com.mcparmory/shortcut
OCI · GHCR.IO/MCPARMORY/SHORTCUT:1.0.2 · 2 COMPONENTS · SCANNED SEP 20
Track stories, organize sprints, and manage project workflows across your team
Available components
How this component scores in each security and reliability category. Every signal is checked automatically from public evidence about the published package, including repeated runs of it in an isolated sandbox, and we only credit what we can confirm. How we score → Why this is hard to score →
Supply Chain Security0
- Malware scan not yet available for this package.Unverified
- Known CVEs could not be checked: this artifact ships no SBOM, so there is no dependency list to read. Publishing one would let us assess it.Unverified
- Install-script risk not yet assessed.Unverified
- Dependency health could not be checked: this artifact ships no SBOM, so there is no dependency list to read. Publishing one would let us assess it.Unverified
Provenance & Transparency32
- Source repository is publicly reachable at the declared URL. View diagnostics → Pass
- Provenance check failed: no build-provenance attestation is published. See how to fix → View diagnostics → Fail
- License check failed: no license is declared. See how to fix → Fail
- Actively maintained (last published 130 days ago).Pass
- Disclosure check failed: no security disclosure policy was found in the source repository. See how to fix → Fail
Schema Quality & AI Usability76
- AI-judged instruction clarity (excellent).Pass
- Context-footprint check failed: tool/resource definitions use about 15239 tokens (~116/item across 131 items; 131 tools + 0 resources), over budget; trim descriptions and params. See how to fix → Fail
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management83
- Stability observed for 25 of 30 days with no destabilising changes; credit accrues until the full window elapses.Partial
Tool Coverage100
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 100% of tool parameters carry a description.Pass
Tool Safety100
- No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
- All 22 tool(s) whose name or description implies an irreversible operation declare an MCP destructiveHint annotation.Pass
- An AI judge read all 131 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
- Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
Unverified: 1 category
A category scored 0 because we could not verify it: a data source with nothing on this package, evidence we could not reach, or a check we could not run. We only credit what we can confirm.
How do I install the com.mcparmory/shortcut MCP server?
com.mcparmory/shortcut runs locally as a container image, launched with docker run --rm -i ghcr.io/mcparmory/shortcut:1.0.2. Ready-made configuration for Claude, Cursor, VS Code, Codex and 3 more is on this page, copied from each client's own documentation.
oci · ghcr.io/mcparmory/shortcut:1.0.2
claude mcp add com-mcparmory-shortcut -- docker run --rm -i ghcr.io/mcparmory/shortcut:1.0.2
{
"mcpServers": {
"com-mcparmory-shortcut": {
"command": "docker",
"args": [
"run",
"--rm",
"-i",
"ghcr.io/mcparmory/shortcut:1.0.2"
]
}
}
} {
"servers": {
"com-mcparmory-shortcut": {
"command": "docker",
"args": [
"run",
"--rm",
"-i",
"ghcr.io/mcparmory/shortcut:1.0.2"
]
}
}
} codex mcp add com-mcparmory-shortcut -- docker run --rm -i ghcr.io/mcparmory/shortcut:1.0.2
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"com-mcparmory-shortcut": {
"type": "local",
"command": [
"docker",
"run",
"--rm",
"-i",
"ghcr.io/mcparmory/shortcut:1.0.2"
],
"enabled": true
}
}
} mcp_servers:
com-mcparmory-shortcut:
command: "docker"
args: ["run", "--rm", "-i", "ghcr.io/mcparmory/shortcut:1.0.2"] {
"McpServers": {
"com-mcparmory-shortcut": {
"Transport": "stdio",
"Command": "docker",
"Arguments": [
"run",
"--rm",
"-i",
"ghcr.io/mcparmory/shortcut:1.0.2"
]
}
}
} {
"mcpServers": {
"com-mcparmory-shortcut": {
"command": "docker",
"args": [
"run",
"--rm",
"-i",
"ghcr.io/mcparmory/shortcut:1.0.2"
]
}
}
} Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 20 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 80 to 83. That category is still filling its 30-day observation window: 24 days of observed history at the previous scan, 25 at this one. The score rises as the window fills, whether or not the server changes.
- 19 Sept 26 −3
- Stability: pass → 0.80 functional
- 18 Sept 26 0
- Stability: 0.97 → pass security
- 17 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 93 to 97. That category is still filling its 30-day observation window: 28 days of observed history at the previous scan, 29 at this one. The score rises as the window fills, whether or not the server changes.
