‹ The Index

Notion

npm

Official MCP server for Notion API

Works with: Claude Code, Cursor, Claude Desktop, Codex CLI, Gemini CLI, Cline, Windsurf, VS Code (installable)
installable: each client documents how to load an MCP server of this type — that is the client's promise, not a claim verified against this capability

Category: Docs & Knowledge — see all ranked ›

Work: Application development

Who it is for: Software engineer

Install (Claude Code):

claude mcp add notionhq-notion-mcp-server -- npx -y @notionhq/notion-mcp-server
deep

“12 tools documented (post-database-query, update-a-database…); 13 worked examples; setup and auth covered; states a limit — “⚠️ Version 2.0.0 breaking changes — Version…”; read with 1 linked doc(s)”

This grade is wrong ›

Security audit

scanned 2026-09-12

Every finding is shown in full — which advisory, the version that fixes it, and the exact command run at install time. Nothing in this audit is behind a licence.

No known advisoriesclearchecked against OSV for 2.5.1 — this package, not its dependency tree
1 vulnerable dependencyinstalls[email protected] — GHSA-4mjr-xmp4-gh2g, GHSA-x5fp-wj9c-mxmx · found by resolving all 140 packages this installs and querying OSV at the version each resolves to, not by name
Makes network requestsfrom declared dependencies
Can carry remote content into your agentit can pull third-party text into the model's context — treat what it returns as untrusted input
Signed build provenancepublished from public CI with an attestation

You searched for one. Check the rest of your stack:

npx tashan-cli doctor

Reads the config already on your machine and names what is dead, deprecated or running code at install time. No account, nothing uploaded.

tashan Pro$6/mo

Notion scores 86 today. Pro keeps the series, so you can see whether that is a project getting better or one on its way down.

Start a 7-day trial › Everything measured on this page stays free.

Show your score

Measured this well? Put the live badge in your README — it updates as the score does.

tashan badge for Notion
[![tashan](https://tashan.sh/badge/pkg-notionhq-notion-mcp-server.svg)](https://tashan.sh/capability/pkg-notionhq-notion-mcp-server.html)

npm ↗  ·  source ↗  ·  pkg:@notionhq/notion-mcp-server

Everything on this page is public evidence and free. What it cannot know is whether you run this — check your whole config, free, in the browser. tashan Pro adds the series behind each row and names a replacement for anything dying.

Already running this? Check your whole config — free, in your browser, nothing installed. Or npx tashan-cli doctor locally, which sends nothing at all.

Measured 2026-09-13  ·  scorer s5  ·  how  ·  something wrong here?