Skip to content
verify mcp Beta VerifyMCP is currently in beta. If you notice any issues, email [email protected] and we’ll put it right.

io.github.freema/mcp-jira-stdio

NPM · MCP-JIRA-STDIO · SCANNED AUG 3

MCP server for Jira Cloud — issues, search, comments, attachments, transitions.

Available components

+67 this week 73 Trust /100
Trust breakdown (6 categories)

How this component scores in each security and reliability category. Every signal is checked automatically from public evidence about the published package, including repeated runs of it in an isolated sandbox, and we only credit what we can confirm. How we score →

Supply Chain Security79
  • No malware found by supply-chain analysis.Pass
  • CVE check failed: a known high-severity CVE affects marked 0.8.2, reached via md-to-adf > marked. A fixed version is available. View diagnostics → Fail
  • No install/post-install scripts declared.Pass
  • Only part of the dependency tree could be resolved (110 of 111), so this covers what we could see, not the whole tree. View diagnostics → Partial
Provenance & Transparency97
  • Source repository is publicly reachable at the declared URL. View diagnostics → Pass
  • Cryptographically verified build provenance (signed, bound to freema/mcp-jira-stdio). View diagnostics → Pass
  • Clear OSI-approved license (MIT).Pass
  • Actively maintained (last published 6 days ago).Pass
  • Disclosure check failed: no security disclosure policy was found in the source repository. See how to fix → Fail
Schema Quality & AI Usability76
  • AI-judged instruction clarity (excellent).Pass
  • Context-footprint check failed: tool/resource definitions use about 2909 tokens (~126/item across 23 items; 23 tools + 0 resources), over budget; trim descriptions and params. See how to fix → Fail
  • Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management0
  • Stability not yet verified: not enough scan history yet (needs a 30-day window).Unverified
Tool Coverage100
  • 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
  • 100% of tool parameters carry a description.Pass
Capabilities100
  • Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass

Unverified: 1 category

A category scored 0 because we could not verify it: a data source with nothing on this package, evidence we could not reach, or a check we could not run. We only credit what we can confirm.

Install

Add this component to your MCP client. Where a client-specific snippet is available, pick your client below and copy it straight into your config; otherwise use the connection detail shown.

npm · mcp-jira-stdio

# add to Claude Code
claude mcp add freema-mcp-jira-stdio -- npx -y mcp-jira-stdio
# add to Codex CLI
codex mcp add freema-mcp-jira-stdio -- npx -y mcp-jira-stdio
// opencode.json
{
  "$schema": "https://opencode.ai/config.json",
  "mcp": {
    "freema-mcp-jira-stdio": {
      "type": "local",
      "command": [
        "npx",
        "-y",
        "mcp-jira-stdio"
      ],
      "enabled": true
    }
  }
}
# add to OpenClaw
openclaw mcp add freema-mcp-jira-stdio --command npx --arg -y --arg mcp-jira-stdio
# ~/.hermes/config.yaml
mcp_servers:
  freema-mcp-jira-stdio:
    command: "npx"
    args: ["-y", "mcp-jira-stdio"]
// mcp.json
{
  "mcpServers": {
    "freema-mcp-jira-stdio": {
      "command": "npx",
      "args": [
        "-y",
        "mcp-jira-stdio"
      ]
    }
  }
}
Changelog

Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.

  • 2 Aug 26 +19
    • Known CVEs: unverified → fail security
    • Install scripts: pass → unverified security
    • Provenance: pass → unverified security
    • Malware scan: unverified → pass security
    • Stability: Stability not yet verified: we do not have a sandbox capture of the MCP schema this version of the package serves yet. security
    • The attested source repository moved: freema/mcp-jira-stdio security
    • Maintenance: pass → unverified functional
    • Tool coverage: 100 → unverified functional
    • License: pass → unverified functional
    • Capabilities: pass → unverified functional
    • Dependency health: unverified → partial functional
    • Licence: MIT functional
  • 1 Aug 26 −7
    • Known CVEs: fail → unverified security
    • Dependency health: partial → unverified functional
  • 31 Jul 26 +34
    • We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
  • 30 Jul 26 −31
    • Provenance: pass → unverified security
    • Known CVEs: fail → unverified security
    • Install scripts: pass → unverified security
    • CVE-2022-21680 no longer affects this package security
    • CVE-2022-21681 no longer affects this package security
    • The attested source repository moved: freema/mcp-jira-stdio security
    • License: pass → unverified functional
    • Dependency health: partial → unverified functional
    • Maintenance: pass → unverified functional
    • Licence: MIT functional
  • 28 Jul 26 +52
    • CVE-2022-21680 affects this package: high security
    • CVE-2022-21681 affects this package: high security
    • Known CVEs: unverified → fail security
    • Provenance: unverified → pass security
    • Install scripts: unverified → pass security
    • The attested source repository moved: freema/mcp-jira-stdio security
    • Maintenance: unverified → pass functional
    • Dependency health: unverified → partial functional
    • License: unverified → pass functional
    • Tool coverage: unverified → 100 functional
    • First check of Tool coverage: 100 functional
    • First check of Schema quality: unverified functional
    • First check of Schema quality: fail functional
    • First check of Schema quality: fail functional
    • Licence: MIT functional
  • 27 Jul 26 6

    First indexed and scored.

