This release includes 2 security fixes for security teams reviewing exposed deployments.
Topics
+14 more
Summary
AI summaryTool responses are more compact, calendar events read correctly, contact lookups stay small, notes/emails return clean text, and security safeguards prevent token exposure and require confirmation for updates.
Full changelog
This update makes Local MCP cleaner, leaner, and safer. Tool responses are more compact and easier for your AI to use, all-day calendar events read correctly, contact lookups stay small when several people match, and notes and emails come back as clean readable text instead of raw HTML. We also tightened privacy and safety: sensitive tokens are never exposed to the AI, and updates and other one-step actions now confirm before running.
Security Fixes
- Sensitive tokens are never exposed to the AI
- Updates and one‑step actions now require confirmation before running
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About lanchuske/local-mcp
Connect Claude, Cursor, Windsurf and other AI agents to macOS native apps: Mail, Calendar, Contacts, Reminders, Notes, iMessage, Finder, Safari, OmniFocus, Microsoft Teams, Outlook, OneDrive, and Office documents. 82 tools. Runs entirely on your Mac — no cloud, no tokens, no API keys.
Related context
Beta — feedback welcome: [email protected]