Mcp Server — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Mcp Server (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
The ConfigCat's Model Context Protocol (MCP) server provides access to ConfigCat's public management API for feature flag and configuration management. It also enables your code editor to understand your feature flags, integrate the appropriate ConfigCat SDK into your project or even create new feature flags directly in your codebase.
You can use the following environment variables to configure the MCP server.
| Environment variable | Required | Default | Description |
|---|---|---|---|
| CONFIGCAT_API_USER | ☑ | ConfigCat Management API basic authentication username. | |
| CONFIGCAT_API_PASS | ☑ | ConfigCat Management API basic authentication password. | |
| CONFIGCAT_BASE_URL | https://api.configcat.com | ConfigCat Management API host. |
The instructions below shows how to connect a client to the MCP server.
Preferences -> Cursor Settings -> MCP & IntegrationsAdd Custom MCP{
"mcpServers": {
"ConfigCat": {
"command": "npx",
"args": ["-y", "@configcat/mcp-server"],
"env": {
"CONFIGCAT_API_USER": "YOUR_API_USER",
"CONFIGCAT_API_PASS": "YOUR_API_PASSWORD"
}
}
}
}.vscode/mcp.json file in your project root with the following content:{
"servers": {
"ConfigCat": {
"command": "npx",
"args": ["-y", "@configcat/mcp-server"],
"env": {
"CONFIGCAT_API_USER": "YOUR_API_USER",
"CONFIGCAT_API_PASS": "YOUR_API_PASSWORD"
}
}
}
}claude_desktop_config.json{
"mcpServers": {
"ConfigCat": {
"command": "npx",
"args": ["-y", "@configcat/mcp-server"],
"env": {
"CONFIGCAT_API_USER": "YOUR_API_USER",
"CONFIGCAT_API_PASS": "YOUR_API_PASSWORD"
}
}
}
}#### Organizations
list-organizations - List all organizations#### Members
list-organization-members - List organization memberslist-pending-invitations - List pending invitationslist-pending-invitations-org - List org pending invitationslist-product-members - List product membersinvite-member - Invite a new memberupdate-member-permissions - Update the permissions of a memberdelete-organization-member - Remove organization memberdelete-product-member - Remove product memberdelete-invitation - Cancel invitation#### Permission Groups
list-permission-groups - List permission groupscreate-permission-group - Create a new permission groupget-permission-group - Get permission group detailsupdate-permission-group - Update permission groupdelete-permission-group - Delete permission group#### Products
list-products - List all productsget-product - Get specific product detailsupdate-product - Update existing productdelete-product - Delete a productget-product-preferences - Get product preferencesupdate-product-preferences - Update product preferencescreate-product - Create a new product#### Configs
list-configs - List configs for a productcreate-config - Create a new configget-config - Get specific config detailsupdate-config - Update existing configdelete-config - Delete a config#### Environments
list-environments - List environments for a productcreate-environment - Create a new environmentget-environment - Get specific environment detailsupdate-environment - Update existing environmentdelete-environment - Delete an environment#### Segments
list-segments - List user segmentscreate-segment - Create a new segmentget-segment - Get specific segment detailsupdate-segment - Update existing segmentdelete-segment - Delete a segment#### SDK Keys
get-sdk-keys - Get SDK keys for config/environment#### Webhooks
list-webhooks - List webhooksget-webhook - Get webhook detailsreplace-webhook - Replace webhook configurationupdate-webhook - Update existing webhookdelete-webhook - Delete a webhookget-webhook-signing-keys - List webhook signing keyscreate-webhook - Create a new webhook#### Integrations
list-integrations - List integrationscreate-integration - Create a new integrationget-integration - Get integration detailsupdate-integration - Update existing integrationdelete-integration - Delete an integration#### Code References
get-code-references - Get code references#### Audit logs
list-auditlogs - Get product audit logslist-organization-auditlogs - Get organization audit logs#### Zombie (stale) flags
list-staleflags - Get stale feature flags report#### Feature Flags & Settings
list-settings - List feature flags for a configcreate-setting - Create a new feature flaglist-predefined-variations - List predefined variationsupdate-predefined-variations - Update predefined variationsget-setting - Get specific feature flag detailsreplace-setting - Replace feature flag configurationupdate-setting - Update existing feature flagdelete-setting - Delete a feature flag#### Tags
list-tags - List tags for a productcreate-tag - Create a new taglist-settings-by-tag - Get feature flags by tagget-tag - Get specific tag detailsupdate-tag - Update existing tagdelete-tag - Delete a tagget-setting-value - Get feature flag valueupdate-setting-value - Update feature flag valuereplace-setting-value - Replace feature flag valueget-setting-values - Get multiple setting valuespost-setting-values - Update multiple setting values*-v2 versions of above tools for Config V2update-sdk-documentation - Get comprehensive SDK documentation and code examples for seamless feature flag implementation in your project.The ConfigCat public API has rate limits. The server will respect these limits and return appropriate error messages if limits are exceeded.
This server is designed for management operations only. Do not use it for evaluating feature flag values in production applications - use the ConfigCat SDKs or ConfigCat Proxy instead.
https://configcat.com/support
Contributions are welcome. For more info please read the Contribution Guideline.
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.