Mmcp.market

Plumb MCP server

by tathagat22·io.github.tathagat22/plumb-mcp·v0.13.2

Two-way Figma MCP: extract + verify design-to-code, or generate on-brand Figma pages from a prompt.

C65/100grade C
What users say
No reviews yet
Be the first
Safety scan
C65/100

full report

Adoption
Growing

83 stars

Reviews

Write one

Nobody has reviewed Plumb yet.

If you have run it, two minutes of your experience saves the next person an afternoon.

Plumb tools (23)

write = sends, deletes, buys or posts

Read from the package source without running it. The installed server may list more.

  • plumb_assets
  • plumb_brand
  • plumb_components
  • plumb_describe
  • plumb_design
  • plumb_fig_node
  • plumb_fig_outline
  • plumb_fit
  • plumb_node
  • plumb_outline
  • plumb_query
  • plumb_review
  • plumb_screenshot
  • plumb_search
  • plumb_selection
  • plumb_source
  • plumb_status
  • plumb_studio
  • plumb_studio_kit
  • plumb_studio_page
  • plumb_studio_start
  • plumb_tokens
  • plumb_verify

Public scan report

scanner v0.1.9 · 2026-09-26 · same rubric, same numbers if you re-run it

1 high
  • Code scan7 source files scanned13/25
  • –Live reliabilityno gateway calls yet and no remote to proben/a
  • –Tool poisoningtools not inspected (local package is not executed); not countedn/a
  • Auth qualitystatic API keys via environment variables6/15
  • Maintenancelast push 9 days ago15/15
  • Maintainer identityregistry namespace matches repository owner; GitHub account older than a year8/10

Findings (1)

  • highShell command built from a string (injection risk)exec.shell-concat
    dist/index.js: …t-edge"]) { try { const out = execSync(`${which} ${cmd}`, { stdio: ["ignore", "pipe", "igno…
Overall 65/100. Components that don't apply are left out of the denominator. Any critical finding is an F.RubricAppeal a findingJSON

What the publisher says

From the Plumb repository's README, as published. We do not edit it. Read it on GitHub

Plumb (plumb-mcp) — the AI-native design engineering platform

     

⭐ If Plumb saves you tokens — or designs you a page — star it on GitHub so others can find it.

Plumb is an AI-native design engineering platform, shipped as a single MCP server. Point it at a Figma file or a live website and it normalises either one into the same semantic design graph — deduped tokens, flexbox-resolved layout, conservative role labels (nav / hero / card …) — that your coding agent can build from and a verification loop can grade. Point it at a one-line prompt instead and it becomes an AI design director: it researches best-in-class references, extracts a brand, and generates a full, on-brand Figma file on your canvas, then critiques its own render until it clears the bar.

Design → code (Figma or the live web, verified, not vibes)  •  prompt → design (research → brand → generate → critique)  •  one semantic design graph underneath both. MCP-native — works with Claude Code, Cursor, Windsurf, or any agent that speaks Model Context Protocol.

📖 Full docs: ****  ·  📦 npm: plumb-mcp  ·  🇨🇳 简体中文  ·  🇯🇵 日本語  ·  🇰🇷 한국어

 

Built for coding agents — Claude Code, Cursor, Windsurf, anything MCP-compatible. Design engineering, agent-native: no dashboard, no separate app to babysit, no human shuttling pixels between Figma and an editor. It reads Figma through a desktop-app plugin (no REST rate limits, works on every plan including Free), reads any live website through headless Chrome, writes new designs back into Figma through the same plugin, and returns compact normalised specs instead of the multi-hundred-thousand-token JSON the Figma API emits.

Why "design engineering platform," not "Figma converter"

Most Figma MCP servers — and most figma-to-code tools generally — are one shape in, one shape out: Figma JSON in, one framework's code out, done. Plumb's architecture is a hub, not a pipe:

Shortened. The full README is on GitHub.

Nothing above is checked by us. What we check is on the safety report.

Install directly

Runs npx -y plumb-mcp on your machine. Read the scan report first; the gateway never runs local packages.

claude mcp add plumb-mcp -- npx -y plumb-mcp
Add to Cursor

Plumb: common questions

Is Plumb MCP server safe?
With care: it is graded C, so read the findings first (65/100). Read the Plumb safety report
How do I install Plumb?
It runs on your machine. Copy the Claude Code, Claude Desktop or Cursor config from the install section.
Does Plumb need an API key?
Yes. The registry entry asks for FIGMA_TOKEN.
Is Plumb maintained?
The last commit was 9 days ago (2026-09-17). The latest release is v0.13.2.
What can I use instead of Plumb?
Servers from other publishers that do the same job: Fortress MCP server, Design System Extractor MCP server and pixelpact MCP server. Compare all Plumb alternatives.

Alternatives to Plumb

Same job from other publishers: the closest match first, then the best rated.

All Plumb alternatives →
  • Fortress
    Stealth browser for AI agents: fetch pages behind Cloudflare/DataDome/CAPTCHA, extract clean data.
    B
  • Design System Extractor
    MCP server for Storybook design systems — extract component HTML, styles and metadata.
    A
  • pixelpact
    Extract a visual contract from a reference page and measure an implementation against it
    A
  • Rendex: Rendering API for Images, PDFs & Content Extraction
    Render HTML, Markdown, or URLs to images, PDF, or branded artifacts; extract and watch pages.
    A
  • FetchV2
    Fetch and extract web pages, discover links, and read llms.txt documentation indexes.
    A

More from tathagat22 →