🎨 mcp-gpt-image
An image MCP server built for the second draft, not the first.
Getting one picture out of a model is the easy part. The afternoon goes on the twelve that come after it: the sky is too bright, the logo drifted, the text on the sign came out wrong. Most image connectors stop at the first picture and leave you to redo the loop by hand.
Three tools, OpenAI's gpt-image-2.5 in both of its variants, and file paths instead of base64.
🧱 The problem
You write a prompt, you get a picture, you want the sky darker. So you write the whole prompt again with "darker sky" appended, because the model kept nothing from the first call. Every correction is a full rewrite, and the model has no idea what it just drew.
When the connector hands images back as base64 it gets worse. The picture is now sitting in the conversation: it cost tokens to arrive, it costs tokens again on every turn it stays there, and feeding it into the next step means sending those same bytes back up. Two rounds of that on a 1536x1024 image and the context window is mostly pixels.
This server takes the other route on both counts. Images travel as file paths:
generate_image writes a file and returns where it is, edit_image and refine_image take
paths as input, so a picture moves from one step to the next without ever entering the
conversation. And refine_image holds the thread with the model, so turn one is a full
description and turn two is "make the sky darker". Nothing is re-uploaded, nothing is
re-described.
📦 Install
claude mcp add gpt-image -e OPENAI_API_KEY=sk-... -- uvx mcp-gpt-image
Or in any MCP client's config:
{
"mcpServers": {
"gpt-image": {
"command": "uvx",
"args": ["mcp-gpt-image"],
"env": {
"OPENAI_API_KEY": "sk-...",
"GPT_IMAGE_OUTPUT_DIR": "/home/you/images"
}
}
}
}
Needs Python 3.12 or newer, uv, and an OpenAI key on an organisation with access to image models. Transport is stdio, and stdio is the only one: there is no HTTP mode and no Docker image, so there is no gateway to deploy and nothing listening on a port.
🚀 Quickstart
Ask for a picture:
Generate a wide banner of a lighthouse in a storm, 1536x1024.
The agent calls generate_image(prompt="...", size="1536x1024") and gets back a path:
[{ "path": "/home/you/images/20260814_142233_051182_a_wide_banner_of_a_lighthouse_in_a_1.png",
"output_format": "png",
"revised_prompt": null }]
Then keep working on it. Say what is wrong, not what you wanted in the first place:
Take that one and start a refinement session: make the sea rougher.
refine_image(instruction="make the sea rougher", image_paths=["/home/you/images/2026...png"])
returns a new path plus a session_id that looks like resp_0a1b2c3d.... From here the image
stays on OpenAI's side:
Now darken the sky and add a boat on the left.
refine_image(instruction="darken the sky and add a boat on the left", session_id="resp_0a1b...").
No image is uploaded, no prompt is rewritten. The instruction alone travels.
And when the change is a one-off rather than a conversation, edit_image does it in a single
call, on local files, with an optional mask:
Put the logo from ~/brand/logo.png in the bottom right corner of the banner.
edit_image(prompt="...", image_paths=["/home/you/images/2026...png", "/home/you/brand/logo.png"]).
✨ What you can do
🖼️ Draw from nothing. generate_image takes a prompt of up to 32,000 characters and
writes up to 10 variations in one call. Sizes go well past the three presets: any
WIDTHxHEIGHT with both edges a multiple of 16, the longest edge at most 3840 and the ratio
between 1:3 and 3:1, which is how you get a banner that fits your layout instead of one you
have to crop. Six quality tiers, low to max, and a real transparent background on png and
webp output.
✂️ Edit and compose. edit_image takes up to 16 local images and one prompt. One image in
means a change to that image; several in means the prompt decides what each one contributes,
which is how a product shot, a background and a logo become one picture. An optional PNG mask
marks the region to repaint. Every input is processed at full fidelity, so faces, logos and
lettering survive without a setting to find and switch on, and moderation="low" is available
here as well as on generation.
⚡ Pick speed or precision per call. Every tool takes a model: gpt-image-2.5-flare, the
fastest variant and the default, or gpt-image-2.5-sunburst, the most capable one, built for
edits that must respect their source and for scenes dense with detail. They bill the same per
token, so the choice is about time and fidelity, never about money. See
Two variants, one price.
🔁 Refine over several turns. refine_image runs through the Responses API with a
reasoning model steering the drawing, and returns a session_id. Pass that id back and the
conversation continues: the model remembers the image and the instructions that shaped it,
so corrections read like corrections. Sessions live about 30 days. It is also the only tool
here that fills in revised_prompt, so you can read back how your instruction was understood
before you spend another turn guessing.
See docs/refinement.md.
📁 Paths in, paths out. Every tool returns {path, output_format, revised_prompt} with an
absolute path, and every tool that takes an image takes a path. The output of one call is
valid input to the next, and nothing binary ever crosses the MCP boundary. Filenames carry a
microsecond-precision UTC timestamp and a slug of the prompt, so concurrent calls sharing a
prompt cannot overwrite each other.
🛑 Errors you can act on. A refusal comes back as an MCP tool error carrying the API's own
message, never as a success payload with an error key buried in it. An agent reading
OpenAI rejected the request: ... can fix its own call; an agent reading a successful result
that happens to contain an error string usually cannot.
🧨 The things that will bite you
Four of them, and none is a bug in this server. They are worth knowing before they cost you a debugging session.
Transparent needs a format that can carry it. background="transparent" yields a genuine
alpha channel, measured on 2026-09-16 as an RGBA PNG with most of its pixels fully clear. It is
refused with output_format="jpeg", because JPEG has no alpha, and the API answers that
combination with a 400. This server checks it first, so the failure is a local validation
error naming the fix, switch to png or webp, rather than a round trip. Nothing is billed either
way, but only one of the two messages tells you what to change.
