# Next.js DevTools MCP

> Next.js DevTools MCP is an officially published MCP server from Vercel. Anomity scores its risk at 10 out of 100 (low).

- **Canonical URL:** https://catalog.anomity.ai/mcp/next-js-devtools-mcp
- **Kind:** MCP server
- **Publisher:** Vercel
- **Trust level:** official
- **Risk score:** 10/100 (low)
- **Website:** https://nextjs.org/docs/app/guides/mcp
- **Documentation:** https://nextjs.org/docs/app/guides/mcp
- **Last updated:** 2026-09-02
- **JSON:** https://catalog.anomity.ai/api/entries/mcp/next-js-devtools-mcp

## Description

Vercel's MCP server for Next.js development exposes build and runtime diagnostics to an agent — route information, build errors, and framework-specific guidance — so an assistant debugging a Next.js app works from the framework's own view rather than from guesses.

It reads the local project and reaches the network, so it declares filesystem reads and outbound network access. Risk is low relative to the deployment and database servers in this list; the main consideration is scope, since a tool that reads your project directory reads whatever is in it, including any `.env` files that happen to be sitting there.

## Why it scored 10

The score starts at the catalog's neutral base of 50 and moves only through the signals below. The formula is published at https://catalog.anomity.ai/about — there is no model and no hidden heuristic.

| Signal | Contribution | Severity | Evidence |
| --- | --- | --- | --- |
| Published by the vendor | -40 | trust offset |  |

Clamped result: **10/100**, band **low**.

## Capabilities

| Capability | Name | Security implication |
| --- | --- | --- |
| `filesystem:read` | Filesystem read | Can read files on the host system. Used for context, indexing, or analysis. |
| `network:outbound` | Outbound network | Can make outbound network requests. Required for hosted model providers and remote APIs; also the path for data exfiltration if combined with read access. |

## Related MCP servers

- [Blender MCP](https://catalog.anomity.ai/mcp/blender-mcp) — risk 100 (critical)
- [Magic MCP](https://catalog.anomity.ai/mcp/magic-mcp) — risk 20 (low)
- [Proxyman MCP](https://catalog.anomity.ai/mcp/proxyman-mcp) — risk 20 (low)
- [Everything](https://catalog.anomity.ai/mcp/everything) — risk 10 (low)
- [Airtable MCP Server](https://catalog.anomity.ai/mcp/airtable-mcp-server) — risk 45 (medium)
- [Cloudflare MCP Server](https://catalog.anomity.ai/mcp/cloudflare-mcp-server) — risk 45 (medium)

---

Source: Anomity Catalog (https://catalog.anomity.ai/). Scoring methodology: https://catalog.anomity.ai/about. Machine-readable index: https://catalog.anomity.ai/llms.txt · https://catalog.anomity.ai/openapi.json
