🏛️ lobbywatch-mcp
An MCP server that connects AI models to Lobbywatch.ch, the largest lobby database of the Swiss Federal Parliament — conflicts of interest, lobby groups, access badges, and transparency scores.
Part of the Swiss Public Data MCP Portfolio — connecting AI models to Swiss public data sources.
🎯 Anchor Demo Query
"Welche Mitglieder der WBK-N haben Interessenbindungen zu Bildungsverlagen oder privaten Bildungsträgern, und wie ist ihre Transparenz-Bewertung?"
Which members of the National Council's Education Commission have declared conflicts of interest with educational publishers or private education providers, and how does their compensation transparency score compare?
→ More use cases by audience →
Demo
Overview
Lobbywatch.ch maintains the largest public database on Swiss federal parliamentarians and their connections to lobby organisations: 245 parliamentarians, ~7'800 interessenbindungen (declared mandates), 139 lobby groups, 368 access-badge holders, updated weekly, licensed CC BY-SA 4.0.
lobbywatch-mcp exposes this data to Large Language Models via the Model Context Protocol. It is designed to be used alongside parlament-mcp (the official Swiss Parliament's Curia Vista data): the pair makes it possible to ask what a parliamentarian did officially and who they are connected to — in a single conversation.
Features
- Dump-first, API-fallback architecture. The weekly JSON dump is the primary source (stable, verified in production); the live
dataIFREST API is used only where it returns reliable data (lobby groups, search). - Seven Phase 1 tools — parliamentarian lookup, conflict-of-interest listing, branche search, lobby group fetch, rankings, transparency quota, cache control.
- CC BY-SA 4.0 attribution baked into every response via Pydantic envelopes.
- Dual transport —
stdiofor Claude Desktop,streamable-http/ssefor cloud deployments. - Fuzzy name matching via rapidfuzz for natural LLM input like "Jositsch" or "Wehrli".
- No authentication required (Phase 1 — No-Auth-First).
Architecture
┌─────────────────────────────┐
LLM client │ LobbywatchClient │
(Claude Desktop, │ │
Inspector, …) │ ┌───────────────────┐ │
│ │ │ Dump cache │ │ cms.lobbywatch.ch
│ MCP │ │ (24 h TTL, │ │ ┌──────────────────┐
▼ stdio / │ │ ~80 MB resident)├─────┼─────►│ weekly JSON │
┌─────────┐ HTTP │ └───────────────────┘ │ │ export (~17 MB) │
│ FastMCP │◄────►│ │ └──────────────────┘
│ server │ │ ┌───────────────────┐ │ ┌──────────────────┐
└─────────┘ │ │ dataIF REST ├─────┼─────►│ /interface/v1/ │
│ │ (live fallback) │ │ │ json/… │
│ └───────────────────┘ │ └──────────────────┘
└─────────────────────────────┘
Outbound HTTP runs through a single httpx.AsyncClient with follow_redirects=False, an SSRF guard that blocks RFC1918 / link-local / metadata IPs, and an httpx event hook that re-resolves on every request. The dump path is the primary source of truth for parliamentarian queries; dataIF is only used for lobby group lookups and the search endpoint.
Prerequisites
- Python 3.11 or newer
- Internet access to download the weekly Lobbywatch JSON export (~17 MB zipped)
Installation
From PyPI (after first release):
pip install lobbywatch-mcp
From source:
git clone https://github.com/malkreide/lobbywatch-mcp.git
cd lobbywatch-mcp
pip install -e ".[dev]"
Usage
Standalone
lobbywatch-mcp
This starts the server in stdio mode. For HTTP:
LOBBYWATCH_MCP_TRANSPORT=http LOBBYWATCH_MCP_PORT=8000 lobbywatch-mcp
Container
A hardened multi-stage Dockerfile ships with the repo (non-root,
read-only-rootfs compatible). See docs/deployment.md
and deploy/docker-compose.example.yml
for resource limits, sticky-LB guidance and egress hardening.
docker build -t lobbywatch-mcp:0.2.0 .
docker run --rm -p 127.0.0.1:8000:8000 lobbywatch-mcp:0.2.0
Claude Desktop
Add to your claude_desktop_config.json:
{
"mcpServers": {
"lobbywatch": {
"command": "uvx",
"args": ["lobbywatch-mcp"]
}
}
}
A full example is provided in claude_desktop_config.json.
