KIPRIS 특허·실용신안·상표·디자인 검색 MCP — 자유검색/항목검색/출원인/권리자/서지상세 7개 도구 | KIPRIS Korean patent·utility·trademark·design search → 7 MCP tools
MCPpedia last refreshed this data
Korean Patent MCP is an MCP server that KIPRIS 특허·실용신안·상표·디자인 검색 MCP — 자유검색/항목검색/출원인/권리자/서지상세 7개 도구 | KIPRIS Korean patent·utility·trademark·design search → 7 MCP tools. Its tool list has not been published yet over stdio and http, requires no API key, and scores 65/100 on MCPpedia's security, maintenance and efficiency rubric.
Config is the same across clients — only the file and path differ.
{
"mcpServers": {
"korean-patent": {
"env": {
"KIPRIS_API_KEY": "발급키"
},
"args": [
"/절대경로/korean-patent-mcp/build/index.js"
],
"command": "node"
}
}
}Are you the author?
Add this badge to your README to show your security score and help users find safe servers.
특허청 KIPRIS Plus 오픈API를 MCP 도구로 노출하는 서버. 특허·실용신안·상표·디자인을 키워드/항목/출원인/권리자로 검색하고, 출원번호로 상세 서지정보를 조회한다.
This server supports HTTP transport. Be the first to test it — help the community know if it works.
Five weighted categories — click any category to see the underlying evidence.
Packing does not respect root-level ignore files in workspaces
### Impact `npm pack` ignores root-level `.gitignore` & `.npmignore` file exclusion directives when run in a workspace or with a workspace flag (ie. `--workspaces`, `--workspace=<name>`). Anyone who has run `npm pack` or `npm publish` with workspaces, as of [v7.9.0](https://github.com/npm/cli/releases/tag/v7.9.0) & [v7.13.0](https://github.com/npm/cli/releases/tag/v7.13.0) respectively, may be affected and have published files into the npm registry they did not intend to include. ### Patch - Up
Incorrect Permission Assignment for Critical Resource in NPM
An issue was discovered in an npm 5.7.0 2018-02-21 pre-release (marked as "next: 5.7.0" and therefore automatically installed by an "npm upgrade -g npm" command, and also announced in the vendor's blog without mention of pre-release status). It might allow local users to bypass intended filesystem access restrictions because ownerships of /etc and /usr directories are being changed unexpectedly, related to a "correctMkdir" issue.
Local Privilege Escalation in npm
Affected versions of `npm` use predictable temporary file names during archive unpacking. If an attacker can create a symbolic link at the location of one of these temporary file names, the attacker can arbitrarily write to any file that the user which owns the `npm` process has permission to write to, potentially resulting in local privilege escalation. ## Recommendation Update to version 1.3.3 or later.
npm CLI exposing sensitive information through logs
Versions of the npm CLI prior to 6.14.6 are vulnerable to an information exposure vulnerability through log files. The CLI supports URLs like `<protocol>://[<user>[:<password>]@]<hostname>[:<port>][:][/]<path>`. The password value is not redacted and is printed to stdout and also to any generated log files.
npm Vulnerable to Global node_modules Binary Overwrite
Versions of the npm CLI prior to 6.13.4 are vulnerable to a Global node_modules Binary Overwrite. It fails to prevent existing globally-installed binaries to be overwritten by other package installations. For example, if a package was installed globally and created a `serve` binary, any subsequent installs of packages that also create a `serve` binary would overwrite the first binary. This will not overwrite system binaries but only binaries put into the global node_modules directory. This b
Be the first to review
Have you used this server?
Share your experience — it helps other developers decide.
Sign in to write a review.
Others in legal
87 tools for Korean law — statutes, precedents, ordinances, interpretations | MCP Server · CLI · npm
Proof primitive for AI agents on MultiversX. Anchor file hashes on-chain as verifiable proofs.
956k Swiss court decisions: full-text search, citation graph, statute lookup (DE/FR/IT)
Polish National registry of businesses and other legal entities
MCP Security Weekly
Get CVE alerts and security updates for Korean Patent Mcp and similar servers.
Start a conversation
Ask a question, share a tip, or report an issue.
Sign in to join the discussion.
특허청 KIPRIS Plus 오픈API를 MCP 도구로 노출하는 서버. 특허·실용신안·상표·디자인을 키워드/항목/출원인/권리자로 검색하고, 출원번호로 상세 서지정보를 조회한다.
korean-law-mcp 아키텍처를 벤치마킹 — lib/tools 레이어 분리, fetch 재시도·키 마스킹, Zod 검증, stateless HTTP, TTL 캐시, 응답 크기 제한,
[NOT_FOUND]환각방지 패턴.