Diagnostics

Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.

Captured 3 Aug 2026 · Analysed npm/[email protected]

Provenance verified

Ecosystem: npm · Outcome: verified

Reason: verified

Source repo:
freema/mcp-jira-stdio
Certificate issuer:
https://token.actions.githubusercontent.com
Certificate SAN:
https://github.com/freema/mcp-jira-stdio/.github/workflows/publish.yml@refs/tags/v1.11.0
Rekor log index:
2258318011
Predicate type:
https://slsa.dev/provenance/v1
Subject digest:
sha512:02d6ec57f3ca2919b6c6f835aecc2846515692a0323286b4ed27f13652c6eb2e8b2011c6e52b3cd5370de800791cbc0671a93c2a7d34f68adffd8f4e2
Discovery method:
attestation_endpoint
Vulnerabilities 2 findings
ID CVE Severity Vector Fix available
GHSA-5v2h-r2cx-5xgj CVE-2022-21681 high CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H yes
GHSA-rrrm-qjm4-v8hf CVE-2022-21680 high CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H yes
Dependencies 110 packages

110 packages in the resolved dependency tree · 109 deprecated · 34 stale.

The dependency tree was only partially resolved, so these counts may be incomplete.

MCP tools — 23 exposed · ~2,909 tokens

The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability.

Tool Tokens
jira_add_attachment ~290

Uploads an attachment (image, document, etc.) to a Jira issue. **EFFICIENT METHOD (recommended for large files):** - fileUrl: Provide URL to remote file - MINIMAL tokens (~60 tokens) Example: Upload to Dropbox/S3/imgur first, then provide URL **DIRECT METHOD (for small files):** - content: Base64 encoded content - WARNING: HIGH token cost (~330,000 tokens for 1MB file) Only suitable for small files (< 500 KB) Returns attachment metadata including ID and download URL. To reference the image in a comment or description, use wiki markup: !filename.png! or !filename.png|thumbnail!

NameTypeReqDescription
contentstringBase64-encoded or plain text content. WARNING: HIGH token cost (~330k tokens for 1MB file). Use fileUrl for large files or upload to cloud storage first.
fileUrlstringURL to download file from (efficient for remote files, ~60 tokens). Upload large files to Dropbox/S3/imgur first, then use URL.
filenamestringyesName of the file to attach
isBase64booleanWhether content is base64-encoded (default: true). Set to false for plain text files.
issueKeystringyesIssue key to add attachment to (e.g., PROJECT-123)

No output schema declared.

No examples provided.

jira_add_comment ~135

Adds a comment to an issue. Supports visibility restrictions for groups or roles. Comment format is controlled by the "format" parameter (default: markdown). Returns the created comment with author details and timestamp.

NameTypeReqDescription
bodystringyesComment body text
formatstringComment format: "markdown" (converts Markdown to ADF), "adf" (use as-is ADF object), "plain" (converts plain text to ADF with basic formatting). Default: "markdown"
issueKeystringyesIssue key to add comment to
visibilityobjectComment visibility restrictions

No output schema declared.

No examples provided.

jira_create_issue ~289

Creates a new Jira issue in the specified project. Supports setting issue type, priority, assignee, labels, components, and custom fields. Description format is controlled by the "format" parameter (default: markdown). For required custom fields, supply them via customFields (e.g., { "customfield_12345": { id: "..." } }). Returns the created issue with all details.

NameTypeReqDescription
assigneestringAssignee account ID
componentsarrayComponent names
customFieldsobjectAdditional Jira field mappings, e.g. { "customfield_12345": value }. Use for required custom fields.
descriptionIssue description. Accepts plain text or ADF object.
formatstringDescription format: "markdown" (converts Markdown to ADF), "adf" (use as-is ADF object), "plain" (converts plain text to ADF with basic formatting). Default: "markdown"
issueTypestringyesIssue type (e.g., Bug, Story, Task)
labelsarrayIssue labels
prioritystringIssue priority
projectKeystringyesProject key where the issue will be created
returnIssuebooleanWhen false, skip fetching full issue after creation
summarystringyesIssue summary/title

No output schema declared.

