Skip to content

History of pdfnative MCP — PDF/A & PDF/X-4 generation, PAdES signing & introspection

io.github.Nizoka/pdfnative-mcp · Registry status: active

Report data on this entry

Every published change to this entry, most recent first.

Changes
2026-09-25Declared version: 1.6.0 → 1.7.0
2026-09-25Description (raw): PDF MCP server: generate PDF/A, sign & verify PAdES (LTV), forms, merge, split, encrypt. 28 tools → PDF MCP: generate PDF/A & PDF/X-4, sign & verify PAdES (LTV), forms, merge, split, encrypt. 28 tools
2026-09-25Last changed in the registry (raw): 2026-08-23 → 2026-09-24
2026-09-25First listed in the registry (raw): 2026-08-23 → 2026-09-24
2026-09-25Environment variable descriptions (raw): PDFNATIVE_MCP_CACHE_DIR=Opt-in content-addressed response cache directory (SHA-256 keyed, 1h TTL, 256 MiB LRU, plaintext at rest). Never caches encrypt/decrypt, sign, timestamp, add_ltv, update_metadata, encrypted builds or file output. · PDFNATIVE_MCP_HTTP_TOKEN=Opt-in bearer token for the HTTP transport (>= 16 chars, no whitespace). When set, /mcp requires 'Authorization: Bearer <token>' or answers 401. Never logged. · PDFNATIVE_MCP_MAX_INFLATE_BYTES=Per-stream FlateDecode decompression cap in bytes (zip-bomb mitigation; default 104857600 = 100 MiB). Integer >= 1024; an invalid value refuses to start the server. · PDFNATIVE_MCP_NETWORK_ALLOWED_HOSTS=Comma-separated allow-list of OCSP / CRL responder hosts ('host', 'host:port' or '*.suffix'). Mandatory when PDFNATIVE_MCP_REVOCATION is set: responder URLs found in certificates are fetched only if the host matches (http(s) only, no credentials, no redirects, internal addresses rejected unless listed verbatim). · PDFNATIVE_MCP_NETWORK_TIMEOUT_MS=Per-request timeout for TSA / OCSP / CRL calls in milliseconds, 1000-120000 (default 10000). · PDFNATIVE_MCP_OUTPUT_DIR=Absolute path of a sandboxed directory where outputMode='file' may write PDFs. Unset: every tool returns base64 only (file output disabled). · PDFNATIVE_MCP_PORT=Serve Streamable HTTP on this loopback port instead of stdio (MCP 2026-07-28, stateless). Unauthenticated unless PDFNATIVE_MCP_HTTP_TOKEN is set. · PDFNATIVE_MCP_REVOCATION='ocsp', 'crl' or 'ocsp,crl': enables online revocation collection for add_ltv mode='online' (PAdES B-LT). Unset: that mode fails with REVOCATION_NOT_CONFIGURED; mode='offline' stays fully offline. Requires PDFNATIVE_MCP_NETWORK_ALLOWED_HOSTS. · PDFNATIVE_MCP_TSA_AUTH=Optional Authorization header value sent to the TSA (e.g. 'Basic ...' or 'Bearer ...'). Never logged or echoed. · PDFNATIVE_MCP_TSA_URL=http(s) URL of the RFC 3161 timestamp authority used by sign_pdf timestamp=true and timestamp_pdf (PAdES B-T / B-LTA). Unset: those calls fail with TSA_NOT_CONFIGURED and no network request is made. Tool arguments can never supply a URL. → PDFNATIVE_MCP_CACHE_DIR=Opt-in content-addressed response cache directory (SHA-256 keyed, 1h TTL, 256 MiB LRU, plaintext at rest). Never caches encrypt/decrypt, sign, timestamp, add_ltv, update_metadata, encrypted builds or file output. · PDFNATIVE_MCP_CREATION_DATE=ISO 8601 instant with a time zone (e.g. 2026-01-01T00:00:00Z) pinned as the creation date of every generated document: reproducible bytes on any host. A call's own creationDate still wins. An invalid value refuses to start the server. · PDFNATIVE_MCP_HTTP_TOKEN=Opt-in bearer token for the HTTP transport (>= 16 chars, no whitespace). When set, /mcp requires 