Skip to main content

MCP Feedback Enhanced

🌐 Language / 語言切換: English | 繁體中文 | 简体中文

Original Author: Fábio Ferreira | Original ProjectEnhanced Fork: Minidoracat UI Design Reference: sanshao85/mcp-feedback-collector

📢 Maintenance Status (2026-08)

The project is maintained again. Please upgrade to v2.6.1 — it fixes a command execution vulnerability:

uvx mcp-feedback-enhanced@latest

What changed in v2.6.1:

  • 🔒 Command execution removed — fixes #219 (unauthenticated WebSocket could execute arbitrary programs). The old blocklist only caught shell metacharacters, but since execution used shell=False metacharacters were never the risk — cat, curl, wget, python passed straight through, and auto-command was enabled by default. The feature is gone for good. See SECURITY.md.
  • 🔒 Cross-Site WebSocket Hijacking fixed (reported privately as GHSA-cmr5-gpm3-79vf, GHSA-2wx7-r4rh-f663): browsers are not restricted by the same-origin policy when opening a WebSocket, so a malicious page could make your browser connect to the local /ws. Origin is now validated before accept(), and cross-origin attempts are rejected with 403.
  • 🐛 Fixed the Starlette breaking change that made the Web UI return 500 (#213, #217, #221, #228).
  • 🐛 Fixed image serialization (#154 and related) by switching to standard mcp.types.ImageContent.

Current maintenance scope: security issues, and compatibility breaks that make installs unusable (dependency updates, upstream breaking changes). Anything beyond that will be decided from community feedback — see the pinned discussion.

One thing worth stating plainly: the original selling point was "consolidate multiple round-trips into a single Cursor request to save quota". Cursor moved to token-based usage pricing in June 2025, so that premise no longer holds (see #115, #200). The positioning is now "insert human checkpoints into long-running tasks" — not a quota-saving tool.

Also note MCP and its clients now natively support Elicitation (server-initiated requests for user input) and MCP Apps (tools returning interactive UI). If native capabilities cover your needs, just use those — if there's something native can't do, please say so in the discussion. That's what will decide what gets fixed next.

🎯 Core Concept

This is an MCP server that establishes feedback-oriented development workflows, providing Web UI and Desktop Application dual interface options, perfectly adapting to local, SSH Remote environments, and WSL (Windows Subsystem for Linux) environments. By guiding AI to confirm with users rather than making speculative operations, it inserts human checkpoints into long-running tasks, reducing drift and rework.

🌐 Dual Interface Architecture Advantages:

  • 🖥️ Desktop Application: Native cross-platform desktop experience, supporting Windows, macOS, Linux
  • 🌐 Web UI: No GUI dependencies required, suitable for remote and WSL environments
  • 🔧 Flexible Deployment: Choose the most suitable interface mode based on environment requirements
  • 📦 Unified Functionality: Both interfaces provide exactly the same functional experience

🖥️ Desktop Application: v2.5.0 introduces cross-platform desktop application support based on Tauri framework, supporting Windows, macOS, and Linux platforms with native desktop experience.

Supported Platforms: Cursor | Cline | Windsurf | Augment | Trae

🔄 Workflow

  1. AI Callmcp-feedback-enhanced tool
  2. Interface Launch → Auto-open desktop application or browser interface (based on configuration)
  3. Smart Interaction → Prompt selection, text input, image upload, auto-submit
  4. Real-time Feedback → WebSocket connection delivers information to AI instantly
  5. Session Tracking → Auto-record session history and statistics
  6. Process Continuation → AI adjusts behavior or ends task based on feedback

🌟 Key Features

🖥️ Dual Interface Support

  • Desktop Application: Cross-platform native application based on Tauri, supporting Windows, macOS, Linux
  • Web UI Interface: Lightweight browser interface suitable for remote and WSL environments
  • Automatic Environment Detection: Intelligently recognizes SSH Remote, WSL and other special environments
  • Unified Feature Experience: Both interfaces provide exactly the same functionality

