Mcp — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Mcp (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
<p align="center"> <a href="https://wireboard.io"> <img src="https://wireboard.io/img/logo-blue.png" alt="WireBoard" height="64"> </a> </p>
<h1 align="center"><code>wireboard-mcp</code></h1>
<p align="center"> Official Model Context Protocol server for <a href="https://wireboard.io">WireBoard</a>. </p>
<p align="center"> Lets LLM agents (Claude Desktop, Cursor, VS Code, etc.) query your real-time and historical analytics in conversation. Built on top of the official <a href="https://www.npmjs.com/package/@wireboard/api"><code>@wireboard/api</code></a> JavaScript SDK. </p>
Two ways to install, pick whichever fits your setup.
Download wireboard-mcp-x.y.z.mcpb from the GitHub releases page and double-click it. One file works on Windows, macOS, and Linux — Claude Desktop ships its own Node runtime, so there are no system dependencies to install.
Claude Desktop will prompt for your WireBoard API token, store it securely in your OS keychain, and the WireBoard tools become available immediately.
If double-click doesn't open the file, install it via Claude Desktop → Settings → Extensions → Advanced Settings → Install Extension.
npm install -g @wireboard/mcpRequires Node 18+. Then configure your MCP client of choice.
#### Claude Desktop config
Edit claude_desktop_config.json (Settings → Developer → Edit Config):
{
"mcpServers": {
"wireboard": {
"command": "wireboard-mcp",
"env": {
"WIREBOARD_TOKEN": "your_token_here"
}
}
}
}Restart Claude Desktop. The WireBoard tools will appear automatically.
#### Cursor / VS Code / other MCP clients
Use the same command + env-var pattern in your client's MCP config.
You need a WireBoard API token before either install path will work. Mint one at Settings → API with the analytics:read ability for REST tools and live:read for the live snapshot tool.
Once configured, ask Claude things like:
Claude will pick the right tool, call it, and answer in natural language.
| Tool | What |
|---|---|
list_sites | Every site in the account |
get_account | Token-owner identity + abilities |
get_aggregate | Period totals: visitors, pageviews, bounce rate, duration |
get_timeseries | One metric (visitors or pageviews) bucketed by hour or day |
get_history | Per-day visitors / returning / pageviews / bounce / duration |
get_breakdown | Top-N rows by dimension (country, device, browser, referrer, etc.) |
get_top_urls | Per-URL metrics with prefix / contains / exact filters |
query_events | Custom event queries with grouping and filtering |
get_live_state | Real-time snapshot (live visitor count, top pages, active sessions, etc.) |
list_dimensions | Meta: every dimension, metric, and limit the API supports |
All tools accept natural date ranges: "today", "yesterday", "last 7 days" (or "30d" shorthand), "this week", "last week", "this month", "last month", or explicit "YYYY-MM-DD..YYYY-MM-DD". Always UTC.
The MCP proactively caps itself at 100 requests/minute (under the API's 120/minute limit) so LLM bursts space themselves out instead of hitting 429s. Override with the WIREBOARD_MCP_RATE_PER_MINUTE env var if you have a use case that needs different pacing.
The underlying SDK still auto-retries on 429 as a backstop.
analytics:read and live:read scope on every site in the account.The MCP is read-only: it can fetch data, never modify it. The WireBoard public API itself is read-only in v1.
Logs go to stderr (so they don't interfere with the MCP protocol on stdout).
@wireboard/mcpgithub.com/wireboard/mcpgithub.com/wireboard/mcp/releasesgithub.com/wireboard/mcp/issues@wireboard/api (source)npm install
npm test # run vitest
npm run build # bundle TS → dist/index.js (esbuild, ~600 KB)
npm run build:mcpb # also pack dist/wireboard-mcp-<version>.mcpbThe .mcpb is a zip of manifest.json, icon.png, and the single bundled dist/index.js. All runtime dependencies are inlined by esbuild.
MIT.
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.