# zipnative-mcp

> zipnative-mcp — nizoka-zipnative-mcp. Use this tool when you need to manage ZIP archives securely and efficiently, solving problems like zip-slip and zip-bomb attacks, and requiring inputs like archive files and commands, while producing outputs like extracted files and verification results. It provides a range of functionalities, including inspection, extraction, and creation of archives, with a sandboxed environment and support for stdio, HTTP, and git. Use it in contexts where reliable and secure archive management is crucial, such as in CI pipelines or automated workflows.

Canonical page: https://skillsregistry.net/skills/nizoka-zipnative-mcp  
JSON: https://api.skillsregistry.net/v1/skills/nizoka-zipnative-mcp

## Description

MCP server on the zipnative ZIP engine — 13 tools for AI agents: inspect, list and verify without extracting, extract with zip-slip / zip-bomb / symlink guards, create deterministic reproducible archives, modify without recompression. MCP 2026-07-28 + legacy, stdio & HTTP, sandboxed, no network path, ISO/IEC 21320-1 validated in CI. Node ≥22.

## Trust

- **Trust score (0–1):** 0.50
- **Verification tier:** unverified

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** container
- **Runtime environment:** vm
- **License:** MIT
- **Updated:** 2026-09-22

## Source

- **Source listing:** [GitHub](https://github.com/Nizoka/zipnative-mcp)

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "nizoka-zipnative-mcp"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/nizoka-zipnative-mcp` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/nizoka-zipnative-mcp/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
