General Tools
librebase.xyz
Provides general-purpose tools through the Model Context Protocol.
ENDPOINT 1
https://app.librebase.xyz/api/mcp
MCP server metadata
- Name
- librebase
- Version
- 0.1.40
SaaS MCP is JSON-RPC at https://app.librebase.xyz/api/mcp (GET https://app.librebase.xyz/api/mcp for discovery). Alias: https://app.librebase.xyz/mcp. 1. tools/call auth_status. 2. If unauthenticated, tools/call auth_start. Pass access=read|write and resources=[projects,keys,logs,instances,hosts,members] for the permissions you need; omit them to request full read/write on every area. The payload includes showToHuman — your next message to the human MUST be that URL on its own first line, then the userCode. Do not bury them in a status report. 3. Open that URL (https://app.librebase.xyz/mcp/authorize) in the browser, review the requested permissions, and click Approve. 4. tools/call auth_poll. Send the mcp-session-id response header back, or pass deviceCode. Repeat while status is waiting_for_user (ok:true). That is not a failure and does not need an MCP key. Hosted sessions persist across Studio rebuilds; the token is never returned in JSON-RPC. 5. Write path (human Approve required): org_whoami → host_list → instance_create(hostId) → instance_launch → project_create → sqlite_import or supabase_import (preview then write, project DB only) → knowledge_bootstrap then knowledge_put/search (durable project notes in the project DB) → app_deploy (appId template or image) → instance_health → report URL. Hermes dogfood (LIB-55): hermes_bootstrap → hermes_gap_upsert → hermes_sync_linear (Linear key stays on the server). Read-only tokens must auth_start again with access=write. auth_logout drops the session token. Do not paste an MCP key into chat or config for interactive use. Do not send the operator to accounts.x.ai or Grok OAuth. Do not call admin_login / admin_setup on the hosted SaaS MCP.
Known tools 88
auth_startStart Librebase device login on this console (NOT x.ai, NOT Grok OAuth, NOT admin_login).
Inferred read-onlyauth_completeFinish a pending device login using this session's full-agent token (every org).
Inferred read-onlyauth_pollPoll until the human clicks Approve, or until auth_start/auth_complete already finished.
Inferred read-onlyauth_logoutDrop the session token for this MCP session (does not revoke console CI keys).
Potential side effectsbilling_getOrg plan, instance count/limit, and Stripe status (control-plane metadata only).
Inferred read-onlyusage_project_summaryUsage meters aggregated for a project's instances (ids only).
Inferred read-onlyhost_statusHost health: status, IP, memory budget, last heartbeat, and agent diagnostics (containers).
Inferred read-onlysqlite_importImport a user SQLite dump into the project database (not the SaaS control plane).
Inferred read-onlysupabase_importImport a Supabase/Postgres dump into the project database (never the SaaS control plane).
Inferred read-onlyhermes_bootstrapLIB-55: apply named Hermes migrations to the project database (gaps, observations, lifecycle, Linear links, competitors).
Inferred read-onlyhermes_gap_upsertInsert or update a Hermes gap in the project database by stable externalKey.
Potential side effectsknowledge_bootstrapLIB-100: apply named knowledge migrations (pages, entities, links, embeddings) to the project database.
Inferred read-onlyknowledge_searchHybrid search over project knowledge pages (LIKE + local hash/ngram).
Inferred read-onlyknowledge_putInsert or update a knowledge page in the project database (people, decisions, how we work).
Potential side effectsknowledge_getGet a knowledge page by id or slug, with entities, links, and backlinks.
Inferred read-onlystorage_object_putUpload an object to the project instance (utf8 or base64 content).
Potential side effectsstorage_object_getDownload an object from the project instance (JSON with base64).
Inferred read-onlyfunction_listList small HTTP-invocable functions stored in the project database (LIB-25).
Inferred read-onlyfunction_upsertCreate or replace a small edge function (def handler(request, auth)).
Potential side effectssemantic_searchNearest-neighbor search over vectors stored in the project database.
Inferred read-onlyget_mcp_audit_logList recent MCP tool-call audit events for this org (redacted args, no secrets).
Inferred read-onlytelemetry_statusInstance health + last log JSON (control-plane metadata) and Sentry/Slack configured flags.
Potential side effectsCONNECT WITH APPROVAL
Client installation
Review this server and its permissions before adding it. Secret placeholders must be set locally.
Codex
~/.codex/config.toml
[mcp_servers.librebase]
url = "https://app.librebase.xyz/api/mcp"
enabled = true
Claude Code
.mcp.json
{
"mcpServers": {
"librebase": {
"type": "http",
"url": "https://app.librebase.xyz/api/mcp"
}
}
}
Claude Desktop
Settings → Connectors → Add custom connector
Name: librebase
Remote MCP URL: https://app.librebase.xyz/api/mcp
Add this remote URL as a custom connector in Claude Desktop. Availability depends on the user plan and workspace policy.
Cursor
.cursor/mcp.json
{
"mcpServers": {
"librebase": {
"url": "https://app.librebase.xyz/api/mcp"
}
}
}
Visual Studio Code
.vscode/mcp.json
Add to Visual Studio Code{
"servers": {
"librebase": {
"type": "http",
"url": "https://app.librebase.xyz/api/mcp"
}
}
}
Generic MCP
Client-specific MCP configuration
{
"name": "librebase",
"transport": "streamable-http",
"url": "https://app.librebase.xyz/api/mcp"
}
MCP Inspector
Run the official MCP Inspector locally and enter the indexed Streamable HTTP endpoint.
