v0.3.1: mcp-ts-core ^0.10.6, truncation disclosure, bundle hardening
mcp-ts-core ^0.10.6, truncation disclosure, bundle hardening
Adopts the framework 0.10.6 line and ships truncation disclosure on two tools, a DataCanvas system-catalog lockout, explicit server identity, and an mcpb bundle agent-doc strip.
Added:
openfda_count_valuestruncation disclosure —truncated,shown,cap,truncationCeilingwhen the term list hits the limit.openfda_get_drug_labeltruncation disclosure —truncated,shown,capwhen more labels matched than the page returned.scripts/clean-mcpb.ts— post-pack strip of dependency-shipped agent-docs nested undernode_modules/; wired into thebundlescript.- Dockerfile
HEALTHCHECK(bun-native fetch on /healthz) andAPP_VERSIONOCI version label.
Changed:
createApp()setsname/titletoopenfda-mcp-serverexplicitly.openfda_dataframe_queryblocks DuckDB system catalogs (denySystemCatalogs: true).lint-packaging.tsgains bundle-content and identity guards;check-framework-antipatterns.tsflagsz.coerce.boolean()on env flags..mcpbignorepatterns anchored to bundle root.- Skills synced to framework 0.10.6;
techniquesskill added.
Dependency bumps:
@cyanheads/mcp-ts-core^0.9.21 → ^0.10.6@types/node^25.9.2 → ^25.9.3
314 tests pass; bun run devcheck clean.