Skip to main content

🎨 mcp-gpt-image

An image MCP server built for the second draft, not the first.

Getting one picture out of a model is the easy part. The afternoon goes on the twelve that come after it: the sky is too bright, the logo drifted, the text on the sign came out wrong. Most image connectors stop at the first picture and leave you to redo the loop by hand.

Three tools, OpenAI's gpt-image-2.5 in both of its variants, and file paths instead of base64.

🧱 The problem

You write a prompt, you get a picture, you want the sky darker. So you write the whole prompt again with "darker sky" appended, because the model kept nothing from the first call. Every correction is a full rewrite, and the model has no idea what it just drew.

When the connector hands images back as base64 it gets worse. The picture is now sitting in the conversation: it cost tokens to arrive, it costs tokens again on every turn it stays there, and feeding it into the next step means sending those same bytes back up. Two rounds of that on a 1536x1024 image and the context window is mostly pixels.

This server takes the other route on both counts. Images travel as file paths: generate_image writes a file and returns where it is, edit_image and refine_image take paths as input, so a picture moves from one step to the next without ever entering the conversation. And refine_image holds the thread with the model, so turn one is a full description and turn two is "make the sky darker". Nothing is re-uploaded, nothing is re-described.

📦 Install

claude mcp add gpt-image -e OPENAI_API_KEY=sk-... -- uvx mcp-gpt-image

Or in any MCP client's config:

{
  "mcpServers": {
    "gpt-image": {
      "command": "uvx",
      "args": ["mcp-gpt-image"],
      "env": {
        "OPENAI_API_KEY": "sk-...",
        "GPT_IMAGE_OUTPUT_DIR": "/home/you/images"
      }
    }
  }
}

Needs Python 3.12 or newer, uv, and an OpenAI key on an organisation with access to image models. Transport is stdio, and stdio is the only one: there is no HTTP mode and no Docker image, so there is no gateway to deploy and nothing listening on a port.

🚀 Quickstart

Ask for a picture:

Generate a wide banner of a lighthouse in a storm, 1536x1024.

The agent calls generate_image(prompt="...", size="1536x1024") and gets back a path:

[{ "path": "/home/you/images/20260814_142233_051182_a_wide_banner_of_a_lighthouse_in_a_1.png",
   "output_format": "png",
   "revised_prompt": null }]

Then keep working on it. Say what is wrong, not what you wanted in the first place:

Take that one and start a refinement session: make the sea rougher.

refine_image(instruction="make the sea rougher", image_paths=["/home/you/images/2026...png"]) returns a new path plus a session_id that looks like resp_0a1b2c3d.... From here the image stays on OpenAI's side:

Now darken the sky and add a boat on the left.

refine_image(instruction="darken the sky and add a boat on the left", session_id="resp_0a1b..."). No image is uploaded, no prompt is rewritten. The instruction alone travels.

And when the change is a one-off rather than a conversation, edit_image does it in a single call, on local files, with an optional mask:

Put the logo from ~/brand/logo.png in the bottom right corner of the banner.

edit_image(prompt="...", image_paths=["/home/you/images/2026...png", "/home/you/brand/logo.png"]).

✨ What you can do

🖼️ Draw from nothing. generate_image takes a prompt of up to 32,000 characters and writes up to 10 variations in one call. Sizes go well past the three presets: any WIDTHxHEIGHT with both edges a multiple of 16, the longest edge at most 3840 and the ratio between 1:3 and 3:1, which is how you get a banner that fits your layout instead of one you have to crop. Six quality tiers, low to max, and a real transparent background on png and webp output.

✂️ Edit and compose. edit_image takes up to 16 local images and one prompt. One image in means a change to that image; several in means the prompt decides what each one contributes, which is how a product shot, a background and a logo become one picture. An optional PNG mask marks the region to repaint. Every input is processed at full fidelity, so faces, logos and lettering survive without a setting to find and switch on, and moderation="low" is available here as well as on generation.

