Filesystem README recommends deprecated MCP Roots protocol for restricting directory access
メンテナーはふだん 2 日以内に返信
まだ誰も着手していません。
評価
- 難易度
- 2/5
- 見積もり時間
- 1〜3時間
- 初心者へのやさしさ
- 76/100
- issue の種類
- ドキュメント
- 明瞭さ
- おおむね明確
- 活発さ
- 活発
- 技術スタック
- typescript
調査の方向性
Roots によるファイルシステムアクセスの制限について説明している README.md のセクションから始め、そこにある案内を、参照されている MCP deprecated-features 仕様と比較してください。issue が示唆しているように、サーバー実装が ListRootsRequest を使用しているかを確認し、必要なフォローアップがあれば記録してください。README.md に現在の代替手段が記載され、該当する場合は残す Roots の案内が legacy として示され、サポートされているアクセス設定が明確に説明されていれば完了です。
索引モデルが issue の本文から書いたものです。
説明
Summary
The README.md contains a section recommending the use of the MCP Roots protocol as the mechanism for restricting which directories the filesystem server can access. However, according to the current official MCP specification, Roots is deprecated as of protocol version 2026-07-28 and scheduled for removal.
Source: MCP Specification — Deprecated features
Why this matters
- New users following the README will adopt a deprecated mechanism that is scheduled for removal from the protocol.
- Roots-based access restriction may not work with newer MCP clients, so the documented guidance will break over time.
- The project's documented access-control story should stay aligned with the current specification.
Suggested changes
- Update the README section to stop recommending Roots as the primary way to restrict directory access
- Document the alternatives recommended by the spec:
- passing directories/files via tool parameters
- resource URIs
- server configuration (e.g., allowed directories passed via CLI arguments, which the server already supports)
- If any Roots-related guidance or behavior is kept, mark it explicitly as legacy/deprecated with a pointer to the migration guidance
- Check whether the server implementation itself relies on Roots (e.g.,
ListRootsRequest) and, if so, open a follow-up issue for migrating away from it
References
- MCP Specification — Deprecated features (
2026-07-28) README.md— section on restricting filesystem access via Roots
- 主要言語
- TypeScript
- スター
- 90.6k
- フォーク
- 11.7k
- 平均マージ
- 23時間 41分
- マージ済み PR(30日)
- 3
環境構築
- Dockerfile・Docker Compose ファイルなし
- プルリクエストのテンプレートあり
- コントリビューションガイドを読む
はじめの一歩
- issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
- 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
- リポジトリをフォークし、ブランチを切って変更します。
- issue 番号を参照したプルリクエストを送ります。
modelcontextprotocol/servers のほかの issue
-
難易度 1/5 1時間未満 初心者へのやさしさ 92/100
modelcontextprotocol/servers#4892 ·
メンテナーはふだん 2 日以内に返信
-
難易度 2/5 1〜3時間 初心者へのやさしさ 72/100
modelcontextprotocol/servers#4830 · コメント 1 件 ·
メンテナーはふだん 2 日以内に返信
-
難易度 2/5 1〜3時間 初心者へのやさしさ 68/100
modelcontextprotocol/servers#4829 ·
メンテナーはふだん 2 日以内に返信
-
難易度 2/5 1〜3時間 初心者へのやさしさ 86/100
modelcontextprotocol/servers#4804 · コメント 1 件 ·
メンテナーはふだん 2 日以内に返信
-
README gate confirmation command can be used by any commenter, bypassing the "readme: pending" gateオープン
難易度 2/5 1〜3時間 初心者へのやさしさ 82/100
modelcontextprotocol/servers#4796 ·
メンテナーはふだん 2 日以内に返信
modelcontextprotocol/servers の issue をすべて見る
似ている issue
-
priority: P2
難易度 2/5 1〜3時間 初心者へのやさしさ 78/100
-
難易度 2/5 1〜3時間 初心者へのやさしさ 65/100
prime-radiant-inc/evener#3291 ·
メンテナーはふだん 1 日以内に返信
-
accessibility bug revealjs
難易度 2/5 1〜3時間 初心者へのやさしさ 84/100
quarto-dev/quarto-cli#14961 ·
メンテナーはふだん 1 日以内に返信
-
難易度 1/5 1時間未満 初心者へのやさしさ 90/100
supabase/agent-skills#614 ·
-
Content
難易度 2/5 1〜3時間 初心者へのやさしさ 68/100
RunestoneInteractive/rs#1559 · コメント 1 件 ·
メンテナーはふだん 2 日以内に返信