CoreSpeed
One MCP for any agent: your connected apps, shared memory, web search, social data and media tools.
Hosted MCP Server
npx add-mcp 'https://api.corespeed.io/mcp'Installs into Claude Code, Codex, Cursor and more
Documentation
MCP server (/docs/mcp)
Connect your agent to CoreSpeed over the Model Context Protocol, the open standard agents use to discover and call tools.
Quick setup [#quick-setup]
Give your agent this line. It adds the server, signs you in, and asks which of your apps to connect.
set up https://corespeed.io/SKILL.md (read it raw, e.g. with curl)
The skill it fetches is SKILL.md.
What is the CoreSpeed MCP server? [#what-is-the-corespeed-mcp-server]
https://api.corespeed.io/mcp
One remote server over Streamable HTTP, signed in once through the browser or with an API key, gives every agent you run:
- The tools of every app your organization has connected — Notion, Slack,
GitHub, X, and the rest — as
notion__create_page,slack__post_message, … (Connectors) - Durable memory that follows you across agents and sessions (Memory)
- Media generation and understanding, live web search, and public social data (Media, Web, Social)
- Your organization's own MCP servers, as
org__<slug>__<tool>(Remote MCP servers)
Every call carries your organization's spend caps, lands in one ledger, and is recorded in the activity trail (Billing & credits, Activity & audit). The server implements the MCP Authorization and Streamable HTTP specifications.
Available tools [#available-tools]
The tool list is yours, not a catalog. tools/list returns exactly what your
sign-in can call: the tools of your connected accounts, the built-in
capabilities you have enabled, and the manage__* account tools. Names are
<capability>__<operation>. Each family is documented on its own page —
Connectors, Memory, Media,
Web, Social, and the
manage__* reference.
Supported clients [#supported-clients]
Any client that speaks Streamable HTTP and MCP Authorization connects with the URL alone — CoreSpeed's authorization server supports both dynamic client registration and client ID metadata documents, so there is nothing to register first. Clients without OAuth use an API key.
Claude.ai and Claude Desktop and
ChatGPT connect too, as custom connectors, and
any other client that reads an mcpServers map takes the
same entry.
Set up your client [#set-up-your-client]
Add the server at user scope — the configuration that applies to every
project — and sign in when the client asks. If the client already has an older
corespeed entry, replace it: duplicate registrations collide on tool names.
Claude Code [#claude-code]
claude mcp add corespeed https://api.corespeed.io/mcp \
--transport http --scope user # user scope: every project, not just this one
claude # start Claude Code
/mcp # pick corespeed and authenticate in the browser
Codex [#codex]
codex mcp add corespeed --url https://api.corespeed.io/mcp
codex mcp login corespeed # signs in through the browser
Cursor [#cursor]
Click the button, or add the entry to ~/.cursor/mcp.json yourself. Cursor
then shows Needs login beside the server; click it to sign in.
One-click install: cursor://anysphere.cursor-deeplink/mcp/install?name=corespeed&config=eyJ1cmwiOiJodHRwczovL2FwaS5jb3Jlc3BlZWQuaW8vbWNwIn0%3D
{
"mcpServers": {
"corespeed": {
"url": "https://api.corespeed.io/mcp"
}
}
}
Copilot in VS Code [#copilot-in-vs-code]
Click the button, or run MCP: Add Server from the Command Palette, choose
HTTP, enter the URL and the name corespeed, and pick Global. Then run
MCP: List Servers, start corespeed, and allow the sign-in when VS Code
asks.
One-click install: vscode:mcp/install?%7B%22name%22%3A%22corespeed%22%2C%22type%22%3A%22http%22%2C%22url%22%3A%22https%3A%2F%2Fapi.corespeed.io%2Fmcp%22%7D
{
"servers": {
"corespeed": {
"type": "http",
"url": "https://api.corespeed.io/mcp"
}
}
}
OpenClaw [#openclaw]
Add the server to the gateway configuration with OAuth, then sign in from the CLI; it prints the authorization URL to open if it cannot open the browser.