⚡ Pick speed or precision per call. Every tool takes a model: gpt-image-2.5-flare, the fastest variant and the default, or gpt-image-2.5-sunburst, the most capable one, built for edits that must respect their source and for scenes dense with detail. They bill the same per token, so the choice is about time and fidelity, never about money. See Two variants, one price.

🔁 Refine over several turns. refine_image runs through the Responses API with a reasoning model steering the drawing, and returns a session_id. Pass that id back and the conversation continues: the model remembers the image and the instructions that shaped it, so corrections read like corrections. Sessions live about 30 days. It is also the only tool here that fills in revised_prompt, so you can read back how your instruction was understood before you spend another turn guessing. See docs/refinement.md.

📁 Paths in, paths out. Every tool returns {path, output_format, revised_prompt} with an absolute path, and every tool that takes an image takes a path. The output of one call is valid input to the next, and nothing binary ever crosses the MCP boundary. Filenames carry a microsecond-precision UTC timestamp and a slug of the prompt, so concurrent calls sharing a prompt cannot overwrite each other.

🛑 Errors you can act on. A refusal comes back as an MCP tool error carrying the API's own message, never as a success payload with an error key buried in it. An agent reading OpenAI rejected the request: ... can fix its own call; an agent reading a successful result that happens to contain an error string usually cannot.

🧨 The things that will bite you

Four of them, and none is a bug in this server. They are worth knowing before they cost you a debugging session.

Transparent needs a format that can carry it. background="transparent" yields a genuine alpha channel, measured on 2026-09-16 as an RGBA PNG with most of its pixels fully clear. It is refused with output_format="jpeg", because JPEG has no alpha, and the API answers that combination with a 400. This server checks it first, so the failure is a local validation error naming the fix, switch to png or webp, rather than a round trip. Nothing is billed either way, but only one of the two messages tells you what to change.

A webp request used to come back as a PNG. The API did that for a while, and a file named .webp holding PNG bytes breaks whatever opens it next. Measured in August 2026, it no longer does: a webp request returns genuine WEBP bytes and the file is saved as .webp. The server still sniffs the magic bytes of what actually arrived and names the file after them, because a regression upstream must never be able to produce a file whose extension lies about its own contents. Code for it anyway: output_format in the result is authoritative, it describes the bytes on disk, and it may differ from the output_format you asked for. Trust the result, not the request.

Refinement costs more per image. A reasoning model drives refine_image, and you pay for it on every turn including the first. For a single picture, generate_image is cheaper and just as good. Refinement pays for itself from the second correction onward, when the alternative is re-uploading an image and rewriting a prompt each time. Pick per task, not per project.

Sessions expire. A session_id is an OpenAI response id and lasts about 30 days. After that, or on an id that never existed, the tool fails with a message saying so. Recovery is cheap because you still have the file: call refine_image with image_paths pointing at the last saved image and no session_id, and a fresh session starts from that picture.

🤖 Two variants, one price

gpt-image-2.5 ships as two models released together on 2026-09-08, and this server supports both of them and nothing else.

gpt-image-2.5-flare is the fastest, the one OpenAI suggests for everyday generation, and the default on every tool here. gpt-image-2.5-sunburst is the most capable: it follows an edit more faithfully, keeps several subjects consistent, and renders small text and dense detail better, at the cost of a longer wait per image. Measured on 2026-09-16 at low quality and 1024x1024, flare returned in 8 to 10 seconds and sunburst in 9 to 13.

What the two do not differ on is the bill. Both charge the same per token, on output, on text input and on image input, and the same picture costs the same number of output tokens on either. So the default is flare because it is quick, not because it is cheap, and switching to sunburst for an edit that must respect its source costs you seconds rather than money.

That choice belongs to the call, which is why every tool takes model. A workflow can draft options on flare with n=4 and hand the chosen one to sunburst for the careful edit, in the same session, without touching any configuration.