'Authorization: Bearer <token>' or answers 401. Never logged. · PDFNATIVE_MCP_MAX_INFLATE_BYTES=Per-stream FlateDecode decompression cap in bytes (zip-bomb mitigation; default 104857600 = 100 MiB). Integer >= 1024; an invalid value refuses to start the server. · PDFNATIVE_MCP_NETWORK_ALLOWED_HOSTS=Comma-separated allow-list of OCSP / CRL responder hosts ('host', 'host:port' or '*.suffix'). Mandatory when PDFNATIVE_MCP_REVOCATION is set: responder URLs found in certificates are fetched only if the host matches (http(s) only, no credentials, no redirects, internal addresses rejected unless listed verbatim). · PDFNATIVE_MCP_NETWORK_TIMEOUT_MS=Per-request timeout for TSA / OCSP / CRL calls in milliseconds, 1000-120000 (default 10000). · PDFNATIVE_MCP_OUTPUT_DIR=Absolute path of a sandboxed directory where outputMode='file' may write PDFs. Unset: every tool returns base64 only (file output disabled). · PDFNATIVE_MCP_PORT=Serve Streamable HTTP on this loopback port instead of stdio (MCP 2026-07-28, stateless). Unauthenticated unless PDFNATIVE_MCP_HTTP_TOKEN is set. · PDFNATIVE_MCP_REVOCATION='ocsp', 'crl' or 'ocsp,crl': enables online revocation collection for add_ltv mode='online' (PAdES B-LT). Unset: that mode fails with REVOCATION_NOT_CONFIGURED; mode='offline' stays fully offline. Requires PDFNATIVE_MCP_NETWORK_ALLOWED_HOSTS. · PDFNATIVE_MCP_TSA_AUTH=Optional Authorization header value sent to the TSA (e.g. 'Basic ...' or 'Bearer ...'). Never logged or echoed. · PDFNATIVE_MCP_TSA_URL=http(s) URL of the RFC 3161 timestamp authority used by sign_pdf timestamp=true and timestamp_pdf (PAdES B-T / B-LTA). Unset: those calls fail with TSA_NOT_CONFIGURED and no network request is made. Tool arguments can never supply a URL. · SOURCE_DATE_EPOCH=reproducible-builds.org convention: integer seconds since the Unix epoch, used as the pinned creation date when PDFNATIVE_MCP_CREATION_DATE is unset. An invalid value refuses to start the server.
2026-09-25Connection paths (source structure): {"packages":[{"registryType":"npm","identifier":"pdfnative-mcp","version":"1.6.0","runtimeHint":"npx","transport":"stdio","environment":[{"name":"PDFNATIVE_MCP_OUTPUT_DIR","description":"Absolute path of a sandboxed directory where outputMode='file' may write PDFs. Unset: every tool returns base64 only (file output disabled).","format":"filepath","required":false,"secret":false},{"name":"PDFNATIVE_MCP_CACHE_DIR","description":"Opt-in content-addressed response cache directory (SHA-256 keyed, 1h TTL, 256 MiB LRU, plaintext at rest). Never caches encrypt/decrypt, sign, timestamp, add_ltv, update_metadata, encrypted builds or file output.","format":"filepath","required":false,"secret":false},{"name":"PDFNATIVE_MCP_PORT","description":"Serve Streamable HTTP on this loopback port instead of stdio (MCP 2026-07-28, stateless). Unauthenticated unless PDFNATIVE_MCP_HTTP_TOKEN is set.","format":"number","required":false,"secret":false},{"name":"PDFNATIVE_MCP_HTTP_TOKEN","description":"Opt-in bearer token for the HTTP transport (>= 16 chars, no whitespace). When set, /mcp requires 'Authorization: Bearer <token>' or answers 401. Never logged.","required":false,"secret":true},{"name":"PDFNATIVE_MCP_MAX_INFLATE_BYTES","description":"Per-stream FlateDecode decompression cap in bytes (zip-bomb mitigation; default 104857600 = 100 MiB). Integer >= 1024; an invalid value refuses to start the server.","format":"number","required":false,"secret":false},{"name":"PDFNATIVE_MCP_TSA_URL","description":"http(s) URL of the RFC 3161 timestamp authority used by sign_pdf timestamp=true and timestamp_pdf (PAdES B-T / B-LTA). Unset: those calls fail with TSA_NOT_CONFIGURED and no network request is made. Tool arguments can never supply a URL.","required":false,"secret":false},{"name":"PDFNATIVE_MCP_TSA_AUTH","description":"Optional Authorization header value sent to the TSA (e.g. 