- 15 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 87 to 90. That category is still filling its 30-day observation window: 26 days of observed history at the previous scan, 27 at this one. The score rises as the window fills, whether or not the server changes.
- 13 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 80 to 83. That category is still filling its 30-day observation window: 24 days of observed history at the previous scan, 25 at this one. The score rises as the window fills, whether or not the server changes.
- 12 Sept 26 −3
- Stability: pass → 0.80 functional
- 11 Sept 26 0
- Stability: 0.97 → pass security
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 20 Sept 2026 · Analysed oci/ghcr.io/mcparmory/shortcut:1.0.2
Provenance No attestation
The registry publishes no build provenance for this version, so there is nothing to verify.
| Result | No attestation |
|---|---|
| Ecosystem | oci |
| Reason | No attestation published |
Background: How many MCP packages publish verified provenance →
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
get_label Get Label ~53
Retrieve detailed information about a specific label by its unique identifier. Returns the label's properties and metadata.
| Name | Type | Req | Description |
|---|---|---|---|
| label-public-id | string | yes | The unique identifier of the label to retrieve, specified as a 64-bit integer. |
No output schema declared.
No examples provided.
get_linked_file Get Linked File ~53
Retrieve detailed information about a specific linked file using its unique public identifier.
| Name | Type | Req | Description |
|---|---|---|---|
| linked-file-public-id | string | yes | The unique public identifier of the linked file to retrieve. Must be a valid 64-bit integer. |
No output schema declared.
No examples provided.
get_member Get Member ~77
Retrieve detailed information about a specific member by their unique identifier. Optionally scope the lookup to a particular organization.
| Name | Type | Req | Description |
|---|---|---|---|
| member-public-id | string | yes | The unique identifier of the member to retrieve, formatted as a UUID. |
| org-public-id | string | – | Optional organization identifier (UUID format) to scope the member lookup to a specific organization. |
No output schema declared.
No examples provided.
get_milestone Get Milestone ~63
Retrieve detailed information about a specific milestone by its public ID. Note: This operation is deprecated; use get_objective instead for new implementations.
| Name | Type | Req | Description |
|---|---|---|---|
| milestone-public-id | string | yes | The unique identifier of the milestone to retrieve, provided as a 64-bit integer. |
No output schema declared.
No examples provided.
get_objective Get Objective ~63
Retrieve detailed information about a specific Objective by its public ID. Use this to fetch the full details of an Objective you want to inspect or reference.
| Name | Type | Req | Description |
|---|---|---|---|
| objective-public-id | string | yes | The unique public identifier for the Objective. Must be a valid 64-bit integer. |
No output schema declared.
No examples provided.
get_project Get Project ~53
Retrieve detailed information about a specific project using its unique public identifier. Returns comprehensive project metadata and configuration.
| Name | Type | Req | Description |
|---|---|---|---|
| project-public-id | string | yes | The unique public identifier for the project. Must be a valid 64-bit integer. |
No output schema declared.
No examples provided.
get_repository Get Repository ~43
Retrieve detailed information about a specific repository using its unique public identifier.
| Name | Type | Req | Description |
|---|---|---|---|
| repo-public-id | string | yes | The unique public identifier of the repository as a 64-bit integer. |
No output schema declared.
No examples provided.
get_story Get Story ~53
Retrieve detailed information about a specific story by its public ID. Returns the story's metadata and content.
| Name | Type | Req | Description |
|---|---|---|---|
| story-public-id | string | yes | The unique public identifier for the story. Must be a valid 64-bit integer. |
No output schema declared.
No examples provided.
get_story_comment Get Story Comment ~82
Retrieve detailed information about a specific comment within a story. Use this to fetch comment data by providing both the story and comment identifiers.
| Name | Type | Req | Description |
|---|---|---|---|
| comment-public-id | string | yes | The unique identifier of the comment to retrieve. Must be a positive integer. |
| story-public-id | string | yes | The unique identifier of the story containing the comment. Must be a positive integer. |
No output schema declared.
No examples provided.
get_story_history Get Story History ~58
Retrieve the complete history of changes for a specific story, including all revisions and modifications over time.
| Name | Type | Req | Description |
|---|---|---|---|
| story-public-id | string | yes | The unique identifier of the story. Must be a valid 64-bit integer representing the story's public ID. |
No output schema declared.
No examples provided.
get_story_link Get Story Link ~63
Retrieves a specific story link and the stories it connects, along with their relationship details. Use this to understand how stories are related to each other.
| Name | Type | Req | Description |
|---|---|---|---|
| story-link-public-id | string | yes | The unique identifier of the story link to retrieve. Must be a positive integer. |
No output schema declared.
