a specific environment, making it unavailable to content consumers while retaining the asset in the space.
| Name | Type | Req | Description |
|---|---|---|---|
| asset_id | string | yes | The unique identifier of the asset to unpublish. |
| environment_id | string | yes | The unique identifier of the environment from which to unpublish the asset. |
| space_id | string | yes | The unique identifier of the space containing the asset. |
No output schema declared.
No examples provided.
unpublish_entry Unpublish Entry ~97
Unpublish an entry, removing it from the published state while keeping the draft version intact. This operation reverses a previous publish action.
| Name | Type | Req | Description |
|---|---|---|---|
| entry_id | string | yes | The unique identifier of the entry to unpublish. |
| environment_id | string | yes | The environment identifier where the entry exists. Typically 'master' for the default environment. |
| space_id | string | yes | The unique identifier of the space containing the entry to unpublish. |
No output schema declared.
No examples provided.
unpublish_release Unpublish Release ~82
Unpublish a scheduled release, removing it from the published state and preventing its scheduled actions from executing.
| Name | Type | Req | Description |
|---|---|---|---|
| environment_id | string | yes | The unique identifier of the environment where the release is published. |
| releases_id | string | yes | The unique identifier of the release to unpublish. |
| space_id | string | yes | The unique identifier of the space containing the release. |
No output schema declared.
No examples provided.
unpublish_scheduled_actions Unpublish Scheduled Actions ~83
Unpublish scheduled actions in bulk for a specific environment. This operation reverts previously scheduled publish actions, preventing them from being executed.
| Name | Type | Req | Description |
|---|---|---|---|
| environment_id | string | yes | The unique identifier of the environment within the space where scheduled actions will be unpublished. |
| space_id | string | yes | The unique identifier of the space containing the environment where scheduled actions will be unpublished. |
No output schema declared.
No examples provided.
update_delivery_api_key Update Delivery API Key ~77
Update the configuration of a Delivery API key within a space. This allows you to modify settings for an existing API key used for content delivery.
| Name | Type | Req | Description |
|---|---|---|---|
| api_key_id | string | yes | The unique identifier of the Delivery API key to update. |
| space_id | string | yes | The unique identifier of the space containing the API key to update. |
No output schema declared.
No examples provided.
update_entry Update Entry ~125
Partially update an entry within a Contentful space and environment. Use this operation to modify specific fields of an existing entry without replacing the entire entry.
| Name | Type | Req | Description |
|---|---|---|---|
| X-Contentful-Content-Type | string | – | The content type ID that defines the structure of the entry being updated. |
| entry_id | string | yes | The unique identifier of the entry to update. |
| environment_id | string | yes | The environment identifier where the entry resides. Typically 'master' for the default environment. |
| space_id | string | yes | The unique identifier of the Contentful space containing the entry to update. |
No output schema declared.
No examples provided.
update_environment Update Environment ~69
Update the configuration and settings of an environment within a Contentful space. This allows you to modify environment properties after creation.
| Name | Type | Req | Description |
|---|---|---|---|
| environment_id | string | yes | The unique identifier of the environment to update. |
| space_id | string | yes | The unique identifier of the Contentful space containing the environment to update. |
No output schema declared.
No examples provided.
update_locale Update Locale ~86
Update the configuration of a specific locale within a Contentful environment, such as display name or other locale settings.
| Name | Type | Req | Description |
|---|---|---|---|
| environment_id | string | yes | The unique identifier of the environment within the space where the locale resides. |
| locale_id | string | yes | The unique identifier of the locale to update. |
| space_id | string | yes | The unique identifier of the space containing the locale to update. |
No output schema declared.
No examples provided.
update_release Update Release ~96
Update an existing release in a Contentful space environment. This operation allows you to modify release details such as scheduling, metadata, or other release properties.
| Name | Type | Req | Description |
|---|---|---|---|
| environment_id | string | yes | The unique identifier of the environment within the space where the release exists. |
| releases_id | string | yes | The unique identifier of the release to update. |
| space_id | string | yes | The unique identifier of the Contentful space containing the release to update. |
No output schema declared.
No examples provided.
update_scheduled_action Update Scheduled Action ~72
Update an existing scheduled action in a space. Modify the configuration and settings of a scheduled action that has been previously created.
| Name | Type | Req | Description |
|---|---|---|---|
| scheduled_action_id | string | yes | The unique identifier of the scheduled action to update. |
| space_id | string | yes | The unique identifier of the space containing the scheduled action to update. |
No output schema declared.
