MCP File System Server
A secure, sandboxed file system server that enables reading, writing, searching, and managing files through MCP-compatible AI clients with path traversal protection and size limits.
README
๐ MCP File System Server
A secure, sandboxed file system server for the Model Context Protocol. Read, write, search, and manage files through any MCP-compatible AI client โ with path traversal protection, hidden file controls, and size limits.
โจ Features
- ๐ง 5 Tools:
read_file,write_file,list_directory,search_files,get_file_info - ๐ 1 Resource:
file://{path}โ read files via MCP resource URIs - ๐ก๏ธ Security-First Architecture: Sandbox isolation, path traversal prevention, max size limits
- ๐ฅ Hidden File Control: Block
.hiddenfiles by default, opt-in with--allow-hidden - ๐ Glob-Based Search: Search by pattern (
*.py,*.md,data_*.csv) - ๐ Rich Metadata: File size, timestamps, permissions, text/binary detection
- ๐ฅ๏ธ Dual Transport: stdio and Streamable HTTP
๐ Quick Start
# 1. Setup
python3 -m venv .venv
source .venv/bin/activate
pip install -r requirements.txt
# 2. Create sandbox and run
mkdir -p /tmp/mcp-sandbox
python filesystem_server.py --sandbox /tmp/mcp-sandbox
๐ ๏ธ Tools Reference
read_file(path: str) -> str
Read a file and return its contents with metadata (size, modified time, SHA256).
write_file(path: str, content: str) -> str
Write content to a file. Creates parent directories automatically.
list_directory(path: str) -> str
List files and directories with sizes and type indicators.
search_files(pattern: str, base_path: str = "") -> str
Search by glob pattern across the entire sandbox.
get_file_info(path: str) -> str
Get detailed metadata: type, size, timestamps, permissions, text/binary detection.
๐ก๏ธ Security Controls
--sandbox PATH # Required: root directory (all operations restricted)
--allow-hidden # Allow access to .hidden files and directories
--max-size N # Max file size in MB (default: 10)
| Attack Vector | Protection |
|---|---|
../../../etc/passwd |
โ Path traversal prevented |
~/.ssh/id_rsa |
โ Outside sandbox |
.env files |
โ Blocked by default |
| 100GB file read | โ Size limit (configurable) |
| Hidden directory listing | โ Filtered by default |
๐ Resources
file://{path}
Read a file's raw content via MCP resource protocol.
๐ Connecting to Clients
Claude Desktop
{
"mcpServers": {
"filesystem": {
"command": "python",
"args": ["/ABSOLUTE/PATH/mcp-file-system-server/filesystem_server.py", "--sandbox", "/tmp/mcp-sandbox"]
}
}
}
Cursor
Settings โ Features โ MCP โ Add Server:
- Name:
filesystem - Type:
command - Command:
python /ABSOLUTE/PATH/mcp-file-system-server/filesystem_server.py --sandbox /tmp/mcp-sandbox
๐ Project Structure
mcp-file-system-server/
โโโ filesystem_server.py # Main server (FastMCP + security)
โโโ requirements.txt
โโโ setup.sh
โโโ README.md
โโโ .gitignore
๐งช Example Usage
# Read a file
read_file("/tmp/mcp-sandbox/data.txt")
# โ "๐ File: /tmp/mcp-sandbox/data.txt\nSize: 1,234 bytes\n..."
# Write a file
write_file("/tmp/mcp-sandbox/output/report.md", "# Report\n\nHello world!")
# โ "โ
Written 28 bytes to /tmp/mcp-sandbox/output/report.md"
# Search for Python files
search_files("**/*.py")
# โ "๐ 5 file(s) matching **/*.py:\n ๐ scripts/process.py (1,234 bytes)\n..."
๐ License
MIT
Recommended Servers
playwright-mcp
A Model Context Protocol server that enables LLMs to interact with web pages through structured accessibility snapshots without requiring vision models or screenshots.
Magic Component Platform (MCP)
An AI-powered tool that generates modern UI components from natural language descriptions, integrating with popular IDEs to streamline UI development workflow.
Audiense Insights MCP Server
Enables interaction with Audiense Insights accounts via the Model Context Protocol, facilitating the extraction and analysis of marketing insights and audience data including demographics, behavior, and influencer engagement.
VeyraX MCP
Single MCP tool to connect all your favorite tools: Gmail, Calendar and 40 more.
graphlit-mcp-server
The Model Context Protocol (MCP) Server enables integration between MCP clients and the Graphlit service. Ingest anything from Slack to Gmail to podcast feeds, in addition to web crawling, into a Graphlit project - and then retrieve relevant contents from the MCP client.
Kagi MCP Server
An MCP server that integrates Kagi search capabilities with Claude AI, enabling Claude to perform real-time web searches when answering questions that require up-to-date information.
E2B
Using MCP to run code via e2b.
Neon Database
MCP server for interacting with Neon Management API and databases
Exa Search
A Model Context Protocol (MCP) server lets AI assistants like Claude use the Exa AI Search API for web searches. This setup allows AI models to get real-time web information in a safe and controlled way.
Qdrant Server
This repository is an example of how to create a MCP server for Qdrant, a vector search engine.