Field-by-field comparison
Compare the evidence before choosing an MCP.
Each signal stays separate, missing facts remain visible, and the column order follows your selection.
| Evidence field | AI Game Developer — Unity SKILLS, MCPWatchlist candidate | GitHub MCPMCP100 Selected |
|---|---|---|
| Task fit | ||
| Best for |
|
|
| Not ideal for |
|
|
| Avoid when |
|
|
| Provenance | ||
| Provenance details | Community implementation io.github.IvanMurzak · Publisher source ↗ | First-party MCP GitHub · Publisher source ↗ |
| Maintenance | ||
| Maintenance details | Repo: Aug 10, 2026 Package: Not documented | Repo: Aug 14, 2026 Package: Not documented |
| Popularity evidence | ||
| GitHub stars | Not documented | 32,248 GitHub stars · checked 2026-08-14T18:46:26.000Z |
| Shared repository stars | 3,893 Shared repository stars (not MCP-specific) · checked 2026-08-14T18:46:26.000Z | Not documented |
| External adoption evidence |
|
|
| Client coverage | ||
| Client coverage details | Claude Code✓ Streamable HTTP Claude Desktop✓ Streamable HTTP Codex✓ Streamable HTTP VS Code✓ Streamable HTTP Cursor✓ Streamable HTTP OpenCode✓ Streamable HTTP | Claude Code✓ Streamable HTTP Claude Desktop✓ Streamable HTTP Codex✓ Streamable HTTP VS Code✓ Streamable HTTP Cursor✓ Streamable HTTP OpenCode✓ Streamable HTTP |
| Client coverage note | Local stdio runs on your computer. Streamable HTTP connects to a remotely hosted MCP server. | |
| Access and data | ||
| Authentication | Authorization modes are none, OAuth, or token, with none documented as the default. Token mode uses MCP_PLUGIN_TOKEN; cloud CLI login uses OAuth device flow. | Hosted service supports OAuth; local stdio uses GITHUB_PERSONAL_ACCESS_TOKEN. GitHub recommends minimum scopes, separate tokens, rotation, and environment-variable handling. |
| Cost | The Apache-2.0 project lists no MCP fee. Unity, model, hosting, and cloud-service costs are not documented. | The open-source server is MIT licensed. GitHub account, Copilot, Enterprise, Actions, API, or other product charges and limits may apply independently. |
| Permissions | Provides broad Unity Editor and runtime access, including project and asset writes, scene mutation, package changes, dynamic C# compilation and execution, reflection calls, profiling, and custom tools. | Access follows the authenticated GitHub identity and granted OAuth/PAT permissions. The server supports tool allow-lists, read-only mode, repository-oriented toolsets, and lockdown mode; write tools remain possible unless read-only mode is enabled. |
| Data handling | Assets, scripts, scenes, runtime data, and results pass between the client, MCP server, and Unity plugin. Optional tool, prompt, and resource webhooks and cloud URLs are supported; retention is not documented. | Repository contents, issues, pull requests, users, actions, and other enabled GitHub API data may be returned to the MCP client. The local server passes requests to GitHub; the hosted server is operated by GitHub. Do not place PATs in committed configuration. |
| Limitations | ||
| Tradeoffs |
|
|
| Risk context | Default unauthenticated mode plus broad writes, arbitrary C# execution, reflection, runtime access, and webhooks is high impact. Prefer local stdio, enable token or OAuth for HTTP, and restrict tools. | A broadly scoped token plus write-capable tools can alter repositories and collaboration records. Prefer fine-grained credentials, repository restriction, explicit toolsets, GITHUB_READ_ONLY=1, and lockdown mode where public-content prompt injection is a concern. |
| Evidence date | ||
| Editorial review | 2026-08-11 | 2026-07-24 |
| Candidate evidence | 2026-08-14T18:46:26.000Z | 2026-08-14T18:46:26.000Z |
Popularity, maintenance, fit, permissions, and client support are independent evidence fields.
Read the evidence method →