Skip to main content

🇨🇭 Part of the Swiss Public Data MCP Portfolio

📡 bakom-mcp

Version License: MIT Python 3.11+ MCP Auth CI

MCP server for BAKOM open data – broadband, mobile coverage, media and Swiss telecom statistics.

🇩🇪 Deutsche Version

Demo: Claude queries fibre and 5G coverage via MCP tool call


Overview

bakom-mcp connects AI assistants like Claude to the Swiss Federal Office of Communications (BAKOM) open data infrastructure. It enables natural-language queries about broadband availability, 5G/4G coverage, mobile antenna locations, BAKOM datasets on radio and television, and telecommunications statistics — all without API keys.

All data is published as Open Government Data (OGD) on opendata.swiss / geo.admin.ch under CC BY 4.0 — see the Data Licence section below for attribution requirements.

Anchor demo query: "Which school buildings in district 7 do not yet have fibre optic connectivity?"

bakom_multi_standort_konnektivitaet delivers the comparison table automatically.

→ More use cases by audience →


Scope

What this server does

✓ Read-only queries against three public BAKOM/Confederation APIs:

  • api3.geo.admin.ch / wms.geo.admin.ch (broadband, mobile coverage, antennas)
  • ckan.opendata.swiss (telecom statistics, dataset metadata)

✓ Returns aggregated, anonymous data — no personal data, no household-level identification.

✓ Bound to Swiss WGS84 coordinates (lat 45.8–47.9, lon 5.9–10.6) via Pydantic input validation.

✓ Egress is locked to a code-layer allow-list of the six known data-source hosts.

What this server does not

✗ Send data anywhere (read-only, no write tools).

✗ Access the local filesystem (no path-traversal surface).

✗ Use authentication tokens (none required — all sources are public OGD).

✗ Cache or persist user inputs across calls.

✗ Execute shell commands or arbitrary code (no subprocess/os.system/eval).


Features

  • 📶 Broadband availability – Fixed-line coverage at 30/100/300/500/1000 Mbit/s (250×250m grid)
  • 🔌 Fibre status – FTTB/FTTH availability per location
  • 📍 Multi-location comparison – Connectivity check for up to 20 locations simultaneously
  • 📱 Mobile coverage – 5G/4G/3G outdoor coverage (100×100m grid)
  • 📡 Antenna search – Mobile and broadcast transmitters within a configurable radius
  • 📺 Radio & TV datasets – Full-text search across BAKOM's radio and television datasets on opendata.swiss
  • 🗞️ Media landscape – BAKOM media structure reports and datasets
  • 📊 Telecom statistics – Fixed-line, mobile, broadband market data via opendata.swiss
  • 🗂️ Broadband Atlas catalogue – All BAKOM dataset layers with direct API links
  • 🔓 No authentication required – All data is Open Government Data (OGD)

Prerequisites

  • Python 3.11+
  • uv or pip for installation
  • Internet connection (live APIs: geo.admin.ch, opendata.swiss)

Installation

# Recommended: uvx (no permanent installation required)
uvx bakom-mcp

# Or install with pip
pip install bakom-mcp

# Development install
git clone https://github.com/malkreide/bakom-mcp
cd bakom-mcp
pip install -e ".[dev]"

Quickstart

Claude Desktop

Add to claude_desktop_config.json:

{
  "mcpServers": {
    "bakom": {
      "command": "uvx",
      "args": ["bakom-mcp"]
    }
  }
}

Config file locations:

  • macOS: ~/Library/Application Support/Claude/claude_desktop_config.json
  • Windows: %APPDATA%\Claude\claude_desktop_config.json

Cloud / HTTP Transport

python -m bakom_mcp.server --http
# Server running at http://localhost:8050/mcp

Configuration via environment variables (see .env.example):

Variable Default Purpose
BAKOM_MCP_HOST 127.0.0.1 Bind address. Set to 0.0.0.0 only on trusted networks (warning logged).
BAKOM_MCP_PORT 8050 TCP port.
BAKOM_MCP_CORS_ORIGINS (empty) Comma-separated allowed origins for browser clients. Empty = CORS disabled.

Docker

A hardened container image is provided. Suitable for cloud deployments behind a reverse proxy (Caddy, Traefik, nginx).

# Build & run via compose (recommended)
docker compose up --build

# Or via docker run
docker build -t bakom-mcp:latest .
docker run --rm \
  --read-only \
  --cap-drop=ALL \
  --security-opt=no-new-privileges \
  --tmpfs /tmp:rw,size=16M \
  -p 127.0.0.1:8050:8050 \
  bakom-mcp:latest

The image runs as non-root (UID 10001), uses a read-only filesystem, drops all Linux capabilities and refuses privilege escalation. Resource limits are configured in docker-compose.yml (256 MB memory, 0.5 CPU, 64 PIDs). The default port mapping binds to 127.0.0.1 only — for public exposure, terminate TLS and CORS at a reverse proxy.

