mineru-mcp

MCP server for [MinerU](https://mineru.net) document parsing API — extract text, tables, and formulas from PDFs, DOCs, and images. ## Features - **VLM model** — 90%+ accuracy for complex documents - **Pipeline model** — Fast processing for simple documents - **Local file upload** — Upload files from disk for batch parsing - **Batch processing** — Parse up to 200 documents at once - **Download & rename** — Extract markdown with original filenames - **Page ranges** — Extract specific pages only - **109 language OCR** support - **Optimized for Claude Code** — 73% token reduction vs alternatives ## Tools | Tool | Description | |------|-------------| | `mineru_parse` | Parse a document URL | | `mineru_status` | Check task progress, get download URL | | `mineru_batch` | Parse multiple URLs (max 200) | | `mineru_batch_status` | Get batch results with pagination | | `mineru_upload_batch` | Upload local files for batch parsing | | `mineru_download_results` | Download results as named markdown files | ## Supported Formats PDF, DOC, DOCX, PPT, PPTX, PNG, JPG, JPEG ## Requirements Get your API key at [mineru.net](https://mineru.net)

filesystem
0Tools
2Findings
Mar 24, 2026Last Scanned
1 medium · 1 low findings detected

Security Category Deep Dive

Prompt Injection
Prompt & context manipulation attacks
69
Maturity
14
Rules
5
Sub-Categories
1
Gaps
64%
Implemented
56
Tests
1
Stories
PI-DIRDirect Input Injection
100%3 rules
Injection via tool descriptions and parameter fields
GAP-001Prompt Injection Coverage GapMissing detection coverage for emerging prompt injection attack variants not addressed by current rules
PI-INDIndirect / Gateway Injection
100%4 rules
Hidden instructions via external content and tool responses
PI-CTXContext Manipulation
100%2 rules
Context window saturation and prior-approval exploitation
PI-ENCEncoding & Obfuscation
100%3 rules
Payload hiding via invisible chars, base64, schema fields
PI-TPLTemplate & Output Poisoning
100%2 rules
Injection via prompt templates and runtime tool output
Framework Coverage
OWASP MCP Top 1014/14
MITRE ATLAS14/14
CoSAI MCP2/14
OWASP Agentic Top 1012/14
Kill Chain Phases
0Initial Access
0Defense Evasion
0Execution
0Persistence
mineru-mcp Security Report — MCP Sentinel