Example Queries
Once connected, try prompts such as:
- "Give me the top 10 parliamentarians by number of interessenbindungen in the SP party."
- "Which WBK-N members have mandates in the publishing or education industry?"
- "Look up the lobby group 'economiesuisse' and list its connected parliamentarians."
- "What is the compensation-transparency score distribution for the finance commission (FK-N)?"
Tools
All tool names use the lobbywatch_ namespace prefix (since 0.2.0) to
avoid collisions with sibling portfolio servers.
| Tool | Purpose | Source |
|---|---|---|
lobbywatch_get_parlamentarier(name_or_id) |
Full profile + all conflicts of interest | Dump |
lobbywatch_list_interessenbindungen(name_or_id, nur_hauptberuflich, nur_aktiv) |
Filtered mandate list | Dump |
lobbywatch_search_parlamentarier_nach_branche(branche_query, kommission, limit) |
Cross-filter by industry and commission | Dump |
lobbywatch_get_lobbygruppe(name_or_id) |
Lobby group with connected MPs and organisations | Live dataIF |
lobbywatch_get_ranking(kriterium, kommission, partei, limit) |
Top-N by criterion | Dump |
lobbywatch_get_transparenzquote(kommission) |
Distribution of compensation transparency labels | Dump |
lobbywatch_refresh_dump() / lobbywatch_dump_status() |
Cache control | Dump |
Configuration
All behaviour is controlled via environment variables:
| Variable | Default | Purpose |
|---|---|---|
LOBBYWATCH_MCP_TRANSPORT |
stdio |
Transport (stdio, http, sse) |
LOBBYWATCH_MCP_HOST |
127.0.0.1 |
HTTP bind host (set to 0.0.0.0 only behind an auth gateway) |
LOBBYWATCH_MCP_PORT |
8000 |
HTTP bind port |
LOBBYWATCH_MCP_CACHE_DIR |
~/.cache/lobbywatch-mcp |
Dump cache location |
LOBBYWATCH_MCP_CACHE_TTL |
86400 (24h) |
Cache time-to-live in seconds |
LOBBYWATCH_MCP_HTTP_TIMEOUT |
60 |
HTTP timeout in seconds |
LOBBYWATCH_MCP_CORS_ORIGINS |
(unset) | Comma-separated origin allow-list for HTTP/SSE; when set, exposes Mcp-Session-Id to browsers |
LOBBYWATCH_MCP_LOG_FORMAT |
text |
text (stdlib formatter) or json (structured via structlog) |
LOBBYWATCH_MCP_LOG_LEVEL |
INFO |
DEBUG / INFO / WARNING / ERROR |
LOBBYWATCH_MCP_OTEL_ENABLED |
0 |
Set to 1 to enable OpenTelemetry tracing (requires pip install 'lobbywatch-mcp[obs]') |
LOBBYWATCH_MCP_OTEL_ENDPOINT |
(unset) | OTLP/HTTP collector endpoint (e.g. http://localhost:4318/v1/traces) |
Project Structure
lobbywatch-mcp/
├── src/lobbywatch_mcp/
│ ├── __init__.py
│ ├── __main__.py # CLI + transport selection
│ ├── config.py # URLs, cache paths, attribution
│ ├── client.py # Dump download + dataIF client
│ ├── models.py # Pydantic v2 response envelopes
│ └── server.py # FastMCP tool registrations
├── tests/
│ ├── conftest.py # Fixture parliamentarians
│ ├── test_client.py # Respx-mocked unit tests
│ ├── test_server.py # Tool integration tests
│ └── test_live.py # @pytest.mark.live — excluded from CI
├── .github/workflows/
│ ├── ci.yml # Test matrix + ruff
│ └── publish.yml # PyPI OIDC Trusted Publisher
├── claude_desktop_config.json
├── pyproject.toml
└── ...
Data License & Attribution
The code is released under the MIT License.
The data served through this MCP is © Lobbywatch.ch and licensed under CC BY-SA 4.0. Every response envelope includes the attribution string. Downstream users must:
- Credit Lobbywatch.ch as the data source.