No examples provided.

jira_create_issue_link ~103

Creates a link between two Jira issues. Supports common link types like "blocks", "relates", "duplicates", and "clones". Use this to establish relationships between issues.

NameTypeReqDescription
fromIssuestringyesSource issue key
linkTypestringyesLink type: "blocks", "is blocked by", "relates", "duplicates", "clones", or custom link type name
toIssuestringyesTarget issue key

No output schema declared.

No examples provided.

jira_create_subtask ~191

Creates a subtask under an existing parent issue. Automatically determines the correct project and subtask issue type. Supports setting priority, assignee, labels, and components. Description format is controlled by the "format" parameter (default: markdown).

NameTypeReqDescription
assigneestringAssignee account ID
componentsarrayComponent names
descriptionSubtask description. Accepts plain text or ADF object.
formatstringDescription format: "markdown" (converts Markdown to ADF), "adf" (use as-is ADF object), "plain" (converts plain text to ADF with basic formatting). Default: "markdown"
labelsarraySubtask labels
parentIssueKeystringyesParent issue key
prioritystringSubtask priority
summarystringyesSubtask summary/title

No output schema declared.

No examples provided.

jira_delete_attachment ~43

Deletes an attachment from Jira by its attachment ID. Use jira_get_attachments to find attachment IDs.

NameTypeReqDescription
attachmentIdstringyesID of the attachment to delete

No output schema declared.

No examples provided.

jira_get_attachments ~56

Lists all attachments on a Jira issue. Returns attachment metadata including filename, size, MIME type, author, and download URL.

NameTypeReqDescription
issueKeystringyesIssue key to get attachments for (e.g., PROJECT-123)

No output schema declared.

No examples provided.

jira_get_comments ~122

Retrieves all comments for a Jira issue. Returns comment author, content, timestamps, and visibility settings. Supports pagination for issues with many comments.

NameTypeReqDescription
issueKeystringyesIssue key to get comments for (e.g., PROJECT-123)
maxResultsnumberMaximum number of comments to return (default: 50)
orderBystringSort order for comments: "created" (oldest first), "-created" (newest first)
startAtnumberIndex of first comment to return (for pagination)

No output schema declared.

No examples provided.

jira_get_create_meta ~89

Retrieves create metadata for a project, showing all available fields (including custom fields) for creating issues. Shows required vs optional fields, field types, and allowed values. Use this before creating issues to discover what fields are needed.

NameTypeReqDescription
issueTypeNamestringSpecific issue type name to get metadata for (optional)
projectKeystringyesProject key to get create metadata for

No output schema declared.

No examples provided.

jira_get_custom_fields ~64

Retrieves all custom fields available in Jira. Shows custom field names, IDs (e.g., customfield_10071), and types. Useful for discovering what custom fields exist and their identifiers.

NameTypeReqDescription
projectKeystringProject key to filter custom fields (optional)

No output schema declared.

No examples provided.

jira_get_issue ~142

Retrieve details for a specific Jira issue by key or URL. Use this when the user mentions an issue like "PAYWALL-943" or pastes a Jira link (e.g., https://your.atlassian.net/browse/PAYWALL-943). Returns status, assignee, priority, project, type, labels, components, timestamps, and description.

NameTypeReqDescription
expandarrayAdditional issue details to include
fieldsarraySpecific fields to retrieve
issueKeystringyesIssue key or full Jira URL (e.g., PROJECT-123 or https://your.atlassian.net/browse/PROJECT-123)

No output schema declared.

No examples provided.

jira_get_issue_graph ~228

Build a dependency/relationship graph starting from a seed issue. Returns a map of connected issues (parent/child hierarchy, blocks, relates to, duplicates, etc.) with nodes and edges, plus a Mermaid diagram for visualization. Use this to understand how issues are connected across epics, stories, and subtasks.

NameTypeReqDescription
directionstringWhich link directions to follow: "all", "inward", or "outward" (default: "all")
includeHierarchybooleanInclude parent/child/subtask edges (default: true)
issueKeystringyesSeed issue key to start graph traversal from (e.g., PROJECT-123)
linkTypesarrayFilter to specific link types (e.g., ["Blocks", "Relates"]). If omitted, includes all link types.
maxDepthnumberMaximum BFS traversal depth from seed issue (default: 2, max: 5)
maxNodesnumberMaximum number of nodes to include in the graph (default: 50, max: 200)

No output schema declared.

No examples provided.

jira_get_issue_types ~59

Retrieves available issue types. Can get global issue types or project-specific issue types including regular issues and subtasks (Bug, Story, Task, Epic, etc.).