'Basic ...' or 'Bearer ...'). Never logged or echoed.","required":false,"secret":true},{"name":"PDFNATIVE_MCP_REVOCATION","description":"'ocsp', 'crl' or 'ocsp,crl': enables online revocation collection for add_ltv mode='online' (PAdES B-LT). Unset: that mode fails with REVOCATION_NOT_CONFIGURED; mode='offline' stays fully offline. Requires PDFNATIVE_MCP_NETWORK_ALLOWED_HOSTS.","required":false,"secret":false},{"name":"PDFNATIVE_MCP_NETWORK_ALLOWED_HOSTS","description":"Comma-separated allow-list of OCSP / CRL responder hosts ('host', 'host:port' or '*.suffix'). Mandatory when PDFNATIVE_MCP_REVOCATION is set: responder URLs found in certificates are fetched only if the host matches (http(s) only, no credentials, no redirects, internal addresses rejected unless listed verbatim).","required":false,"secret":false},{"name":"PDFNATIVE_MCP_NETWORK_TIMEOUT_MS","description":"Per-request timeout for TSA / OCSP / CRL calls in milliseconds, 1000-120000 (default 10000).","format":"number","required":false,"secret":false}],"additional_arguments_declared":true}],"remotes":[]} → {"packages":[{"registryType":"npm","identifier":"pdfnative-mcp","version":"1.7.0","runtimeHint":"npx","transport":"stdio","environment":[{"name":"PDFNATIVE_MCP_OUTPUT_DIR","description":"Absolute path of a sandboxed directory where outputMode='file' may write PDFs. Unset: every tool returns base64 only (file output disabled).","format":"filepath","required":false,"secret":false},{"name":"PDFNATIVE_MCP_CACHE_DIR","description":"Opt-in content-addressed response cache directory (SHA-256 keyed, 1h TTL, 256 MiB LRU, plaintext at rest). Never caches encrypt/decrypt, sign, timestamp, add_ltv, update_metadata, encrypted builds or file output.","format":"filepath","required":false,"secret":false},{"name":"PDFNATIVE_MCP_PORT","description":"Serve Streamable HTTP on this loopback port instead of stdio (MCP 2026-07-28, stateless). Unauthenticated unless PDFNATIVE_MCP_HTTP_TOKEN is set.","format":"number","required":false,"secret":false},{"name":"PDFNATIVE_MCP_HTTP_TOKEN","description":"Opt-in bearer token for the HTTP transport (>= 16 chars, no whitespace). When set, /mcp requires 'Authorization: Bearer <token>' or answers 401. Never logged.","required":false,"secret":true},{"name":"PDFNATIVE_MCP_MAX_INFLATE_BYTES","description":"Per-stream FlateDecode decompression cap in bytes (zip-bomb mitigation; default 104857600 = 100 MiB). Integer >= 1024; an invalid value refuses to start the server.","format":"number","required":false,"secret":false},{"name":"PDFNATIVE_MCP_CREATION_DATE","description":"ISO 8601 instant with a time zone (e.g. 2026-01-01T00:00:00Z) pinned as the creation date of every generated document: reproducible bytes on any host. A call's own creationDate still wins. An invalid value refuses to start the server.","required":false,"secret":false},{"name":"SOURCE_DATE_EPOCH","description":"reproducible-builds.org convention: integer seconds since the Unix epoch, used as the pinned creation date when PDFNATIVE_MCP_CREATION_DATE