Mcp Spotify — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Mcp Spotify (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
A Model Context Protocol (MCP) server that provides access to the Spotify Web API. This server enables interaction with Spotify's music catalog, including searching for tracks, albums, and artists, as well as accessing artist-specific information like top tracks and related artists.
git clone https://github.com/pashpashpash/mcp-spotify.git
cd mcp-spotify npm install npm run buildAdd to your Claude Desktop configuration file:
~/Library/Application Support/Claude/claude_desktop_config.json%APPDATA%/Claude/claude_desktop_config.json{
"mcpServers": {
"spotify": {
"command": "node",
"args": ["path/to/mcp-spotify/dist/index.js"],
"env": {
"SPOTIFY_CLIENT_ID": "your_client_id",
"SPOTIFY_CLIENT_SECRET": "your_client_secret"
}
}
}
}Note: Replace "path/to/mcp-spotify" with the actual path to your cloned repository.
get_access_token: Get a valid Spotify access tokensearch: Search for tracks, albums, artists, or playlistsget_new_releases: Get new album releasesget_recommendations: Get track recommendationsget_artist: Get artist informationget_artist_top_tracks: Get an artist's top tracksget_artist_related_artists: Get artists similar to a given artistget_artist_albums: Get an artist's albumsget_album: Get album informationget_album_tracks: Get an album's tracksget_track: Get track informationget_audiobook: Get audiobook information with optional market parameterget_multiple_audiobooks: Get information for multiple audiobooks (max 50)get_audiobook_chapters: Get chapters of an audiobook with pagination support (1-50 chapters per request)get_playlist: Get a playlist owned by a Spotify userget_playlist_tracks: Get full details of the tracks of a playlist (1-100 tracks per request)get_playlist_items: Get full details of the items of a playlist (1-100 items per request)modify_playlist: Change playlist details (name, description, public/private state, collaborative status)add_tracks_to_playlist: Add one or more tracks to a playlist with optional positionremove_tracks_from_playlist: Remove one or more tracks from a playlist with optional positions and snapshot IDget_current_user_playlists: Get a list of the playlists owned or followed by the current Spotify user (1-50 playlists per request)If you run into issues, check Claude Desktop's MCP logs:
tail -n 20 -f ~/Library/Logs/Claude/mcp*.logCommon issues:
# Install dependencies
npm install
# Build the project
npm run build
# Development with auto-rebuild
npm run watchMIT License
Note: This is a fork of the original mcp-spotify repository
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.