NameTypeReqDescription
projectKeystringProject key to get issue types for specific project

No output schema declared.

No examples provided.

jira_get_my_issues ~107

Retrieves issues assigned to current user, sorted by most recently updated first. Supports pagination and field selection. For pagination, use nextPageToken from previous response.

NameTypeReqDescription
expandarrayAdditional details to include
fieldsarraySpecific fields to retrieve
maxResultsnumberMaximum number of results to return per page
nextPageTokenstringToken for pagination. Omit for first page, use value from previous response for next page.

No output schema declared.

No examples provided.

jira_get_priorities ~35

Retrieves available priorities (e.g., Highest, High, Medium, Low, Lowest). Returns IDs, names, and descriptions.

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

jira_get_project_info ~63

Retrieves detailed information about a project (components, versions, issue types, roles, insights). More comprehensive than the basic project list.

NameTypeReqDescription
expandarrayAdditional project details to include
projectKeystringyesProject key to get detailed information for

No output schema declared.

No examples provided.

jira_get_statuses ~72

Retrieves available statuses (global or project-specific, e.g., To Do, In Progress, Done). Returns status categories and workflow information.

NameTypeReqDescription
issueTypeIdstringIssue type ID to get statuses for specific issue type
projectKeystringProject key to get statuses for specific project

No output schema declared.

No examples provided.

jira_get_transitions ~60

Retrieves all available workflow transitions for a Jira issue. Use this to discover which status changes are possible for an issue before calling jira_transition_issue.

NameTypeReqDescription
issueKeystringyesIssue key to get available transitions for (e.g., PROJECT-123)

No output schema declared.

No examples provided.

jira_get_users ~107

Search for users by name, email, username, or account ID. Returns display name, email, account status, and account type. Supports pagination.

NameTypeReqDescription
accountIdstringSpecific account ID to search for
maxResultsnumberMaximum number of results to return
querystringSearch query for user name or email
startAtnumberIndex of first result to return
usernamestringSpecific username to search for

No output schema declared.

No examples provided.

jira_get_visible_projects ~55

Retrieves all projects accessible to the authenticated user. Returns project keys, names, descriptions, and basic metadata.

NameTypeReqDescription
expandarrayAdditional project details to include
recentnumberLimit to recently accessed projects

No output schema declared.

No examples provided.

jira_search_issues ~134

Search for Jira issues using JQL. Supports complex queries with pagination and field selection. Examples: "project = PROJECT AND status = Open", "assignee = currentUser()". For pagination, use nextPageToken from previous response.

NameTypeReqDescription
expandarrayAdditional details to include
fieldsarraySpecific fields to retrieve
jqlstringyesJQL query string
maxResultsnumberMaximum number of results to return per page
nextPageTokenstringToken for pagination. Omit for first page, use value from previous response for next page.

No output schema declared.

No examples provided.

jira_transition_issue ~228

Transitions a Jira issue to a new workflow status (e.g., "To Do" -> "In Progress" -> "Done"). Use jira_get_transitions first to discover available transitions. Supports adding a comment and setting resolution during the transition.

NameTypeReqDescription
commentstringOptional comment to add when transitioning the issue
formatstringComment format: "markdown" (converts Markdown to ADF), "adf" (use as-is ADF object), "plain" (converts plain text to ADF with basic formatting). Default: "markdown"
issueKeystringyesIssue key to transition (e.g., PROJECT-123)
resolutionstringResolution name when transitioning to a resolved/done status (e.g., "Done", "Fixed")
transitionIdstringID of the transition to perform. Use jira_get_transitions to find available transition IDs.
transitionNamestringName of the transition to perform (e.g., "In Progress", "Done"). Case-insensitive. Alternative to transitionId.

No output schema declared.

No examples provided.

jira_update_issue ~237

Updates an existing Jira issue by its key. Supports updating summary, description, priority, assignee, labels, and components. Description format is controlled by the "format" parameter (default: markdown). Only specified fields will be updated.

NameTypeReqDescription
assigneestringNew assignee account ID
componentsarrayNew components (replaces existing)
descriptionNew description. Accepts plain text or ADF object.
formatstringDescription format: "markdown" (converts Markdown to ADF), "adf" (use as-is ADF object), "plain" (converts plain text to ADF with basic formatting). Default: "markdown"
issueKeystringyesIssue key to update
labelsarrayNew labels (replaces existing)
parentstringNew parent issue key (e.g., PROJECT-100). Set to empty string to remove the parent.
prioritystringNew priority
returnIssuebooleanWhen false, skip fetching full issue after update
summarystringNew summary

No output schema declared.

No examples provided.