SkillAgentSearch skills...

mcp-ext-apps

Sample App for MCP Apps Extension (SEP-1865)

Install / Use

claude mcp add hemanth -- npx -y github:hemanth/mcp-ext-apps

If the server publishes to npm under a different name, use that package instead — check the repo README.

About this skill
🔌

MCP Server

Model Context Protocol server

Quality Score

59/100

Supported Platforms

Claude Code
Claude Desktop

Tags

Our assessment of mcp-ext-apps

mcp-ext-apps scores 59/100 on our quality scale, 813th of 1,340 Development & Engineering skills we index.

Its MCP Server is 1.4 KB long, split into 6 sections with 3 code examples: moderately detailed.

It has 10 GitHub stars, so there is little community track record yet; judge it on its content.

Substance
20/30
Structure
16/20
Description
8/15
Adoption
4/20
Freshness
11/15

Maintenance, license and trust

  • The repository was last updated about 10 months ago. That is recent enough to be usable, but agent tooling moves fast, so check the instructions against your agent's current version.
  • Our last check on 2026-09-22 found the source still online.
  • No license is declared. By default that means all rights are reserved: you can read it, but reusing or redistributing it is not clearly permitted. Ask the author before building on it commercially.
  • Its trust signals score 74/100, with 3 cautions from licensing, adoption, age or documentation. These come from repository metadata, not a code audit — read the skill file before letting an agent act on it.

Safety scan

No issues found

Our scan of the whole file found no instruction hijacking, hidden characters, credential access, data exfiltration or destructive commands. An AI review of the same text found nothing harmful.

AI review by kimi-k2.7-code on 2026-09-24. Automated pattern scan on 2026-09-24. It catches known dangerous patterns, not every risk — read a skill before letting an agent act on it.

mcp-ext-apps compared with similar skills

All 4 of these similar skills score higher than mcp-ext-apps; compare them before choosing.

SkillScoreStarsUpdatedFormat
mcp-ext-apps (this skill)by hemanth591010mo agoMCP Server
Agent-Reachby Panniantong10085.2k8d agoCLAUDE.md
headroomby headroomlabs-ai10073.7ktodayCLAUDE.md
rufloby ruvnet10073.2ktodayCLAUDE.md
CowAgentby zhayujie10047.1ktodayCLAUDE.md

Frequently asked questions

How do I install mcp-ext-apps?
Run claude mcp add hemanth -- npx -y github:hemanth/mcp-ext-apps. The install tabs above show the steps for each supported agent.
Which AI agents does mcp-ext-apps work with?
It is written for Claude Code and Claude Desktop, as a MCP Server file. Other agents that read the same format can often use it too.
Is mcp-ext-apps safe to use?
Our scan of the whole file found no instruction hijacking, hidden characters, credential access, data exfiltration or destructive commands. An AI review of the same text found nothing harmful. It declares no license and scores 74/100 on trust signals. Skills are instructions an agent will follow, so read the file before installing it and do not approve commands you do not understand.
Is mcp-ext-apps still maintained?
The repository was last updated about 10 months ago. That is recent enough to be usable, but agent tooling moves fast, so check the instructions against your agent's current version.

MCP Ext Apps

Sample implementation of MCP Apps Extension (SEP-1865) - interactive HTML/JS UIs through MCP tools.

https://github.com/user-attachments/assets/dd4c968f-1b82-4975-8b89-374933363a99

Quick Start

npm install
npm start

Open http://localhost:8080

How It Works

Host Client                              MCP Server
┌────────────────────┐                  ┌──────────────┐
│  tools-sidebar     │ ── call tool ─> │  Tools:      │
│  app-container     │ <── HTML UI ─── │  - dashboard │
│  [sandboxed iframe]│                 │  - clock     │
└────────────────────┘                  └──────────────┘
   localhost:8080                        localhost:3001
  1. Host connects to MCP server, lists tools
  2. User clicks a tool, host calls it via MCP
  3. Tool returns text/html+mcp resource with ui:// URI
  4. Host renders in sandboxed iframe with CSP
  5. UI communicates via JSON-RPC 2.0 over postMessage

SEP-1865 Compliance

  • ui:// scheme for resource URIs
  • text/html+mcp MIME type
  • _meta.ui/resourceUri in tool responses
  • ui/initialize handshake protocol
  • JSON-RPC 2.0 message format
  • Sandboxed iframe with CSP headers

Scripts

npm start       # Build + start server
npm run server  # MCP server (port 3001)
npm run host    # Host client (port 8080)

License

MIT

Related Skills

View on GitHub
GitHub Stars10
CategoryDevelopment
Updated9mo ago
Forks1

Languages

JavaScript

Trust signals

74/100

From repository metadata: license, adoption, age and documentation. Not a code audit — see the Safety scan above for what the skill file itself contains.

1 medium2 low1 info