ENDPOINT 2
https://app.librebase.xyz/mcp
MCP server metadata
- Name
- librebase
- Version
- 0.1.40
SaaS MCP is JSON-RPC at https://app.librebase.xyz/api/mcp (GET https://app.librebase.xyz/api/mcp for discovery). Alias: https://app.librebase.xyz/mcp. 1. tools/call auth_status. 2. If unauthenticated, tools/call auth_start. Pass access=read|write and resources=[projects,keys,logs,instances,hosts,members] for the permissions you need; omit them to request full read/write on every area. The payload includes showToHuman — your next message to the human MUST be that URL on its own first line, then the userCode. Do not bury them in a status report. 3. Open that URL (https://app.librebase.xyz/mcp/authorize) in the browser, review the requested permissions, and click Approve. 4. tools/call auth_poll. Send the mcp-session-id response header back, or pass deviceCode. Repeat while status is waiting_for_user (ok:true). That is not a failure and does not need an MCP key. Hosted sessions persist across Studio rebuilds; the token is never returned in JSON-RPC. 5. Write path (human Approve required): org_whoami → host_list → instance_create(hostId) → instance_launch → project_create → sqlite_import or supabase_import (preview then write, project DB only) → knowledge_bootstrap then knowledge_put/search (durable project notes in the project DB) → app_deploy (appId template or image) → instance_health → report URL. Hermes dogfood (LIB-55): hermes_bootstrap → hermes_gap_upsert → hermes_sync_linear (Linear key stays on the server). Read-only tokens must auth_start again with access=write. auth_logout drops the session token. Do not paste an MCP key into chat or config for interactive use. Do not send the operator to accounts.x.ai or Grok OAuth. Do not call admin_login / admin_setup on the hosted SaaS MCP.
Known tools 88
auth_startStart Librebase device login on this console (NOT x.ai, NOT Grok OAuth, NOT admin_login).
Inferred read-onlyauth_completeFinish a pending device login using this session's full-agent token (every org).
Inferred read-onlyauth_pollPoll until the human clicks Approve, or until auth_start/auth_complete already finished.
Inferred read-onlyauth_logoutDrop the session token for this MCP session (does not revoke console CI keys).
Potential side effectsbilling_getOrg plan, instance count/limit, and Stripe status (control-plane metadata only).
Inferred read-onlyusage_project_summaryUsage meters aggregated for a project's instances (ids only).
Inferred read-onlyhost_statusHost health: status, IP, memory budget, last heartbeat, and agent diagnostics (containers).
Inferred read-onlysqlite_importImport a user SQLite dump into the project database (not the SaaS control plane).
Inferred read-onlysupabase_importImport a Supabase/Postgres dump into the project database (never the SaaS control plane).
Inferred read-onlyhermes_bootstrapLIB-55: apply named Hermes migrations to the project database (gaps, observations, lifecycle, Linear links, competitors).
Inferred read-onlyhermes_gap_upsertInsert or update a Hermes gap in the project database by stable externalKey.
Potential side effectsknowledge_bootstrapLIB-100: apply named knowledge migrations (pages, entities, links, embeddings) to the project database.
Inferred read-onlyknowledge_searchHybrid search over project knowledge pages (LIKE + local hash/ngram).
Inferred read-onlyknowledge_putInsert or update a knowledge page in the project database (people, decisions, how we work).
Potential side effectsknowledge_getGet a knowledge page by id or slug, with entities, links, and backlinks.
Inferred read-onlystorage_object_putUpload an object to the project instance (utf8 or base64 content).
Potential side effectsstorage_object_getDownload an object from the project instance (JSON with base64).
Inferred read-onlyfunction_listList small HTTP-invocable functions stored in the project database (LIB-25).
Inferred read-onlyfunction_upsertCreate or replace a small edge function (def handler(request, auth)).
Potential side effectssemantic_searchNearest-neighbor search over vectors stored in the project database.
Inferred read-onlyget_mcp_audit_logList recent MCP tool-call audit events for this org (redacted args, no secrets).
Inferred read-onlytelemetry_statusInstance health + last log JSON (control-plane metadata) and Sentry/Slack configured flags.
Potential side effectsCONNECT WITH APPROVAL
Client installation
Review this server and its permissions before adding it. Secret placeholders must be set locally.
Codex
~/.codex/config.toml
[mcp_servers.librebase]
url = "https://app.librebase.xyz/mcp"
enabled = true
Claude Code
.mcp.json
{
"mcpServers": {
"librebase": {
"type": "http",
"url": "https://app.librebase.xyz/mcp"
}
}
}
Claude Desktop
Settings → Connectors → Add custom connector
Name: librebase
Remote MCP URL: https://app.librebase.xyz/mcp
Add this remote URL as a custom connector in Claude Desktop. Availability depends on the user plan and workspace policy.
Cursor
.cursor/mcp.json
{
"mcpServers": {
"librebase": {
"url": "https://app.librebase.xyz/mcp"
}
}
}
Visual Studio Code
.vscode/mcp.json
Add to Visual Studio Code{
"servers": {
"librebase": {
"type": "http",
"url": "https://app.librebase.xyz/mcp"
}
}
}
Generic MCP
Client-specific MCP configuration
{
"name": "librebase",
"transport": "streamable-http",
"url": "https://app.librebase.xyz/mcp"
}
MCP Inspector
Run the official MCP Inspector locally and enter the indexed Streamable HTTP endpoint.
TRUST AND VERIFICATION EVIDENCE
Loading Trust v2 evidence…
Checking the associated registrable domain. The BuiltWith key remains server-side.
Evidence is source-attributed and does not guarantee that a third-party server is safe. Risk labels are conservative metadata heuristics.