- Share derivative datasets under the same CC BY-SA 4.0 terms.
- Understand that Lobbywatch is a community-researched database — not an official register. It is authoritative for transparency research but should not be confused with the Federal Parliament's own declarations.
Known Limitations
- The upstream
/table/parlamentarier/...dataIFREST endpoint currently returns empty result sets. The server works around this by using the weekly JSON dump instead. zutrittsberechtigungen(access badges) are not populated in the "essential" dump variant used here. A future release will add a dedicated tool using the non-essential dump.
Contributing
See CONTRIBUTING.md.
Security
See SECURITY.md for the security posture, accepted-risk decisions, and how to report a vulnerability.
MCP Protocol Version
This server speaks two protocol eras over the same endpoint. The client's first request on a connection decides which one applies; a later claim from the other era is refused.
| Era | Revision | Who reaches it |
|---|---|---|
initialize handshake |
2024-11-05 … 2025-11-25 |
What today's clients speak. The server answers with the revision asked for, or with the 2025-11-25 ceiling when the request asks for something newer. |
| Per-request envelope | 2026-07-28 |
A request carrying the 2026-07-28 _meta envelope opens a modern connection. |
Both revisions are pinned in
tests/test_protocol_version.py and asserted
against the installed SDK, so a Dependabot bump of mcp cannot move either one
silently. The constants alone are the weaker form, so
tests/test_spec_2026_07_28.py measures both
eras through the assembled ASGI app: server/discover without a session, an
initialize asking for a future revision capped at 2025-11-25, and every
tool called over a 2026-07-28 connection with SDK deprecations raised as
errors.
Native to 2026-07-28. lobbywatch_refresh_dump reports its progress as
notifications/progress, which both eras deliver to any client that sends a
progressToken. It used to log via notifications/message; logging is
deprecated in 2026-07-28 (SEP-2577) and only delivered on requests that opt
in with a log level, so modern clients silently received nothing. serverInfo
now carries the package version — under 2026-07-28 it is stamped into the
_meta of every response.
Note that the SDK's LATEST_PROTOCOL_VERSION is an alias for the modern
era, not for the handshake era — pinning against it alone would leave the era
that current clients actually negotiate free to drift.
Update policy. When the gate fails, do not edit the constant blindly: read
the spec changelog between the two revisions, verify the server still behaves,
then move the constant, this section, README.de.md and
CHANGELOG.md together.
Changelog
See CHANGELOG.md.
License
MIT License — see LICENSE. Data CC BY-SA 4.0 — see NOTICE.md.
Author
malkreide · GitHub
Part of the Swiss Public Data MCP Portfolio.
Installation
Run via uv's uvx — no clone or manual install needed. Add to your MCP client config (mcpServers for Claude Desktop, Cursor and Windsurf; use a top-level servers key for VS Code in .vscode/mcp.json):
{
"mcpServers": {
"lobbywatch-mcp": {
"command": "uvx",
"args": [
"lobbywatch-mcp"
]
}
}
}
Release files for lobbywatch-mcp 0.3.7
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| lobbywatch_mcp-0.3.7.tar.gz | 173.3 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| lobbywatch_mcp-0.3.7-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 207.9 kB
Release files / lobbywatch_mcp-0.3.7.tar.gz
| Download URL | lobbywatch_mcp-0.3.7.tar.gz |
|---|---|
| Size | 173.3 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
31c1fad67fdb4512c017160d69bb51a3163548dbcbc5d96f83f65765bed5df23
|
|
BLAKE2b-256 checksum How to use checksums |
d76722c6c425b5f6b9db97ca737b9140eb4301499e152b15850d9255a5f7c37c
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Sep 27, 2026.
Transparency logRelease files / lobbywatch_mcp-0.3.7-py3-none-any.whl
| Download URL | lobbywatch_mcp-0.3.7-py3-none-any.whl |
|---|---|
| Size | 34.7 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
aee5508a5d5740d339c3a0ed10ba6f4c325c1d3d4a5f5eb18188ab34345461a2
|
|
BLAKE2b-256 checksum How to use checksums |
40fa73b49e6ba3b06b955399c98cf81eb697d3cb809e1b1370e24401c74160df
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Sep 27, 2026.
Transparency log