{
mcp: {
servers: {
corespeed: {
url: "https://api.corespeed.io/mcp",
transport: "streamable-http",
auth: "oauth",
},
},
},
}
openclaw mcp login corespeed
Hermes [#hermes]
Hermes runs the OAuth flow itself: on the first connect it opens the browser
to sign in and caches the token. In a running session, /reload-mcp picks up
the change.
mcp_servers:
corespeed:
url: https://api.corespeed.io/mcp
auth: oauth
Claude.ai and Claude Desktop [#claudeai-and-claude-desktop]
Custom connectors are available on the Pro, Max, Team, and Enterprise plans.
Click the button to open the Add custom connector dialog with the name and URL filled in, or add it yourself:
One-click install: https://claude.ai/customize/connectors?modal=add-custom-connector&connectorName=CoreSpeed&connectorUrl=https%3A%2F%2Fapi.corespeed.io%2Fmcp
- Open Customize → Connectors and choose Add custom connector.
- Name it
CoreSpeedand enter the URLhttps://api.corespeed.io/mcp. - Choose Connect and sign in.
ChatGPT [#chatgpt]
Custom connectors run under ChatGPT's Developer mode, on Plus and Pro accounts on the web.
- Turn on Developer mode under Settings → Connectors → Advanced settings.
- In Connectors, choose Create: name
CoreSpeed, MCP server URLhttps://api.corespeed.io/mcp, authentication OAuth. - Sign in when prompted. The connector appears under the composer's Developer mode tools.
Other clients [#other-clients]
Any client that reads an mcpServers map takes this entry; add it at user
scope and sign in when the client asks.
{
"mcpServers": {
"corespeed": {
"type": "http",
"url": "https://api.corespeed.io/mcp"
}
}
}
Without a browser [#without-a-browser]
Clients that cannot open a browser — CI, headless agents, a client without OAuth — send an API key from Dashboard → API keys instead. A member key acts as you; an agent key acts as an agent principal and reaches shared accounts only. See Authentication.
{
"mcpServers": {
"corespeed": {
"type": "http",
"url": "https://api.corespeed.io/mcp",
"headers": {
"Authorization": "Bearer sk-cs-..."
}
}
}
}
Transport and discovery [#transport-and-discovery]
The transport is Streamable HTTP and stateless: one JSON-RPC call per HTTP
request, batches rejected, and no GET /mcp stream. Discovery is
caller-specific, so both answers come from authenticated calls:
| Question | Source of truth |
|---|---|
| Which apps can this caller connect, and what account state exists? | GET /connectors |
| Which tools can this caller invoke right now? | tools/list on POST /mcp |
Never construct a tool inventory in application code. Run tools/list after
authentication and use the returned names and input schemas. Read it with three
caveats:
- Absence is a decision, not a bug. If a tool is missing, this caller cannot invoke it: the capability is off, or the account is not connected.
- Presence is not health. A connector account in
needs_reauthstill contributes tools; those calls fail until the account is reauthorized. Check accountstatusinGET /connectorswhen a visible tool keeps failing. - Presence is not permission. The session-gated
manage__*tools are listed for an API-key caller but answerjwt_session_required— see Authentication.
Calling tools [#calling-tools]
Organization billing holds, suspensions, and API-key spend caps are checked
before a metered tool executes. Those refusals come back as an MCP isError
result inside an HTTP 200, so check result.isError, not just the status.
The request body, response fields, and every code are in the
tools/call reference and
Error handling.
Security best practices [#security-best-practices]
- Verify the endpoint. The server is
https://api.corespeed.io/mcpand sign-in happens atlogin.corespeed.io; the consent screen names the client that is asking. A one-click install from a marketplace should point at exactly that URL. - Sign-in grants the agent what you can do. Every private and shared
connection in your active organization is reachable through it. Connect only
the accounts you want agents to act through, and give unattended agents an
agent key (
sk-csa-), which reaches shared accounts only — see Authentication. - Cap the spend. Put a monthly cap on every API key and let the wallet hold stop metered calls before they run — see Billing & credits.
- Treat fetched content as untrusted. Pages, posts, and documents read through web, social, and connector tools can carry instructions aimed at the agent. Keep your client's confirmation on for actions that write or send, especially when other MCP servers are connected alongside CoreSpeed.
- Read the trail. Every call is attributed to a member or agent in Dashboard → Activity.