No examples provided.
get_task Get Task ~75
Retrieve detailed information about a specific Task within a Story. Returns the Task's properties and metadata.
| Name | Type | Req | Description |
|---|---|---|---|
| story-public-id | string | yes | The unique identifier of the Story that contains the Task. Must be a positive integer. |
| task-public-id | string | yes | The unique identifier of the Task to retrieve. Must be a positive integer. |
No output schema declared.
No examples provided.
get_webhook_integration Get Webhook Integration ~61
Retrieve a specific webhook integration by its public identifier. Use this to fetch configuration and details for a webhook integration.
| Name | Type | Req | Description |
|---|---|---|---|
| integration-public-id | string | yes | The unique public identifier of the webhook integration to retrieve. Must be a valid 64-bit integer. |
No output schema declared.
No examples provided.
get_workflow Get Workflow ~57
Retrieve detailed information about a specific workflow by its public ID. Returns the workflow's configuration, status, and metadata.
| Name | Type | Req | Description |
|---|---|---|---|
| workflow-public-id | string | yes | The unique identifier of the workflow to retrieve, provided as a 64-bit integer. |
No output schema declared.
No examples provided.
link_document_to_epic Link Document to Epic ~85
Create a relationship between a Document and an Epic, associating the document with the specified epic for organizational and tracking purposes.
| Name | Type | Req | Description |
|---|---|---|---|
| doc-public-id | string | yes | The unique identifier of the Document to link, provided as a UUID. |
| epic-public-id | string | yes | The unique identifier of the Epic to link the document to, provided as a 64-bit integer. |
No output schema declared.
No examples provided.
list_categories List Categories ~37
Retrieve a complete list of all available categories with their attributes. Use this to discover category options for filtering, organizing, or referencing in other operations.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_custom_fields List Custom Fields ~34
Retrieve all custom fields available in the system. This returns the complete list of custom field definitions that can be used across resources.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_document_epics List Document Epics ~57
Retrieve all Epics associated with a specific Document. Returns a collection of Epics linked to the Document identified by its public ID.
| Name | Type | Req | Description |
|---|---|---|---|
| doc-public-id | string | yes | The unique public identifier of the Document, provided as a UUID. |
No output schema declared.
No examples provided.
list_documents List Documents ~32
Retrieve a list of all documents that the current user has read access to. Returns documents accessible based on the user's permissions.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_entity_templates List Entity Templates ~31
Retrieve all entity templates available in the Workspace. Entity templates define the structure and configuration for entities within your workspace.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_epic_comments List Epic Comments ~54
Retrieve all comments associated with a specific Epic. Returns a list of comment objects ordered by creation date.
| Name | Type | Req | Description |
|---|---|---|---|
| epic-public-id | string | yes | The unique identifier of the Epic. Must be a valid 64-bit integer. |
No output schema declared.
No examples provided.
list_epic_documents List Epic Documents ~57
Retrieve all documents associated with a specific Epic. Returns a collection of documents linked to the Epic for reference and collaboration.
| Name | Type | Req | Description |
|---|---|---|---|
| epic-public-id | string | yes | The unique identifier of the Epic. Must be a valid 64-bit integer. |
No output schema declared.
No examples provided.
list_epic_health_history List Epic Health History ~74
Retrieve the complete health status history for a specified Epic, ordered from most recent to oldest. Use this to track how an Epic's health has evolved over time.
| Name | Type | Req | Description |
|---|---|---|---|
| epic-public-id | string | yes | The unique identifier of the Epic whose health history you want to retrieve. Must be a valid 64-bit integer. |
No output schema declared.
No examples provided.
list_epic_stories List Epic Stories ~78
Retrieve all stories associated with a specific epic. Optionally include story descriptions in the response.
| Name | Type | Req | Description |
|---|---|---|---|
| epic-public-id | string | yes | The unique identifier of the epic. Must be a valid 64-bit integer. |
| includes_description | boolean | – | Set to true to include story descriptions in the response; false or omit to exclude them. |
No output schema declared.
No examples provided.
list_epics List Epics ~65
Retrieve a list of all Epics with their core attributes. Optionally include full descriptions for each Epic.
| Name | Type | Req | Description |
|---|---|---|---|
| includes_description | boolean | – | Set to true to include the full description text for each Epic in the response; omit or set to false to return only basic Epic metadata. |
No output schema declared.