📝 Smart Workflow

  • Prompt Management: CRUD operations for common prompts, usage statistics, intelligent sorting
  • Auto-Timed Submit: 1-86400 second flexible timer, supports pause, resume, cancel with new pause/resume button controls
  • Session Management & Tracking: Local file storage, privacy controls, history export (supports JSON, CSV, Markdown formats), real-time statistics, flexible timeout settings
  • Connection Monitoring: WebSocket status monitoring, auto-reconnection, quality indicators
  • AI Work Summary Markdown Display: Support for rich Markdown syntax rendering including headers, bold text, code blocks, lists, links and other formats for enhanced content readability

🎨 Modern Experience

  • Responsive Design: Adapts to different screen sizes, modular JavaScript architecture
  • Audio Notifications: Built-in multiple sound effects, custom audio upload support, volume control
  • System Notifications (v2.6.0): System-level real-time alerts for important events (like auto-commit, session timeout)
  • Smart Memory: Input box height memory, one-click copy, persistent settings
  • Multi-language Support: Traditional Chinese, English, Simplified Chinese, instant switching

🖼️ Images & Media

  • Full Format Support: PNG, JPG, JPEG, GIF, BMP, WebP
  • Convenient Upload: Drag & drop files, clipboard paste (Ctrl+V)
  • Unlimited Processing: Support for any size images, automatic intelligent processing

🌐 Interface Preview

Web UI Interface (v2.5.0 - Desktop Application Support)

Web UI Main Interface - Prompt Management & Auto Submit
📱 Click to view complete interface screenshots
Web UI Complete Interface - Session Management & Settings

Web UI Interface - Supports desktop application and Web interface, providing prompt management, auto-submit, session tracking and other smart features

Desktop Application Interface (v2.5.0 New Feature)

Desktop Application - Native Cross-platform Desktop Experience

Desktop Application - Native cross-platform desktop application based on Tauri framework, supporting Windows, macOS, Linux with exactly the same functionality as Web UI

Shortcut Support

  • Ctrl+Enter(Windows/Linux)/ Cmd+Enter(macOS):Submit feedback (both main keyboard and numeric keypad supported)
  • Ctrl+V(Windows/Linux)/ Cmd+V(macOS):Direct paste clipboard images
  • Ctrl+I(Windows/Linux)/ Cmd+I(macOS):Quick focus input box (Thanks @penn201500)

🚀 Quick Start

1. Installation & Testing

# Install uv (if not already installed)
pip install uv

2. Configure MCP

Basic Configuration (suitable for most users):

{
  "mcpServers": {
    "mcp-feedback-enhanced": {
      "command": "uvx",
      "args": ["mcp-feedback-enhanced@latest"],
      "timeout": 600,
      "autoApprove": ["interactive_feedback"]
    }
  }
}

Advanced Configuration (requires custom environment):

{
  "mcpServers": {
    "mcp-feedback-enhanced": {
      "command": "uvx",
      "args": ["mcp-feedback-enhanced@latest"],
      "timeout": 600,
      "env": {
        "MCP_DEBUG": "false",
        "MCP_WEB_HOST": "127.0.0.1",
        "MCP_WEB_PORT": "8765",
        "MCP_LANGUAGE": "en"
      },
      "autoApprove": ["interactive_feedback"]
    }
  }
}

Desktop Application Configuration (v2.5.0 new feature - using native desktop application):

{
  "mcpServers": {
    "mcp-feedback-enhanced": {
      "command": "uvx",
      "args": ["mcp-feedback-enhanced@latest"],
      "timeout": 600,
      "env": {
        "MCP_DESKTOP_MODE": "true",
        "MCP_WEB_HOST": "127.0.0.1",
        "MCP_WEB_PORT": "8765",
        "MCP_DEBUG": "false"
      },
      "autoApprove": ["interactive_feedback"]
    }
  }
}

Configuration File Examples:

3. Prompt Engineering Setup

For optimal results, add the following rules to your AI assistant:

# MCP Interactive Feedback Rules

follow mcp-feedback-enhanced instructions

⚙️ Advanced Settings

Environment Variables

Variable Purpose Values Default
MCP_DEBUG Debug mode true/false false
MCP_WEB_HOST Web UI host binding IP address or hostname 127.0.0.1
MCP_WEB_PORT Web UI port 1024-65535 8765
MCP_DESKTOP_MODE Desktop application mode true/false false
MCP_LANGUAGE Force UI language zh-TW/zh-CN/en Auto-detect

MCP_WEB_HOST Explanation:

  • 127.0.0.1 (default): Local access only — keep this setting
  • 0.0.0.0: Binds all interfaces. ⚠️ Not recommended: the Web UI and /ws endpoint have no authentication, so anyone who can reach the port can read session content (including project paths and AI summaries) and submit feedback. Use SSH port forwarding instead (see Common Issues).

MCP_LANGUAGE Explanation:

  • Used to force the interface language, overriding automatic system detection
  • Supported language codes:
    • zh-TW: Traditional Chinese
    • zh-CN: Simplified Chinese
    • en: English
  • Language detection priority:
    1. User-saved language settings in the interface (highest priority)
    2. MCP_LANGUAGE environment variable
    3. System environment variables (LANG, LC_ALL, etc.)
    4. System default language
    5. Fallback to default language (Traditional Chinese)

Testing Options

# Version check
uvx mcp-feedback-enhanced@latest version       # Check version

# Interface testing
uvx mcp-feedback-enhanced@latest test --web    # Test Web UI (auto continuous running)
uvx mcp-feedback-enhanced@latest test --desktop # Test desktop application (v2.5.0 new feature)

# Debug mode
MCP_DEBUG=true uvx mcp-feedback-enhanced@latest test

# Specify language for testing
MCP_LANGUAGE=en uvx mcp-feedback-enhanced@latest test --web    # Force English interface
MCP_LANGUAGE=zh-TW uvx mcp-feedback-enhanced@latest test --web  # Force Traditional Chinese
MCP_LANGUAGE=zh-CN uvx mcp-feedback-enhanced@latest test --web  # Force Simplified Chinese

Developer Installation

git clone https://github.com/Minidoracat/mcp-feedback-enhanced.git
cd mcp-feedback-enhanced
uv sync

Local Testing Methods

# Functional testing
make test-func                                           # Standard functional testing
make test-web                                            # Web UI testing (continuous running)
make test-desktop-func                                   # Desktop application functional testing

# Or use direct commands
uv run python -m mcp_feedback_enhanced test              # Standard functional testing
uvx --no-cache --with-editable . mcp-feedback-enhanced test --web   # Web UI testing (continuous running)
uvx --no-cache --with-editable . mcp-feedback-enhanced test --desktop # Desktop application testing

# Desktop application build (v2.5.0 new feature)
make build-desktop                                       # Build desktop application (debug mode)
make build-desktop-release                               # Build desktop application (release mode)
make test-desktop                                        # Test desktop application
make clean-desktop                                       # Clean desktop build artifacts

# Unit testing
make test                                                # Run all unit tests
make test-fast                                          # Fast testing (skip slow tests)
make test-cov                                           # Test and generate coverage report

# Code quality checks
make check                                              # Complete code quality check
make quick-check                                        # Quick check and auto-fix

Testing Descriptions

  • Functional Testing: Test complete MCP tool functionality workflow
  • Unit Testing: Test individual module functionality
  • Coverage Testing: Generate HTML coverage report to htmlcov/ directory
  • Quality Checks: Include linting, formatting, type checking

🆕 Version History

📋 Complete Version History: RELEASE_NOTES/CHANGELOG.en.md

Latest Version Highlights (v2.6.0)