A webp request used to come back as a PNG. The API did that for a while, and a file named
.webp holding PNG bytes breaks whatever opens it next. Measured in August 2026, it no longer
does: a webp request returns genuine WEBP bytes and the file is saved as .webp. The server
still sniffs the magic bytes of what actually arrived and names the file after them, because a
regression upstream must never be able to produce a file whose extension lies about its own
contents. Code for it anyway: output_format in the result is authoritative, it describes the
bytes on disk, and it may differ from the output_format you asked for. Trust the result, not
the request.
Refinement costs more per image. A reasoning model drives refine_image, and you pay for
it on every turn including the first. For a single picture, generate_image is cheaper and
just as good. Refinement pays for itself from the second correction onward, when the
alternative is re-uploading an image and rewriting a prompt each time. Pick per task, not per
project.
Sessions expire. A session_id is an OpenAI response id and lasts about 30 days. After
that, or on an id that never existed, the tool fails with a message saying so. Recovery is
cheap because you still have the file: call refine_image with image_paths pointing at the
last saved image and no session_id, and a fresh session starts from that picture.
🤖 Two variants, one price
gpt-image-2.5 ships as two models released together on 2026-09-08, and this server supports both of them and nothing else.
gpt-image-2.5-flare is the fastest, the one OpenAI suggests for everyday generation, and
the default on every tool here. gpt-image-2.5-sunburst is the most capable: it follows an
edit more faithfully, keeps several subjects consistent, and renders small text and dense
detail better, at the cost of a longer wait per image. Measured on 2026-09-16 at low quality
and 1024x1024, flare returned in 8 to 10 seconds and sunburst in 9 to 13.
What the two do not differ on is the bill. Both charge the same per token, on output, on text input and on image input, and the same picture costs the same number of output tokens on either. So the default is flare because it is quick, not because it is cheap, and switching to sunburst for an edit that must respect its source costs you seconds rather than money.
That choice belongs to the call, which is why every tool takes model. A workflow can draft
options on flare with n=4 and hand the chosen one to sunburst for the careful edit, in the
same session, without touching any configuration.
What the environment pins is the snapshot. GPT_IMAGE_SNAPSHOT=2026-09-08 turns whichever
variant a call names into its dated id, gpt-image-2.5-flare-2026-09-08 or
gpt-image-2.5-sunburst-2026-09-08, which is what you want when a silent model update would
change output you have already shipped. Unset, calls follow the moving aliases.
The chat model that steers refine_image is a separate decision under a separate variable,
GPT_IMAGE_REFINE_MODEL, because it is not an image model at all and cannot share a setting
with one. refine_image still takes model for the drawing itself.
⚙️ Configuration
Everything is environment variables, set in your MCP client's config. There is no config
file, and config.py is the only module that reads the environment, so this list is
complete. A .env in the working directory is read too.
| Variable | Required | Default | What it does |
|---|---|---|---|
OPENAI_API_KEY |
yes | none | Standard OpenAI key, reused under its usual name so an existing setup works untouched. |
GPT_IMAGE_OUTPUT_DIR |
no | ./generated-images |
Where images are written. Created on first save. Relative paths resolve against the server's working directory, so an absolute path is safer. |
GPT_IMAGE_SNAPSHOT |
no | unset | A date such as 2026-09-08. Appended to whichever variant a call names, so gpt-image-2.5-flare becomes gpt-image-2.5-flare-2026-09-08. Unset, the moving aliases are used. |
GPT_IMAGE_REFINE_MODEL |
no | chat-latest |
The mainline chat model that steers refine_image. The default alias never goes stale; pin gpt-5.6-sol, gpt-5.6-terra or gpt-5.6-luna to hold behaviour still or to trade cost against quality. |
GPT_IMAGE_TIMEOUT |
no | 300 |
Seconds before generate_image or edit_image gives up. Complex prompts and 3840-pixel edges sit near the top of that budget. |
GPT_IMAGE_REFINE_TIMEOUT |
no | 300 |
The same, for refine_image, which is slower because it plans before it draws. |
Details, and how to choose the timeouts, in docs/configuration.md.
📚 Documentation
Full docs in docs/. Start with getting-started.md, then tools.md for every parameter of the three tools, refinement.md for the multi-turn workflow, and troubleshooting.md when something comes back wrong.
📜 Licence
FSL-1.1-MIT. Source available, not open source: read it, fork it, run it, build on it and ship products with it, with one restriction, you may not use it to make a competing product. Every release converts to plain MIT 2 years after it ships, automatically.
Metadata
Release files for mcp-gpt-image 0.4.0
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| mcp_gpt_image-0.4.0.tar.gz | 163.6 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| mcp_gpt_image-0.4.0-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 197.8 kB
Release files / mcp_gpt_image-0.4.0.tar.gz
| Download URL | mcp_gpt_image-0.4.0.tar.gz |
|---|---|
| Size | 163.6 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
19394798bfee7244dbbe207ac3c1f156e5c555aeb3b8f37d434e9d50673ad159
|
|
BLAKE2b-256 checksum How to use checksums |
c3c22e048e50100ecde2cc57e589990461a8c9e45dfe01e07919e1353f8ee450
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Sep 16, 2026.
Transparency logRelease files / mcp_gpt_image-0.4.0-py3-none-any.whl
| Download URL | mcp_gpt_image-0.4.0-py3-none-any.whl |
|---|---|
| Size | 34.2 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
027e9e08d1b9dbf9af112cf71199f866bc40d4b8c364f1c47f2a023d37aac3db
|
|
BLAKE2b-256 checksum How to use checksums |
bb3e02fec727cb423551704578a500004612c24603d2ac1060a45f01fcda803d
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Sep 16, 2026.
Transparency log