is unset. An invalid value refuses to start the server.","format":"number","required":false,"secret":false},{"name":"PDFNATIVE_MCP_TSA_URL","description":"http(s) URL of the RFC 3161 timestamp authority used by sign_pdf timestamp=true and timestamp_pdf (PAdES B-T / B-LTA). Unset: those calls fail with TSA_NOT_CONFIGURED and no network request is made. Tool arguments can never supply a URL.","required":false,"secret":false},{"name":"PDFNATIVE_MCP_TSA_AUTH","description":"Optional Authorization header value sent to the TSA (e.g. 'Basic ...' or 'Bearer ...'). Never logged or echoed.","required":false,"secret":true},{"name":"PDFNATIVE_MCP_REVOCATION","description":"'ocsp', 'crl' or 'ocsp,crl': enables online revocation collection for add_ltv mode='online' (PAdES B-LT). Unset: that mode fails with REVOCATION_NOT_CONFIGURED; mode='offline' stays fully offline. Requires PDFNATIVE_MCP_NETWORK_ALLOWED_HOSTS.","required":false,"secret":false},{"name":"PDFNATIVE_MCP_NETWORK_ALLOWED_HOSTS","description":"Comma-separated allow-list of OCSP / CRL responder hosts ('host', 'host:port' or '*.suffix'). Mandatory when PDFNATIVE_MCP_REVOCATION is set: responder URLs found in certificates are fetched only if the host matches (http(s) only, no credentials, no redirects, internal addresses rejected unless listed verbatim).","required":false,"secret":false},{"name":"PDFNATIVE_MCP_NETWORK_TIMEOUT_MS","description":"Per-request timeout for TSA / OCSP / CRL calls in milliseconds, 1000-120000 (default 10000).","format":"number","required":false,"secret":false}],"additional_arguments_declared":true}],"remotes":[]}
2026-09-25Package versions (raw): 1.6.0 → 1.7.0
2026-09-25Environment variables (raw): PDFNATIVE_MCP_OUTPUT_DIR, PDFNATIVE_MCP_CACHE_DIR, PDFNATIVE_MCP_PORT, PDFNATIVE_MCP_HTTP_TOKEN, PDFNATIVE_MCP_MAX_INFLATE_BYTES, PDFNATIVE_MCP_TSA_URL, PDFNATIVE_MCP_TSA_AUTH, PDFNATIVE_MCP_REVOCATION, PDFNATIVE_MCP_NETWORK_ALLOWED_HOSTS, PDFNATIVE_MCP_NETWORK_TIMEOUT_MS → PDFNATIVE_MCP_OUTPUT_DIR, PDFNATIVE_MCP_CACHE_DIR, PDFNATIVE_MCP_PORT, PDFNATIVE_MCP_HTTP_TOKEN, PDFNATIVE_MCP_MAX_INFLATE_BYTES, PDFNATIVE_MCP_CREATION_DATE, SOURCE_DATE_EPOCH, PDFNATIVE_MCP_TSA_URL, PDFNATIVE_MCP_TSA_AUTH, PDFNATIVE_MCP_REVOCATION, PDFNATIVE_MCP_NETWORK_ALLOWED_HOSTS, PDFNATIVE_MCP_NETWORK_TIMEOUT_MS
2026-09-25Name: pdfnative MCP — PDF generation, PAdES signing & introspection → pdfnative MCP — PDF/A & PDF/X-4 generation, PAdES signing & introspection
2026-09-08Connection paths (source structure): – → {"packages":[{"registryType":"npm","identifier":"pdfnative-mcp","version":"1.6.0","runtimeHint":"npx","transport":"stdio","environment":[{"name":"PDFNATIVE_MCP_OUTPUT_DIR","description":"Absolute path of a sandboxed directory where outputMode='file' may write PDFs. Unset: every tool returns base64 only (file output disabled).","format":"filepath","required":false,"secret":false},{"name":"PDFNATIVE_MCP_CACHE_DIR","description":"Opt-in content-addressed response cache directory (SHA-256 keyed, 1h TTL, 256 MiB LRU, plaintext at rest). Never caches encrypt/decrypt, sign, timestamp, add_ltv, update_metadata, encrypted builds or file output.","format":"filepath","required":false,"secret":false},{"name":"PDFNATIVE_MCP_PORT","description":"Serve Streamable HTTP on this loopback port instead of stdio (MCP 2026-07-28, stateless). Unauthenticated unless PDFNATIVE_MCP_HTTP_TOKEN is set.","format":"number","required":false,"secret":false},{"name":"PDFNATIVE_MCP_HTTP_TOKEN","description":"Opt-in