This release includes 2 breaking changes for platform teams planning a safe upgrade.
Published 4mo
MCP SaaS Integrations
✓ No known CVEs patched
✓ No known CVEs patched in this version
Topics
platform-commercial
status-live
Affected surfaces
auth
breaking_upgrade
Summary
AI summaryWeb server now binds to localhost and CORS limited to localhost origins.
Full changelog
Changed
- Web server binds to
127.0.0.1(localhost only) - CORS accepts localhost origins only
- File exports write to
~/.slack-mcp-exports/
Upgrade:
npm update -g @jtalk22/slack-mcp
Breaking Changes
- Web server binds exclusively to `127.0.0.1` (localhost only)
- CORS policy now accepts only localhost origins
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About jtalk22/slack-mcp-server
Your complete Slack context for Claude—DMs, channels, threads, search. No OAuth apps, no admin approval. `--setup` and done, 11 tools, auto-refresh.
Related context
Beta — feedback welcome: [email protected]