  • 📊 Session Export Feature: Support exporting session records to multiple formats for easy sharing and archiving
  • ⏸️ Auto-commit Control: Added pause and resume buttons for better control over auto-commit timing
  • 🔔 System Notifications: System-level notifications for important events with real-time alerts
  • ⏱️ Session Timeout Optimization: Redesigned session management with more flexible configuration options
  • 🌏 I18n Enhancement: Refactored internationalization architecture with full multilingual support for notifications
  • 🎨 UI Simplification: Significantly simplified user interface for improved user experience

🐛 Common Issues

🌐 SSH Remote Environment Issues

Q: Browser cannot launch or access in SSH Remote environment A: Use SSH port forwarding (secure, nothing exposed):

  1. Use default configuration (MCP_WEB_HOST: 127.0.0.1)
  2. Set up SSH port forwarding:
    • VS Code Remote SSH: Press Ctrl+Shift+P → "Forward a Port" → Enter 8765
    • Cursor SSH Remote: Manually add port forwarding rule (port 8765)
  3. Open in local browser: http://localhost:8765

⚠️ Older READMEs recommended MCP_WEB_HOST=0.0.0.0 to expose the service directly. No longer recommended: the Web UI and /ws endpoint have no authentication, so binding publicly lets anyone on the network read your session and submit feedback.

For detailed solutions, refer to: SSH Remote Environment Usage Guide

Q: Why am I not receiving new MCP feedback? A: Likely a WebSocket connection issue. Solution: Directly refresh the browser page.

Q: Why isn't MCP being called? A: Please confirm MCP tool status shows green light. Solution: Repeatedly toggle MCP tool on/off, wait a few seconds for system reconnection.

Q: Augment cannot start MCP A: Solution: Completely close and restart VS Code or Cursor, reopen the project.

🔧 General Issues

Q: How to use desktop application? A: v2.5.0 introduces cross-platform desktop application support. Set "MCP_DESKTOP_MODE": "true" in MCP configuration to enable:

{
  "mcpServers": {
    "mcp-feedback-enhanced": {
      "command": "uvx",
      "args": ["mcp-feedback-enhanced@latest"],
      "timeout": 600,
      "env": {
        "MCP_DESKTOP_MODE": "true",
        "MCP_WEB_PORT": "8765"
      },
      "autoApprove": ["interactive_feedback"]
    }
  }
}

Configuration File Example: examples/mcp-config-desktop.json

Q: How to use legacy PyQt6 GUI interface? A: v2.4.0 completely removed PyQt6 GUI dependencies. To use legacy GUI, specify v2.3.0 or earlier: uvx mcp-feedback-enhanced@2.3.0 Note: Legacy versions don't include new features (prompt management, auto-submit, session management, desktop application, etc.).

Q: "Unexpected token 'D'" error appears A: Debug output interference. Set MCP_DEBUG=false or remove the environment variable.

Q: Chinese character garbled text A: Fixed in v2.0.3. Update to latest version: uvx mcp-feedback-enhanced@latest

Q: Window disappears or positioning errors in multi-screen environment A: Fixed in v2.1.1. Go to "⚙️ Settings" tab, check "Always show window at primary screen center" to resolve. Especially suitable for T-shaped screen arrangements and other complex multi-screen configurations.

Q: Image upload failure A: Check file format (PNG/JPG/JPEG/GIF/BMP/WebP). System supports any size image files.

Q: Web UI cannot start A: Check firewall settings or try using different ports.

