Back to Browse

Healthcare Fhir MCP Server

Developer ToolsUse Caution1.2MCP RegistryLocal
Free

Server data from the Official MCP Registry

Healthcare Fhir MCP Server by MEOK AI Labs

About

Healthcare Fhir MCP Server by MEOK AI Labs

Security Report

1.2
Use Caution1.2Critical Risk

This MCP server has multiple critical security issues that warrant immediate remediation. The code contains a hardcoded path to internal infrastructure (sys.path.insert with ~/clawd/meok-labs-engine), suspicious authentication bypass logic, and an unvetted external dependency call to a verification endpoint. Additionally, the 'create_observation' tool claims to be read-only in documentation while actually performing POST operations that modify external FHIR servers. The authentication layer is underdeveloped and the rate-limiting mechanism is trivial. These issues significantly exceed the security baseline expected for a healthcare data tool. Supply chain analysis found 9 known vulnerabilities in dependencies (0 critical, 5 high severity). Package verification found 1 issue.

4 files analyzed · 22 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

HTTP Network Access

Connects to external APIs or services over the internet.

env_vars

Check that this permission is expected for this type of plugin.

File System Read

Reads files on your machine. Normal for tools that analyze or process local data.

How to Install

Add this to your MCP configuration file:

{
  "mcpServers": {
    "io-github-csoai-org-healthcare-fhir-mcp": {
      "args": [
        "-y",
        "healthcare-fhir-mcp"
      ],
      "command": "npx"
    }
  }
}

Reviews

No reviews yet

Be the first to review this server!