What the environment pins is the snapshot. GPT_IMAGE_SNAPSHOT=2026-09-08 turns whichever variant a call names into its dated id, gpt-image-2.5-flare-2026-09-08 or gpt-image-2.5-sunburst-2026-09-08, which is what you want when a silent model update would change output you have already shipped. Unset, calls follow the moving aliases.

The chat model that steers refine_image is a separate decision under a separate variable, GPT_IMAGE_REFINE_MODEL, because it is not an image model at all and cannot share a setting with one. refine_image still takes model for the drawing itself.

⚙️ Configuration

Everything is environment variables, set in your MCP client's config. There is no config file, and config.py is the only module that reads the environment, so this list is complete. A .env in the working directory is read too.

Variable Required Default What it does
OPENAI_API_KEY yes none Standard OpenAI key, reused under its usual name so an existing setup works untouched.
GPT_IMAGE_OUTPUT_DIR no ./generated-images Where images are written. Created on first save. Relative paths resolve against the server's working directory, so an absolute path is safer.
GPT_IMAGE_SNAPSHOT no unset A date such as 2026-09-08. Appended to whichever variant a call names, so gpt-image-2.5-flare becomes gpt-image-2.5-flare-2026-09-08. Unset, the moving aliases are used.
GPT_IMAGE_REFINE_MODEL no chat-latest The mainline chat model that steers refine_image. The default alias never goes stale; pin gpt-5.6-sol, gpt-5.6-terra or gpt-5.6-luna to hold behaviour still or to trade cost against quality.
GPT_IMAGE_TIMEOUT no 300 Seconds before generate_image or edit_image gives up. Complex prompts and 3840-pixel edges sit near the top of that budget.
GPT_IMAGE_REFINE_TIMEOUT no 300 The same, for refine_image, which is slower because it plans before it draws.

Details, and how to choose the timeouts, in docs/configuration.md.

📚 Documentation

Full docs in docs/. Start with getting-started.md, then tools.md for every parameter of the three tools, refinement.md for the multi-turn workflow, and troubleshooting.md when something comes back wrong.

📜 Licence

FSL-1.1-MIT. Source available, not open source: read it, fork it, run it, build on it and ship products with it, with one restriction, you may not use it to make a competing product. Every release converts to plain MIT 2 years after it ships, automatically.

Metadata

Release files for mcp-gpt-image 0.4.0

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for mcp-gpt-image 0.4.0
File Size Uploaded
mcp_gpt_image-0.4.0.tar.gz 163.6 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for mcp-gpt-image 0.4.0
File Interpreter ABI Platform
mcp_gpt_image-0.4.0-py3-none-any.whl Python 3 none any Details

Total release size: 197.8 kB

Release files / mcp_gpt_image-0.4.0.tar.gz

Download URL mcp_gpt_image-0.4.0.tar.gz
Size 163.6 kB
Tags Source
SHA-256 checksum
How to use checksums
19394798bfee7244dbbe207ac3c1f156e5c555aeb3b8f37d434e9d50673ad159
BLAKE2b-256 checksum
How to use checksums
c3c22e048e50100ecde2cc57e589990461a8c9e45dfe01e07919e1353f8ee450
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Sep 16, 2026.

Transparency log

Release files / mcp_gpt_image-0.4.0-py3-none-any.whl

Download URL mcp_gpt_image-0.4.0-py3-none-any.whl
Size 34.2 kB
Tags Python 3
SHA-256 checksum
How to use checksums
027e9e08d1b9dbf9af112cf71199f866bc40d4b8c364f1c47f2a023d37aac3db
BLAKE2b-256 checksum
How to use checksums
bb3e02fec727cb423551704578a500004612c24603d2ac1060a45f01fcda803d
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Sep 16, 2026.

Transparency log

Release history Release notifications | RSS feed

This release

0.4.0 This release

2 release files

0.3.1

2 release files

0.3.0

2 release files

0.2.0

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page