bearer token for the HTTP transport (>= 16 chars, no whitespace). When set, /mcp requires 'Authorization: Bearer <token>' or answers 401. Never logged.","required":false,"secret":true},{"name":"PDFNATIVE_MCP_MAX_INFLATE_BYTES","description":"Per-stream FlateDecode decompression cap in bytes (zip-bomb mitigation; default 104857600 = 100 MiB). Integer >= 1024; an invalid value refuses to start the server.","format":"number","required":false,"secret":false},{"name":"PDFNATIVE_MCP_TSA_URL","description":"http(s) URL of the RFC 3161 timestamp authority used by sign_pdf timestamp=true and timestamp_pdf (PAdES B-T / B-LTA). Unset: those calls fail with TSA_NOT_CONFIGURED and no network request is made. Tool arguments can never supply a URL.","required":false,"secret":false},{"name":"PDFNATIVE_MCP_TSA_AUTH","description":"Optional Authorization header value sent to the TSA (e.g. 'Basic ...' or 'Bearer ...'). Never logged or echoed.","required":false,"secret":true},{"name":"PDFNATIVE_MCP_REVOCATION","description":"'ocsp', 'crl' or 'ocsp,crl': enables online revocation collection for add_ltv mode='online' (PAdES B-LT). Unset: that mode fails with REVOCATION_NOT_CONFIGURED; mode='offline' stays fully offline. Requires PDFNATIVE_MCP_NETWORK_ALLOWED_HOSTS.","required":false,"secret":false},{"name":"PDFNATIVE_MCP_NETWORK_ALLOWED_HOSTS","description":"Comma-separated allow-list of OCSP / CRL responder hosts ('host', 'host:port' or '*.suffix'). Mandatory when PDFNATIVE_MCP_REVOCATION is set: responder URLs found in certificates are fetched only if the host matches (http(s) only, no credentials, no redirects, internal addresses rejected unless listed verbatim).","required":false,"secret":false},{"name":"PDFNATIVE_MCP_NETWORK_TIMEOUT_MS","description":"Per-request timeout for TSA / OCSP / CRL calls in milliseconds, 1000-120000 (default 10000).","format":"number","required":false,"secret":false}],"additional_arguments_declared":true}],"remotes":[]}
2026-08-26Field of use, derived from the vendor description: – → Documents
2026-08-26Description (raw): – → PDF MCP server: generate PDF/A, sign & verify PAdES (LTV), forms, merge, split, encrypt. 28 tools
2026-08-24Declared version: 1.5.0 → 1.6.0
2026-08-24Path argument present: no → yes
2026-08-24Last changed in the registry (raw): 2026-07-21 → 2026-08-23
2026-08-24First listed in the registry (raw): 2026-07-21 → 2026-08-23
2026-08-24Environment variable descriptions (raw): – → PDFNATIVE_MCP_CACHE_DIR=Opt-in content-addressed response cache directory (SHA-256 keyed, 1h TTL, 256 MiB LRU, plaintext at rest). Never caches encrypt/decrypt, sign, timestamp, add_ltv, update_metadata, encrypted builds or file output. · PDFNATIVE_MCP_HTTP_TOKEN=Opt-in bearer token for the HTTP transport (>= 16 chars, no whitespace). When set, /mcp requires 'Authorization: Bearer <token>' or answers 401. Never logged. · PDFNATIVE_MCP_MAX_INFLATE_BYTES=Per-stream FlateDecode decompression cap in bytes (zip-bomb mitigation; default 104857600 = 100 MiB). Integer >= 1024; an invalid value refuses to start the server. · PDFNATIVE_MCP_NETWORK_ALLOWED_HOSTS=Comma-separated allow-list of OCSP / CRL responder hosts ('host', 'host:port' or '*.suffix'). Mandatory when PDFNATIVE_MCP_REVOCATION is set: responder URLs found in certificates are fetched only if the host matches (http(s) only, no credentials, no redirects, internal addresses rejected unless listed