Apple Files MCP
Local MCP server for file, Finder-adjacent, and iCloud Drive workflows on macOS.
Capabilities
- list allowed file roots
- inspect directory contents
- search files and folders by name
- read UTF-8 text files
- inspect file metadata
- list recent files
- open a path in the default app
- reveal a path in Finder
- read and write Finder tags
- list recent locations
- report local iCloud Drive availability
- create folders
- move or rename paths
- delete files or empty folders
- resources:
files://allowed-roots,files://recent,files://recent-locations,files://icloud-status - prompts:
files_prepare_attachment,files_organize_workspace - tool discovery helpers
search_toolsandget_tool_infofor context-constrained clients
Install On This Mac
From a clone
git clone https://github.com/JonathanRReed/Apple-MCPs.git
cd Apple-MCPs
uv sync --all-packages
This builds one workspace environment with every server's entry point in .venv/bin (for example .venv/bin/apple-files-mcp). You can also point an MCP client at AppleFiles-MCP/start.sh, which prefers uv run and falls back to a plain venv bootstrap (Python 3.11+ required).
Install In AI Agents
{
"mcpServers": {
"apple-files": {
"command": "uvx",
"args": ["apple-files-mcp"],
"env": {
"APPLE_FILES_MCP_ALLOWED_ROOTS": "/Users/you/Desktop,/Users/you/Documents,/Users/you/Downloads,/Users/you/Library/Mobile Documents/com~apple~CloudDocs",
"APPLE_FILES_MCP_SAFETY_MODE": "safe_manage"
}
}
}
}
Running from a clone instead? Use /path/to/Apple-MCPs/AppleFiles-MCP/start.sh as the command with empty args.
Claude Code:
claude mcp add --transport stdio --scope project apple-files -- uvx apple-files-mcp
Transport
stdio is the default and recommended transport. Set APPLE_FILES_MCP_TRANSPORT=streamable-http (with optional APPLE_FILES_MCP_HOST and APPLE_FILES_MCP_PORT) to serve Streamable HTTP instead.
Prompting Notes
tools/listreturns the full Files tool surface. Context-constrained clients can usesearch_toolsfirst, thenget_tool_infofor the Files tool they need.- Use this server before Mail, Messages, Notes, or Shortcuts when the user references a local file or attachment.
- Use this server for Finder-style workflows, iCloud Drive paths, and file tagging, not raw shell fallbacks.
- Confirm the exact path before sending or attaching a file.
- Keep
APPLE_FILES_MCP_ALLOWED_ROOTSnarrow for safety. - Include the local iCloud Drive root when you want the assistant to work with iCloud documents.
- Use
APPLE_FILES_MCP_SAFETY_MODE=safe_managefor assistant workflows that need create and move, andfull_accessonly for delete workflows.
Health And Recovery
files_healthfiles_permission_guidefiles_list_allowed_rootsfiles_get_icloud_statusfiles_list_recent_locationsfiles_get_tags
Launch Checklist
- Add
uvx apple-files-mcp(or a clone'sAppleFiles-MCP/start.sh) to your MCP client - Reload or reconnect the client so the Files tool surface is loaded into context
- Call
files_healthfirst - If access looks wrong, call
files_permission_guide - Confirm
APPLE_FILES_MCP_ALLOWED_ROOTSbefore any file mutation workflow
Release files for apple-files-mcp 1.0.4
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| apple_files_mcp-1.0.4.tar.gz | 16.6 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| apple_files_mcp-1.0.4-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 31.5 kB
Release files / apple_files_mcp-1.0.4.tar.gz
| Download URL | apple_files_mcp-1.0.4.tar.gz |
|---|---|
| Size | 16.6 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
549051c1999c916edf6f328e578498861590809bb87d4b1bcdc6febaacf401dd
|
|
BLAKE2b-256 checksum How to use checksums |
f67c7ed3be295ac7136a513118e2a0ba8f667653836caea738c843a07dc2c4ce
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Sep 4, 2026.
Transparency logRelease files / apple_files_mcp-1.0.4-py3-none-any.whl
| Download URL | apple_files_mcp-1.0.4-py3-none-any.whl |
|---|---|
| Size | 14.9 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
002abc1fb1d9de83edee410ee651603f9ed36c221f6f773f01ee1100f14aee8e
|
|
BLAKE2b-256 checksum How to use checksums |
97fac2955e6fd4a1e50bc434a5bc67289e6546a5f34c9db9723320ef50efae29
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Sep 4, 2026.
Transparency log