| 도구 | 설명 | KIPRIS 오퍼레이션 |
|---|---|---|
search_patents | 자유검색 — 키워드로 특허·실용신안 통합검색 (발명명칭·초록·청구항·출원인) | freeSearchInfo |
search_patents_advanced | 항목검색 — IPC·발명명칭·초록·청구범위·출원인·발명자 조합 정밀검색 | getAdvancedSearch |
search_by_applicant | 출원인검색 — 기업·개인 출원인명으로 출원 목록 | applicantNameSearchInfo |
search_by_rightholder | 권리자검색 — 현재 특허권 보유자(권리이전 반영) | rightHolerSearchInfo |
get_patent_detail | 서지상세 — 출원번호 → 출원인·발명자·IPC·심사관·청구항수·최종처분·등록상태 | getBibliographyDetailInfoSearch (폴백 applicationNumberSearchInfo) |
search_trademark | 상표검색 — 상표명 키워드 (출원상태·상품류·권리자·견본이미지) | trademarkInfoSearchService/getWordSearch |
search_design | 디자인검색 — 물품명 키워드 (디자인분류·출원상태·도면이미지) | designInfoSearchService/getWordSearch |
공개 remote 서버가 떠 있어 설치 없이 바로 쓸 수 있다. 공식 주소는 통합 호스트 하나뿐이다
(구 개별 주소 korean-patent-mcp.fly.dev 는 통합 후 중단 — 설정에 남아 있으면 아래로 교체):
https://mcp.gomdori.app/patent
kipris-key 헤더로 전달 가능, 없으면 서버 공용 키 폴백)claude mcp add --transport http korean-patent https://mcp.gomdori.app/patentnpm install
npm run build
KIPRIS Plus 인증키가 필요하다. plus.kipris.or.kr 회원가입 후 사용할 서비스(특허·실용 / 상표 / 디자인)를 각각 활용신청하면 단일 인증키로 모두 호출된다. (data.go.kr 발급 키도 동일 키 체계.)
cp .env.example .env
# .env 에 KIPRIS_API_KEY=발급키 입력
권한은 오퍼레이션(상세기능) 단위다. 신청하지 않은 기능은
resultCode 30(미등록)으로 거부된다. 예: 특허만 신청했다면search_trademark/search_design은 30 을 반환한다. 각 서비스를 추가 신청하면 즉시 동작한다.
{
"mcpServers": {
"korean-patent": {
"command": "node",
"args": ["/절대경로/korean-patent-mcp/build/index.js"],
"env": { "KIPRIS_API_KEY": "발급키" }
}
}
}
node build/index.js --mode http --port 8000
# 키: 요청 헤더(apikey / x-api-key / kipris-key / Authorization: Bearer) 또는 서버 환경변수 폴백
키는 요청별(BYOK) 헤더가 우선이고, 없으면 서버 KIPRIS_API_KEY 로 폴백한다.
폴백 호출은 무료 한도(1,000회/월)를 보호해야 하는데, 실질 방어선은 분당이 아니라 일일 총량이다
(분당 상한만으로는 하루 이론 최대가 월 한도를 수십 배 넘는다). 그래서 분당 게이트는 버스트 흡수용으로만
두고 총량은 FALLBACK_DAILY_CAP(기본 30 ≈ 1,000÷31)이 잡는다. 두 게이트 모두 tools/call만 계수하며,
핸드셰이크(initialize/tools/list)는 KIPRIS 쿼터를 쓰지 않으므로 계수하지 않는다 — 계수하면 커넥터가
붙을 때마다 쿼터가 깎여 도구 목록조차 못 싣는다.
HTTP 모드 환경변수
| 변수 | 기본 | 설명 |
|---|---|---|
CORS_ORIGIN | * (경고) | 허용 도메인. 프로덕션은 명시 권장 |
RATE_LIMIT_RPM | 60 | IP당 분당 tools/call 한도 |
FALLBACK_RATE_LIMIT_RPM | 10 | 키 없는 요청의 서버 키 폴백 분당 상한(토큰버킷 — 연속 리필). 0이면 폴백 차단(BYOK 강제) |
FALLBACK_RATE_LIMIT_BURST | = RPM | 폴백 토큰버킷 용량(1분치) |
FALLBACK_DAILY_CAP | 30 | 폴백의 롤링 24시간 총량 캡. 0이면 비활성 |
MCP_MAX_BATCH_CALLS | 20 | 단일 POST(JSON-RPC 배치)의 tools/call 최대 개수 |
TRUST_PROXY | 1 | Express trust proxy 단수. true/all은 XFF 스푸핑 위험 |
MCP_BODY_LIMIT | 100kb | POST 본문 크기 한도 |
429 응답에는 Retry-After 헤더와 본문 대기 초 안내가 실린다.
Docker / Fly.io:
flyctl launch --dockerfile Dockerfile
flyctl secrets set KIPRIS_API_KEY=발급키
flyctl deploy
| 사용자가 묻는 것 | 도구 호출 |
|---|---|
| "드론 배터리 관련 특허 찾아줘" | search_patents(query="드론 배터리") |
| "G06N 분류 AI 특허 중 삼성 것" | search_patents_advanced(ipc="G06N", applicant="삼성") |
| "발명명칭에 '폴더블' 들어간 특허" | search_patents_advanced(inventionTitle="폴더블") |
| "현대자동차가 출원한 특허 |