Gotohuman Mcp Server — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Gotohuman Mcp Server (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
gotoHuman makes it easy to add human approvals to AI agents and agentic workflows. A fully-managed async human-in-the-loop workflow with a customizable approval UI. Enjoy built-in auth, webhooks, notifications, team features, and an evolving training dataset.
Use our MCP server to request human approvals from your AI workflows via MCP or add it to your IDE to help with integration.
npx @gotohuman/mcp-server{
"mcpServers": {
"gotoHuman": {
"command": "npx",
"args": ["-y", "@gotohuman/mcp-server"],
"env": {
"GOTOHUMAN_API_KEY": "your-api-key"
}
}
}
}Get your API key and set up an approval step at app.gotohuman.com
This is Cursor on the left, but this could be a background agent that also reacts to the approval webhook.
https://github.com/user-attachments/assets/380a4223-ea77-4e24-90a5-52669b77f56f
list-formsList all available review templates.
get-form-schemaGet the schema to use when requesting a human review for a given review template.
formId: The review template ID to fetch the schema forrequest-human-review-with-formRequest a human review. Will appear in your gotoHuman inbox.
formId: The ID of the review template to usefieldData: Content (AI-output to review, context,...) and configuration for the review template's fields.The schema for this needs to be fetched with get-form-schema
config: Configuration for the review template. Optional. The schema for this needs to be fetched with get-form-schematitle: Optional title shown in the inbox and notificationswebhookUrl: Optional webhook URL for this request (when the review template has no default webhook)workflow: Optional object linking this review to a multi-step agentic workflow:runId: Unique ID for the current workflow run. Use the same runId on every review in the same run. If workflow is sent without runId (even {}), or for manual triggers, gotoHuman creates a runId and returns it as workflowRunId for subsequent requests.runName: Optional display name for the run (can be set or updated on any step)prevSteps: Array of reviewIds from previous gotoHuman review steps (omit on the first step)metadata: Optional additional data that will be incl. in the webhook response after review template submissionassignToUsers: Optional list of user emails to assign the review toreviewId, reviewLink, and optionally workflowRunId when gotoHuman assigned a new workflow run# Install dependencies
npm install
# Build the server
npm run build
# For testing: Run the MCP inspector
npm run inspector#### Run locally in MCP Client (e.g. Cursor / Claude / Windsurf)
{
"mcpServers": {
"gotoHuman": {
"command": "node",
"args": ["/<absolute-path>/build/index.js"],
"env": {
"GOTOHUMAN_API_KEY": "your-api-key",
"GOTOHUMAN_AGENT_ID": "your-agent-id"
}
}
}
}[!NOTE] For Windows, theargspath needs to beC:\\<absolute-path>\\build\\index.js
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.