verbatim). · PDFNATIVE_MCP_NETWORK_TIMEOUT_MS=Per-request timeout for TSA / OCSP / CRL calls in milliseconds, 1000-120000 (default 10000). · PDFNATIVE_MCP_OUTPUT_DIR=Absolute path of a sandboxed directory where outputMode='file' may write PDFs. Unset: every tool returns base64 only (file output disabled). · PDFNATIVE_MCP_PORT=Serve Streamable HTTP on this loopback port instead of stdio (MCP 2026-07-28, stateless). Unauthenticated unless PDFNATIVE_MCP_HTTP_TOKEN is set. · PDFNATIVE_MCP_REVOCATION='ocsp', 'crl' or 'ocsp,crl': enables online revocation collection for add_ltv mode='online' (PAdES B-LT). Unset: that mode fails with REVOCATION_NOT_CONFIGURED; mode='offline' stays fully offline. Requires PDFNATIVE_MCP_NETWORK_ALLOWED_HOSTS. · PDFNATIVE_MCP_TSA_AUTH=Optional Authorization header value sent to the TSA (e.g. 'Basic ...' or 'Bearer ...'). Never logged or echoed. · PDFNATIVE_MCP_TSA_URL=http(s) URL of the RFC 3161 timestamp authority used by sign_pdf timestamp=true and timestamp_pdf (PAdES B-T / B-LTA). Unset: those calls fail with TSA_NOT_CONFIGURED and no network request is made. Tool arguments can never supply a URL.
2026-08-24Environment variable formats (raw): – → filepath, number
2026-08-24Runtime hints (raw): – → npx
2026-08-24Package versions (raw): 1.5.0 → 1.6.0
2026-08-24Path environment variables (raw): – → PDFNATIVE_MCP_CACHE_DIR, PDFNATIVE_MCP_OUTPUT_DIR
2026-08-24Environment variables (raw): – → PDFNATIVE_MCP_OUTPUT_DIR, PDFNATIVE_MCP_CACHE_DIR, PDFNATIVE_MCP_PORT, PDFNATIVE_MCP_HTTP_TOKEN, PDFNATIVE_MCP_MAX_INFLATE_BYTES, PDFNATIVE_MCP_TSA_URL, PDFNATIVE_MCP_TSA_AUTH, PDFNATIVE_MCP_REVOCATION, PDFNATIVE_MCP_NETWORK_ALLOWED_HOSTS, PDFNATIVE_MCP_NETWORK_TIMEOUT_MS
2026-08-24Homepage: https://github.com/Nizoka/pdfnative-mcp → https://github.com/Nizoka/pdfnative-mcp#readme
2026-08-24Name: io.github.Nizoka/pdfnative-mcp → pdfnative MCP — PDF generation, PAdES signing & introspection
2026-08-16Last changed in the registry (raw): – → 2026-07-21
2026-08-16First listed in the registry (raw): – → 2026-07-21
2026-08-16Registry status message (raw): – → –
2026-08-16Schema version of the raw record (raw): – → https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json
2026-08-16Icon formats (raw): – → –
2026-08-16Environment variable descriptions (raw): – → –
2026-08-16Environment variable formats (raw): – → –
2026-08-16Delivery form (raw): – → package
2026-08-16Remote hosts (raw): – → –
2026-08-16Remote URLs (raw): – → –
2026-08-16Runtime hints (raw): – → –
2026-08-16Package versions (raw): – → 1.5.0
2026-08-16Package identifiers (raw): – → pdfnative-mcp
2026-08-16Repository subfolder (raw): – → –
2026-08-16Repository platform (raw): – → github
2026-08-16Path environment variables (raw): – → –
2026-08-16Required secret headers (raw): – → –
2026-08-06Declared version: – → 1.5.0
2026-08-06Repository URL listed: – → yes
2026-08-06Path argument present: – → no
2026-08-06Execution location: – → local
2026-08-06Required secrets declared: – → no
2026-08-06Package registries (raw): – → npm
2026-08-06Repository (raw): – → https://github.com/Nizoka/pdfnative-mcp
2026-08-06Path arguments (raw): – → –
2026-08-06Transports (raw): – → stdio

This view pages forward and states no total: individual rows are dropped only at output time when their evidence is missing. A counted total would be larger than what is shown.

tracevero · https://tracevero.com/mcp/io-github-nizoka-pdfnative-mcp/aenderungen