Claude security directory

n8n

Published by n8n GmbH

High risk

Talk to your n8n instance directly from Claude - create and test automations, search and manage resources like workflows, data tables and projects

Security assessment

Plutonium assessed this web connector for permissions, capabilities, and security-relevant behavior.

  • Reads your private information: This connector can list credentials, inspect workflow details, executions, projects/folders, and data tables, which may include sensitive business logic, metadata, and stored data.
  • Can change or update your information: It can create and update workflows and data tables (including schemas and rows), publish/unpublish workflows, and modify resource names/columns, altering your automation environment.
  • Can permanently delete data: It can delete data table columns, which can irreversibly remove structured data and break downstream workflows that rely on those fields.
  • Can run commands or queries on your behalf: It can execute and test workflows, which may trigger connected integrations (APIs, databases, SaaS) and run arbitrary automation steps with the instance’s permissions.
  • Stores long-lived access tokens: Access to n8n typically relies on API keys or tokens that remain valid over time, increasing impact if credentials are exposed or misused.

Available capabilities

This add-on exposes 27 tools or capabilities.

  • search_workflows
  • execute_workflow
  • get_execution
  • search_executions
  • get_workflow_details
  • publish_workflow
  • unpublish_workflow
  • prepare_test_pin_data
  • test_workflow
  • list_credentials
  • search_data_tables
  • create_data_table
  • rename_data_table
  • add_data_table_column
  • delete_data_table_column
  • rename_data_table_column
  • add_data_table_rows
  • search_nodes
  • get_node_types
  • get_suggested_nodes
  • validate_workflow
  • create_workflow_from_code
  • search_projects
  • search_folders

The interactive security report will load automatically.