Auralis Google — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Auralis Google (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
MCP server for Google Workspace integration with Claude AI
Auralis Google provides seamless integration between Claude AI and Google Workspace services through the Model Context Protocol (MCP). Access Gmail, Calendar, Drive, Docs, and Sheets directly from Claude.
npm install -g auralis-googledocker pull antonpme/auralis-google
docker run -p 3000:3000 \
-e GOOGLE_CLIENT_ID=your_client_id \
-e GOOGLE_CLIENT_SECRET=your_client_secret \
-e GOOGLE_REDIRECT_URI=http://localhost:3000/oauth/callback \
antonpme/auralis-googlegit clone https://github.com/antonpme/auralis-google.git
cd auralis-google
npm install
npm run buildBefore using Auralis Google, you need to create OAuth credentials:
http://localhost:3000/oauth/callbackAdd to your claude_desktop_config.json:
{
"mcpServers": {
"google": {
"command": "auralis-google",
"env": {
"MCP_MODE": "stdio",
"GOOGLE_CLIENT_ID": "your_client_id.apps.googleusercontent.com",
"GOOGLE_CLIENT_SECRET": "your_client_secret",
"GOOGLE_REDIRECT_URI": "http://localhost:3000/oauth/callback"
}
}
}
}Set these environment variables:
| Variable | Description |
|---|---|
PORT | Server port (default: 3000) |
MCP_MODE | Set to http for HTTP mode (default) |
GOOGLE_CLIENT_ID | OAuth Client ID |
GOOGLE_CLIENT_SECRET | OAuth Client Secret |
GOOGLE_REDIRECT_URI | OAuth callback URL |
TOKENS_PATH | Path to store tokens (default: ./data/tokens.json) |
HTTP Endpoints:
| Endpoint | Method | Description |
|---|---|---|
/mcp | POST | MCP protocol endpoint (Streamable HTTP) |
/auth?account=xxx | GET | Start OAuth flow for account |
/oauth/callback | GET | OAuth callback handler |
/health | GET | Health check |
On first use, you need to authenticate with Google:
HTTP Mode:
http://localhost:3000/auth?account=personal in browserStdio Mode: You'll need to run the server in HTTP mode first to complete OAuth, then switch to stdio.
You can authenticate multiple Google accounts:
/auth?account=personal
/auth?account=work
/auth?account=clientThen specify the account when using tools:
{
"account": "work",
"query": "is:unread"
}| Tool | Description |
|---|---|
google_list_accounts | List all authenticated Google accounts |
| Tool | Description |
|---|---|
google_gmail_search | Search Gmail messages with query |
google_gmail_read | Read a specific email by ID |
google_gmail_send | Send an email |
google_gmail_labels | List Gmail labels |
| Tool | Description |
|---|---|
google_calendar_list | List all calendars |
google_calendar_list_events | List events with optional time filter |
google_calendar_create_event | Create a new event |
google_calendar_update_event | Update an existing event |
google_calendar_delete_event | Delete an event |
| Tool | Description |
|---|---|
google_drive_list | List files in Drive or folder |
google_drive_search | Search files by content |
google_drive_get | Get file metadata |
google_drive_read | Read file content (text/Google Docs) |
google_drive_create | Create a new file |
google_drive_delete | Delete a file |
google_drive_create_folder | Create a folder |
google_drive_move | Move file to another folder |
| Tool | Description |
|---|---|
google_docs_read | Read a Google Doc |
google_docs_append | Append text to a Doc |
google_docs_create | Create a new Google Doc |
| Tool | Description |
|---|---|
google_sheets_create | Create a new spreadsheet |
google_sheets_read | Read data from range |
google_sheets_append | Append rows to sheet |
google_sheets_update | Update cells in range |
google_sheets_info | Get spreadsheet metadata |
google_sheets_delete_rows | Delete rows |
google_sheets_clear | Clear cells in range |
google_sheets_add_sheet | Add new sheet tab |
google_sheets_delete_sheet | Delete sheet tab |
google_sheets_rename_sheet | Rename sheet tab |
Search my Gmail for unread messages from last weekCreate a meeting called "Project Review" tomorrow at 3pm for 1 hourRead all data from my Budget spreadsheetSend an email to [email protected] with subject "Meeting Notes" and the summary of our discussionGoogle released the Google Workspace CLI (gws) in March 2026 — a Rust-based CLI + MCP server that dynamically discovers all Google APIs. It's an impressive project. Here's how it compares:
| Auralis Google | Google Workspace CLI | |
|---|---|---|
| Focus | Production MCP server | CLI tool + MCP server |
| Maturity | Stable, production-tested | Pre-v1.0, rapid iteration |
| Language | TypeScript (hackable) | Rust (binary, not modifiable) |
| Transport | HTTP Streamable + Stdio | Stdio only |
| Remote deployment | ✅ Railway, Docker, any cloud | ❌ Local only |
| Google services | 5 (Gmail, Calendar, Drive, Docs, Sheets) | 26+ (auto-discovered) |
| MCP tools | 31 (focused) | 200-400 full / ~26 compact |
| Multi-account | ✅ Stable | ⚠️ Documented, auth issues |
| Custom OAuth app | ✅ Your own GCP project | ✅ Your own GCP project |
| Scope control | 5 scopes, always within limits | 85+ recommended, hits unverified app caps |
| Official Google product | No | No ("not officially supported") |
1. Remote-first architecture
Auralis Google runs on Railway, Docker, or any cloud provider. Your AI assistant accesses Google APIs from anywhere — not just your local machine. gws MCP mode only works over stdio (local process).
2. Production-stable
Real-world usage across multiple accounts. No auth loops, no token refresh issues, no scope conflicts. gws is under active development with open auth-related issues.
3. Right-sized tool surface
31 purpose-built tools that cover the core Google Workspace workflow. Your AI doesn't burn context tokens loading 200+ tool definitions. Each tool has clear input schemas with Zod validation.
4. Hackable
TypeScript source you can read, modify, and extend. Need a custom tool? Add it in 20 lines. Rust binaries don't offer that flexibility.
| Scenario | Recommendation |
|---|---|
| Production MCP server for AI assistants | Auralis Google |
| Local CLI for quick Google API calls | gws |
| Need Slides, Forms, Tasks, or Meet | gws (or add to Auralis Google) |
| Multi-machine / cloud deployment | Auralis Google |
| Want to modify or extend the code | Auralis Google |
Our take: Use Auralis Google for production AI workflows. Keep an eye on gws as it matures — it could become a great complement for services outside the core 5.Or use the railway.json included in this repo.
auralis-google/
├── src/
│ ├── index.ts # MCP server + Express endpoints
│ ├── auth.ts # OAuth2 management
│ └── tools/
│ ├── gmail.ts
│ ├── calendar.ts
│ ├── drive.ts
│ ├── docs.ts
│ └── sheets.ts
├── dist/ # Compiled JavaScript
├── data/ # Token storage (gitignored)
├── Dockerfile
├── railway.json
└── package.json./data/tokens.jsondata/ folder or .env filesContributions are welcome! Please open an issue or submit a pull request.
MIT License - see LICENSE file.
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.