Cursor / VS Code / LibreChat

{
  "bakom": {
    "command": "uvx",
    "args": ["bakom-mcp"],
    "transport": "stdio"
  }
}

💡 "stdio for the developer laptop, HTTP/SSE for the browser."


Available Tools (12)

Broadband & Connectivity

Tool Description
bakom_broadband_coverage Fixed-line coverage at a coordinate (30–1000 Mbit/s)
bakom_glasfaser_verfuegbarkeit FTTB/FTTH fibre availability
bakom_multi_standort_konnektivitaet Connectivity comparison for up to 20 locations

Mobile & Transmitters

Tool Description
bakom_mobilfunk_abdeckung 5G/4G/3G outdoor coverage
bakom_sendeanlagen_suche Mobile antennas within a configurable radius
bakom_frequenzdaten Radio/TV transmitter sites near a location

Media & RTV

Tool Description
bakom_rtv_suche Search BAKOM radio/TV datasets on opendata.swiss
bakom_medienstruktur_info Swiss media landscape datasets
bakom_aktuell Recently updated BAKOM datasets on a topic (catalogue, not press releases)
bakom_medien_statistik Market shares, reach and programme structure from the BAKOM cubes on LINDAS

Statistics & Catalogue

Tool Description
bakom_telekomstatistik_uebersicht Telecom statistics from opendata.swiss
bakom_breitbandatlas_datensaetze Full catalogue of Broadband Atlas layers
bakom_check_api_status 🔍 Health check for all configured data sources

Example Prompts

What is the broadband situation at Schulhaus Leutschenbach (47.4148, 8.5654)?

Compare 5G and fibre coverage for these three school buildings: [coordinates]

Which radio stations are licensed in canton Zurich?

Show me the current BAKOM position on 5G frequency allocation.

List all Broadband Atlas datasets available via geo.admin.ch.

Safety & Limits

Aspect Details
Access Read-only (readOnlyHint: true) — the server cannot modify or delete any data
Personal data No personal data — all sources are aggregated, public open data
Rate limits Built-in per-query caps (max 50 antennas, max 20 locations, max 50 RTV results)
Timeout 20 seconds per API call
Authentication No API keys required — all 3 APIs are publicly accessible
Licences All data under CC0 / open licences (Open Government Data)
Terms of Service Subject to ToS of the respective data sources: geo.admin.ch, opendata.swiss

Data Sources

Source Data Authentication
geo.admin.ch Broadband Atlas, mobile coverage, antenna locations None
opendata.swiss BAKOM datasets, telecom statistics None
lindas.admin.ch BAKOM media statistics cubes (SPARQL) None

All data is published under open licences (CC0 / OGD).

Architecture decision — media statistics

bakom_medien_statistik uses Architecture A (live API only), verified live on 2026-08-13:

  • The SPARQL endpoint is https://lindas.admin.ch/query; the /sparql path documented elsewhere returns 404.
  • The OFCOM cubes live in the named graph https://lindas.admin.ch/ofcom/cube. Without an explicit FROM, a query hits the default graph and sees 2010 cubes from every federal office instead of 540.
  • A bulk download exists for only 137 of 540 cubes, so a dump-first architecture would cover a quarter of the data.
  • An unknown graph answers HTTP 200 with zero rows — a silent empty, not an error. Requests carry retry with exponential backoff; egress-policy violations are not retried.

Scope, stated in the tool description because the README does not reach the model: the cubes cover the programmes that were surveyed, not the full inventory. LINDAS's own count cube reports 199+39+17 radio programmes for 2020, while the Programm dimension across all cubes exposes 128 labels — some of which are the same station spelled differently (Energy BE / Energy Bern), plus Durchschnitt, which is an aggregate rather than a station. This tool is a statistics source, not a broadcaster register; licensed broadcasters are listed in the RTV database, which offers no machine-readable interface.


Synergies with the MCP Portfolio

bakom-mcp can be combined with other servers in the portfolio for multi-dimensional queries:

zurich-opendata-mcp  →  school building addresses
         +
    bakom-mcp         →  fibre and 5G status
         =
"Digital equity" dashboard for all school districts

Further combinations:

  • srgssr-mcp + bakom-mcp → Media coverage and broadcast network
  • swiss-statistics-mcp + bakom-mcp → Telecom market development
  • fedlex-mcp + bakom-mcp → Regulatory context (RTVG, FMG)

Project Structure

bakom-mcp/
├── src/bakom_mcp/
│   ├── __init__.py          # Package
│   ├── server.py            # MCP server (12 tools, 2 resources)
│   └── py.typed             # PEP 561 type marker
├── tests/
│   └── test_integration.py  # Integration tests (live APIs)
├── assets/
│   └── demo.svg             # Demo flow diagram
├── .github/workflows/
│   ├── ci.yml               # CI: lint, syntax, import, tests
│   └── publish.yml          # PyPI publish on release
├── .gitignore
├── pyproject.toml           # Build config (hatchling)
├── CHANGELOG.md
├── CONTRIBUTING.md          # Contribution guide (English)
├── CONTRIBUTING.de.md       # Contribution guide (German)
├── SECURITY.md              # Security policy (English)
├── SECURITY.de.md           # Security policy (German)
├── LICENSE                  # MIT License
├── README.md                # This file (English)
└── README.de.md             # German version

MCP Protocol Version

This server speaks two protocol eras over the same endpoint. The client's first request on a connection decides which one applies; a later claim from the other era is refused.