No examples provided.
list_epics_for_label List Epics for Label ~57
Retrieve all Epics associated with a specific Label. Use this to view Epic-level work items grouped by a particular label.
| Name | Type | Req | Description |
|---|---|---|---|
| label-public-id | string | yes | The unique identifier of the Label. Must be a positive integer value. |
No output schema declared.
No examples provided.
list_epics_for_milestone List Epics for Milestone ~61
Retrieve all epics associated with a specific milestone. This operation is deprecated; use list_objective_epics instead for new implementations.
| Name | Type | Req | Description |
|---|---|---|---|
| milestone-public-id | string | yes | The unique identifier of the milestone. Must be a positive integer value. |
No output schema declared.
No examples provided.
list_epics_for_objective List Epics for Objective ~55
Retrieve all epics associated with a specific objective. Epics are returned as a collection within the objective.
| Name | Type | Req | Description |
|---|---|---|---|
| objective-public-id | string | yes | The unique identifier of the objective. Must be a positive integer value. |
No output schema declared.
No examples provided.
list_epics_paginated List Epics Paginated ~128
Retrieve a paginated list of Epics with optional descriptions. Use pagination parameters to control which results are returned and how many per page.
| Name | Type | Req | Description |
|---|---|---|---|
| includes_description | boolean | – | Include the full description text for each Epic in the response. When false or omitted, descriptions are excluded from the results. |
| page | string | – | The page number to retrieve, starting from 1. Defaults to the first page if not specified. |
| page_size | string | – | The number of Epics to return per page, between 1 and 250 items. Defaults to 10 if not specified. |
No output schema declared.
No examples provided.
list_files List Files ~30
Retrieve a list of all uploaded files in the workspace. Returns metadata for each file available in the current workspace.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_group_stories List Group Stories ~113
Retrieve all Stories assigned to a specific Group with pagination support. Results are limited to a maximum of 1,000 stories by default.
| Name | Type | Req | Description |
|---|---|---|---|
| group-public-id | string | yes | The unique identifier of the Group, formatted as a UUID. |
| limit | string | – | Maximum number of results to return per request. Defaults to 1,000 and cannot exceed 1,000. |
| offset | string | – | Number of results to skip before returning data, enabling pagination through large result sets. Defaults to 0. |
No output schema declared.
No examples provided.
list_groups List Groups ~83
Retrieve a list of groups (teams) in Shortcut. Groups represent collections of users that can be associated with stories, epics, and iterations. Optionally filter by archived status.
| Name | Type | Req | Description |
|---|---|---|---|
| archived | boolean | – | Filter groups by their archived state. Set to true to return only archived groups, false to return only active groups, or omit to return all groups regardless of status. |
No output schema declared.
No examples provided.
list_iteration_stories List Iteration Stories ~74
Retrieve all stories associated with a specific iteration. Optionally include story descriptions in the response.
| Name | Type | Req | Description |
|---|---|---|---|
| includes_description | boolean | – | Set to true to include story descriptions in the response; false or omit to exclude them. |
| iteration-public-id | string | yes | The unique identifier of the iteration. Must be a positive integer. |
No output schema declared.
No examples provided.
list_iterations List Iterations ~33
Retrieve a list of all iterations. Iterations represent time-boxed periods used for organizing and tracking work in agile project management.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_labels List Labels ~61
Retrieve all labels available in the system with their complete attributes. Optionally request slim versions containing only essential label information.
| Name | Type | Req | Description |
|---|---|---|---|
| slim | boolean | – | When true, returns a lightweight version of each label with minimal attributes; when false or omitted, returns complete label details. |
No output schema declared.
No examples provided.
list_linked_files List Linked Files ~33
Retrieve a complete list of all linked files with their attributes. Use this to view all file associations in the system.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_milestones List Milestones ~35
Retrieve a list of all milestones with their attributes. Note: This endpoint is deprecated; use list_objectives for new implementations.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_milestones_for_category List Milestones for Category ~56
Retrieve all milestones associated with a specific category. Returns a complete list of milestones within the given category.
| Name | Type | Req | Description |
|---|---|---|---|
| category-public-id | string | yes | The unique identifier of the category. Must be a valid 64-bit integer. |
No output schema declared.
No examples provided.
list_objectives List Objectives ~23
Retrieve a complete list of all objectives with their associated attributes and metadata.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_objectives_for_category List Objectives for Category ~57
Retrieves all Objectives associated with a specific Category. Use this to view the complete list of objectives within a category.
| Name | Type | Req | Description |
|---|---|---|---|
| category-public-id | string | yes | The unique identifier of the Category. Must be a valid 64-bit integer. |
No output schema declared.
