Skip to content

This release includes 1 security fix for security teams reviewing exposed deployments.

Published 25d MCP Developer Tools
✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →
This release patches 1 known CVE

Topics

mcp mcp-server unfurl

Affected surfaces

auth

Summary

AI summary

Updates New Features, Breaking / Major, and Release Notes — v2.0.0 across a mixed release.

Full changelog

Release Notes — v2.0.0

Breaking / Major

  • Migrated data tools to the OpenGraph v3 API (getOgData, getOgScrapeData, getOgScreenshot) with auto_render, auto_proxy, and retry enabled by default. getOgQuery and getOgExtract remain on v1.1 (no v3 route exists yet).

New Features

  • OAuth 2.1 authentication
  • Site Audit toolsdiscoverSiteUrls, startSiteAudit, getSiteAuditStatus, getSiteAuditReport, previewPageAudit (all OAuth-only).
  • Link Preview toolgetLinkPreview, showing Facebook/Twitter/X/LinkedIn/Google preview cards, a quality score, and a fix list.
  • getOgMarkdown tool — converts any URL to clean Markdown.
  • Guided workflow prompts added: run-site-audit, analyze-webpage, extract-structured-data, get-page-content.

Improvements

  • Expanded parameters across all data tools (v3 smart defaults, hideSelectors, navigationTimeout, capture_delay, array param comma-joining).
  • Branded Markdown + structuredContent formatters for every tool response.
  • Full tool description rewrite for agent clarity (params, response shapes, no internal implementation details).
  • Documentation cleanup — README.md, package.json, server.json, and the Claude Desktop extension manifest updated to reflect the full current tool/prompt set.

Fixes

  • npm audit vulnerability patched.
  • Fixed a pre-existing broken ./og.js import.
  • Fixed app_id resolution for the query tool and image-agent export tool (no longer only sourced from env var).
  • Fixed a schema-validation bug where structuredContent was incorrectly included on error results.

Breaking Changes

  • Migrated data tools (`getOgData`, `getOgScrapeData`, `getOgScreenshot`) to OpenGraph v3 API with `auto_render`, `auto_proxy`, and `retry` enabled by default.

Security Fixes

  • Patched an npm audit vulnerability (specific CVE not listed)

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track securecoders/opengraph-io-mcp

Get notified when new releases ship.

Sign up free

About securecoders/opengraph-io-mcp

OpenGraph.io API integration for extracting OG metadata, taking screenshots, scraping web content, querying sites with AI, and generating branded images (illustrations, diagrams, social cards, icons, QR codes) with iterative refinement.

All releases →

Beta — feedback welcome: [email protected]