Era Revision Who reaches it
initialize handshake 2024-11-05 … 2025-11-25 What today's clients speak. The server answers with the revision asked for, or with the 2025-11-25 ceiling when the request asks for something newer.
Per-request envelope 2026-07-28 A request carrying the 2026-07-28 _meta envelope opens a modern connection.

Both revisions are pinned in tests/test_protocol_version.py and asserted against the installed SDK, so a Dependabot bump of mcp cannot move either one silently. The handshake ceiling is measured against a live initialize through the assembled ASGI stack, not read off a constant name.

Note that the SDK's LATEST_PROTOCOL_VERSION is an alias for the modern era, not for the handshake era — pinning against it alone would leave the era that current clients actually negotiate free to drift.

Native in the envelope era. The server uses nothing the 2026-07-28 spec deprecates (SEP-2577: logging, sampling, roots). The status text of bakom_multi_standort_konnektivitaet travels in the progress notification instead of ctx.info() — in the modern era logging is delivered only when the request opts in with a log level in _meta, and without that opt-in the line was silently dropped. serverInfo carries the package version on initialize and on server/discover alike. A tool call needs neither a handshake nor an Mcp-Session-Id. tests/test_modern_era.py checks this over real connections in both eras, and the suite treats every MCPDeprecationWarning as an error.

Update policy. When the gate fails, do not edit the constant blindly: read the spec changelog between the two revisions, verify the server still behaves, then move the constant, this section, README.de.md and CHANGELOG.md together.


Testing

# Unit tests (no network required)
PYTHONPATH=src pytest tests/ -m "not live"

# Integration tests (live APIs, internet required)
PYTHONPATH=src pytest tests/ -m "live"

Changelog

See CHANGELOG.md


Contributing

Contributions are welcome! See CONTRIBUTING.md (🇩🇪 Deutsch) for guidelines on reporting bugs, suggesting features, and submitting pull requests.


Security

To report a vulnerability, see the Security Policy (🇩🇪 Deutsch). Please report security issues privately via GitHub Security Advisories rather than public issues.


Software Licence

MIT License — see LICENSE.

Data Licence

The BAKOM open data delivered through this server is published under CC BY 4.0. When using or redistributing tool outputs, attribute the source as:

Source: Federal Office of Communications (BAKOM) via opendata.swiss / geo.admin.ch · Licence: CC BY 4.0

Tool outputs already include this footer automatically. The Markdown response format ends with the attribution line; downstream applications that consume the JSON format should propagate the source/licence metadata to their end users.


Author

Hayal Oezkan · github.com/malkreide



Part of the Swiss Open Data MCP portfolio — public data deserves public interfaces.

Installation

Run via uv's uvx — no clone or manual install needed. Add to your MCP client config (mcpServers for Claude Desktop, Cursor and Windsurf; use a top-level servers key for VS Code in .vscode/mcp.json):

{
  "mcpServers": {
    "bakom-mcp": {
      "command": "uvx",
      "args": [
        "bakom-mcp"
      ]
    }
  }
}

Metadata

Release files for bakom-mcp 3.0.1

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for bakom-mcp 3.0.1
File Size Uploaded
bakom_mcp-3.0.1.tar.gz 268.6 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for bakom-mcp 3.0.1
File Interpreter ABI Platform
bakom_mcp-3.0.1-py3-none-any.whl Python 3 none any Details

Total release size: 304.5 kB

Release files / bakom_mcp-3.0.1.tar.gz

Download URL bakom_mcp-3.0.1.tar.gz
Size 268.6 kB
Tags Source
SHA-256 checksum
How to use checksums
3f92ca98432398aae1b4479a49a9d8b1146be052a3834274dabfdaa723be19bf
BLAKE2b-256 checksum
How to use checksums
5fc10134a4a6576fc13f434642be42af737e7d8a62d54b91600f4a468a2ab1a3
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Sep 27, 2026.

Transparency log

Release files / bakom_mcp-3.0.1-py3-none-any.whl

Download URL bakom_mcp-3.0.1-py3-none-any.whl
Size 36.0 kB
Tags Python 3
SHA-256 checksum
How to use checksums
2b6939143d7230399076a82532d8895806be2665907c93356a68e05a745da615
BLAKE2b-256 checksum
How to use checksums
4177bb30b038744c5bc89052be95b37921abdf60fbbf5923edb379a635d490e6
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Sep 27, 2026.

Transparency log

Release history Release notifications | RSS feed

3.0.2

2 release files

This release

3.0.1 This release

2 release files

3.0.0

2 release files

2.0.4

2 release files

2.0.3

2 release files

2.0.0

2 release files

1.0.0

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page