Q: UV Cache occupies too much disk space A: Due to frequent use of uvx commands, cache may accumulate to tens of GB. Regular cleanup recommended:

# View cache size and detailed information
python scripts/cleanup_cache.py --size

# Preview cleanup content (no actual cleanup)
python scripts/cleanup_cache.py --dry-run

# Execute standard cleanup
python scripts/cleanup_cache.py --clean

# Force cleanup (attempts to close related programs, solving Windows file occupation issues)
python scripts/cleanup_cache.py --force

# Or directly use uv command
uv cache clean

For detailed instructions, refer to: Cache Management Guide

Q: AI models cannot parse images A: Various AI models (including Gemini Pro 2.5, Claude, etc.) may have instability in image parsing, sometimes correctly recognizing and sometimes unable to parse uploaded image content. This is a known limitation of AI visual understanding technology. Recommendations:

  1. Ensure good image quality (high contrast, clear text)
  2. Try uploading multiple times, retries usually succeed
  3. If parsing continues to fail, try adjusting image size or format

🙏 Acknowledgments

🌟 Support Original Author

Fábio Ferreira - X @fabiomlferreira Original Project: noopstudios/interactive-feedback-mcp

If you find it useful, please:

Design Inspiration

sanshao85 - mcp-feedback-collector

Contributors

penn201500 - GitHub @penn201500

  • 🎯 Auto-focus input box feature (PR #39)

leo108 - GitHub @leo108

  • 🌐 SSH Remote Development Support (MCP_WEB_HOST environment variable) (PR #113)

Alsan - GitHub @Alsan

  • 🍎 macOS PyO3 Compilation Configuration Support (PR #93)

fireinice - GitHub @fireinice

  • 📝 Tool Documentation Optimization (LLM instructions moved to docstring) (PR #105)

Community Support

📄 License

MIT License - See LICENSE file for details

📈 Star History

Star History Chart


🌟 Welcome to Star and share with more developers!

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

mcp_feedback_enhanced-2.6.1.tar.gz (11.0 MB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

mcp_feedback_enhanced-2.6.1-py3-none-any.whl (8.6 MB view details)

Uploaded Python 3

File details

Details for the file mcp_feedback_enhanced-2.6.1.tar.gz.

File metadata

  • Download URL: mcp_feedback_enhanced-2.6.1.tar.gz
  • Upload date:
  • Size: 11.0 MB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/7.0.0 CPython/3.13.14

File hashes

Hashes for mcp_feedback_enhanced-2.6.1.tar.gz
Algorithm Hash digest
SHA256 fd63a59b8f7eadd558ad56f1f26ca284b86a50e0a8f5eff37c0357e43decc654
MD5 fec030529d566a986a17f989744c5e0f
BLAKE2b-256 b427f6838b4202e083558c0eb30948123448731c09c12b10b1dea41a2b9780bf

See more details on using hashes here.

File details

Details for the file mcp_feedback_enhanced-2.6.1-py3-none-any.whl.

File metadata

File hashes

Hashes for mcp_feedback_enhanced-2.6.1-py3-none-any.whl
Algorithm Hash digest
SHA256 a10b6616cc954a088040ff73fbdbe15811352b03018cadddc9a8bac3897d5e86
MD5 8217c33798c57f52a1bbf5ca1fb4d632
BLAKE2b-256 2b09b6ed7f62bf5467762520a2384a780ddea515133ef18d33c363520ebea3d7

See more details on using hashes here.

Release history Release notifications | RSS feed

2.6.2

2 files

This release

2.6.1 This release

2 files

2.6.0

2 files

2.5.6

2 files

2.5.5

2 files

2.5.4

2 files

2.5.3

2 files

2.5.2

2 files

2.5.1

2 files

2.5.0

2 files

2.4.3

2 files

2.4.2

2 files

2.3.0

2 files

2.2.5

2 files

2.2.4

2 files

2.2.3

2 files

2.2.2

2 files

2.2.1

2 files

2.2.0

2 files

2.1.1

2 files

2.1.0

2 files

2.0.16

2 files

2.0.15

2 files

2.0.14

2 files

2.0.13

2 files

2.0.12

2 files

2.0.11

2 files

2.0.10

2 files

2.0.9

2 files

2.0.8

2 files

2.0.7

2 files

2.0.6

2 files

2.0.5

2 files

2.0.4

2 files

2.0.3

2 files

2.0.2

2 files

2.0.1

2 files

2.0.0

2 files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page