No examples provided.
update_space_membership Update Space Membership ~82
Update a space membership to modify user roles and permissions within a specific space. This operation allows you to change access levels and membership details for a user in the space.
| Name | Type | Req | Description |
|---|---|---|---|
| space_id | string | yes | The unique identifier of the space containing the membership to update. |
| space_membership_id | string | yes | The unique identifier of the space membership record to update. |
No output schema declared.
No examples provided.
update_tag Update Tag ~89
Update an existing tag within a specific environment and space. This operation allows you to modify tag properties and settings.
| Name | Type | Req | Description |
|---|---|---|---|
| environment_id | string | yes | The unique identifier of the environment within the space where the tag is located. |
| space_id | string | yes | The unique identifier of the space containing the tag to be updated. |
| tag_id | string | yes | The unique identifier of the tag to be updated. |
No output schema declared.
No examples provided.
update_task Update Task ~122
Update an existing task associated with a specific entry in a Contentful environment. This allows you to modify task details such as status, assignees, or other task-related metadata.
| Name | Type | Req | Description |
|---|---|---|---|
| entry_id | string | yes | The unique identifier of the entry that the task is associated with. |
| environment_id | string | yes | The unique identifier of the environment within the space where the task exists. |
| space_id | string | yes | The unique identifier of the space containing the entry and task to update. |
| task_id | string | yes | The unique identifier of the task to update. |
No output schema declared.
No examples provided.
upload_file Upload File ~51
Upload a file to a Contentful space. The uploaded file can then be used as an asset within the space.
| Name | Type | Req | Description |
|---|---|---|---|
| space_id | string | yes | The unique identifier of the space where the file will be uploaded. |
No output schema declared.
No examples provided.
upsert_entry Upsert Entry ~179
Create a new entry or update an existing entry within a specific environment and space. This operation allows you to define or modify content entries in your Contentful workspace.
| Name | Type | Req | Description |
|---|---|---|---|
| X-Contentful-Content-Type | string | – | The content type ID that defines the structure and fields for this entry. This determines what fields are available and their validation rules. |
| entry_id | string | yes | The unique identifier of the entry to create or update. If the entry doesn't exist, it will be created; otherwise, the existing entry will be updated. |
| environment_id | string | yes | The unique identifier of the environment within the space. Environments allow you to manage different versions of your content (e.g., draft, published). |
| space_id | string | yes | The unique identifier of the space containing the entry. This is the workspace where your content is organized. |
No output schema declared.
No examples provided.
validate_release Validate Release ~89
Create a validation action for a scheduled release in a specific environment. This initiates validation of the release's contents before it can be published.
| Name | Type | Req | Description |
|---|---|---|---|
| environment_id | string | yes | The unique identifier of the environment where the release will be validated. |
| releases_id | string | yes | The unique identifier of the release to validate. |
| space_id | string | yes | The unique identifier of the space containing the release. |
No output schema declared.
No examples provided.
validate_scheduled_bulk_action Validate Scheduled Bulk Action ~86
Validate a bulk action before execution in a specific environment. This operation checks the bulk action configuration for errors and ensures it can be safely scheduled.
| Name | Type | Req | Description |
|---|---|---|---|
| environment_id | string | yes | The unique identifier of the environment where the bulk action will be executed and validated. |
| space_id | string | yes | The unique identifier of the space containing the environment where the bulk action will be validated. |
No output schema declared.
No examples provided.
What is the com.mcparmory/contentful-management MCP server?
com.mcparmory/contentful-management is an MCP server listed in the public MCP registry as com.mcparmory/contentful-management. Create, update, and publish content across spaces and environments. This page covers its container image (ghcr.io/mcparmory/contentful-management:1.0.3).
Is the com.mcparmory/contentful-management MCP server safe to use?
com.mcparmory/contentful-management scores 47 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the com.mcparmory/contentful-management MCP server expose?
com.mcparmory/contentful-management exposes 124 tools: list_spaces, create_space, get_space, delete_space, list_environments, and 119 more. Their descriptions and schemas cost roughly 10,656 tokens of context every time the server is loaded.
Is the com.mcparmory/contentful-management MCP server still maintained?
com.mcparmory/contentful-management is still listed as active in the MCP registry. We last reached this channel on 20 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.