No examples provided.
list_projects List Projects ~32
Retrieve a list of all projects with their complete attributes and metadata. Use this to discover available projects or build project directories.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_repositories List Repositories ~31
Retrieve a complete list of all repositories with their attributes. Use this operation to discover available repositories and their metadata.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_stories List Stories ~80
Retrieve all stories in a project with their core attributes. Optionally include story descriptions in the response.
| Name | Type | Req | Description |
|---|---|---|---|
| includes_description | boolean | – | Set to true to include story descriptions in the response; omit or set to false to exclude them. |
| project-public-id | string | yes | The unique identifier of the project. Must be a valid 64-bit integer. |
No output schema declared.
No examples provided.
list_stories_by_external_link List Stories by External Link ~77
Retrieve all stories associated with a given external link. Use this to find stories that reference or are linked to a specific URL.
| Name | Type | Req | Description |
|---|---|---|---|
| external_link | string | yes | A valid HTTP or HTTPS URL (must start with http:// or https://) that is associated with one or more stories. Maximum length is 2048 characters. |
No output schema declared.
No examples provided.
list_stories_by_label List Stories by Label ~78
Retrieve all stories associated with a specific label. Optionally include story descriptions in the response.
| Name | Type | Req | Description |
|---|---|---|---|
| includes_description | boolean | – | Set to true to include story descriptions in the response; false or omit to exclude them. |
| label-public-id | string | yes | The unique identifier of the label. Must be a valid 64-bit integer. |
No output schema declared.
No examples provided.
list_story_comments List Story Comments ~54
Retrieves all comments associated with a specific story. Use this to fetch the complete list of comments for a given story.
| Name | Type | Req | Description |
|---|---|---|---|
| story-public-id | string | yes | The unique identifier of the story. Must be a positive integer value. |
No output schema declared.
No examples provided.
list_story_sub_tasks List Story Sub-Tasks ~58
Retrieve all sub-task stories associated with a parent story. Returns a complete list of child tasks for the specified story.
| Name | Type | Req | Description |
|---|---|---|---|
| story-public-id | string | yes | The unique identifier of the parent story. Must be a valid 64-bit integer. |
No output schema declared.
No examples provided.
list_workspace_members List Workspace Members ~88
Retrieve a list of members in the Workspace, with optional filtering by Organization and member status.
| Name | Type | Req | Description |
|---|---|---|---|
| disabled | boolean | – | Filter members by their account status: true returns only disabled members, false returns only enabled members. Omit to include all members regardless of status. |
| org-public-id | string | – | Filter results to members belonging to a specific Organization by providing its unique identifier (UUID format). |
No output schema declared.
No examples provided.
remove_comment_slack_link Remove Comment Slack Link ~83
Unlinks a comment from its associated Slack thread, stopping synchronization of replies between the comment thread and Slack.
| Name | Type | Req | Description |
|---|---|---|---|
| comment-public-id | string | yes | The unique identifier of the Comment to unlink from Slack. Must be a positive integer. |
| story-public-id | string | yes | The unique identifier of the Story containing the comment to unlink. Must be a positive integer. |
No output schema declared.
No examples provided.
remove_document_from_epic Remove Document from Epic ~75
Remove the relationship between a Document and an Epic, unlinking them from each other.
| Name | Type | Req | Description |
|---|---|---|---|
| doc-public-id | string | yes | The unique identifier of the Document to unlink, formatted as a UUID. |
| epic-public-id | string | yes | The unique identifier of the Epic to unlink, formatted as a 64-bit integer. |
No output schema declared.
No examples provided.
What is the com.mcparmory/shortcut MCP server?
com.mcparmory/shortcut is an MCP server listed in the public MCP registry as com.mcparmory/shortcut. Track stories, organize sprints, and manage project workflows across your team. This page covers its container image (ghcr.io/mcparmory/shortcut:1.0.2).
Is the com.mcparmory/shortcut MCP server safe to use?
com.mcparmory/shortcut scores 50 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the com.mcparmory/shortcut MCP server expose?
com.mcparmory/shortcut exposes 131 tools: list_categories, create_category, get_category, update_category, delete_category, and 126 more. Their descriptions and schemas cost roughly 15,239 tokens of context every time the server is loaded.
Is the com.mcparmory/shortcut MCP server still maintained?
com.mcparmory/shortcut is still listed as active in the MCP registry. We last reached this channel on 20 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.