MCP server for Google Tag Manager
Project description
tagmanager-mcp
An MCP (Model Context Protocol) server for Google Tag Manager. Ask your AI assistant about your GTM setup — accounts, containers, tags, triggers, variables, unpublished changes — and let it edit the workspace draft: create, update and delete tags, triggers and variables, then version and publish the container. Works from Claude Code, Claude Desktop, or any MCP client.
Why this one?
- Authenticate once — no re-auth treadmill. Auth is plain Google Application Default Credentials (ADC) with your own OAuth client: the refresh token does not expire, so you log in once and forget it. No hosted OAuth session that lapses every few days and demands another round of browser clicking.
- No service account required. The server runs as you, using the GTM permissions your Google account already has. There is no service-account JSON key to create, grant container access to, rotate, or accidentally commit.
- Local and direct. Runs on your machine over stdio; your GTM data flows
straight between you and
tagmanager.googleapis.com. No third-party proxy in the middle. - Built for LLM context windows. GTM's raw tag JSON is enormous (a single
GA4 event tag is easily hundreds of lines).
list_*tools return slim skeletons;get_*tools fetch full detail only when asked. - Quota-aware by design. The GTM API allows only 25 requests per 100 seconds per project. The server retries rate limits (429/403) and server errors with exponential backoff, and self-throttles after the first hit. Errors come back as actionable messages, not raw stack traces.
Tools
Read
| Tool | Purpose |
|---|---|
list_accounts |
GTM accounts you can access (optionally Google Tag accounts) |
list_containers |
Containers in an account |
list_workspaces |
Workspaces in a container |
get_workspace_status |
Unpublished changes and merge conflicts |
list_tags / get_tag |
Tags — skeleton list / full configuration |
list_triggers / get_trigger |
Triggers — skeleton list / full configuration |
list_variables / get_variable |
Variables — skeleton list / full configuration |
Write
| Tool | Purpose |
|---|---|
create_tag / create_trigger / create_variable |
Create an entity in the workspace draft |
update_tag / update_trigger / update_variable |
Merge partial changes into an entity |
delete_tag / delete_trigger / delete_variable |
Delete an entity (requires confirm=true) |
Publish
| Tool | Purpose |
|---|---|
list_versions |
Container version headers — skeleton list |
get_version / get_live_version |
One version / the currently live version, with slimmed contents |
create_version |
Snapshot the workspace into a version (consumes the workspace; returns newWorkspacePath) |
publish_version |
Publish a version live (requires confirm=true) |
The write safety model:
- Editing and going live are separate. Create/update/delete only touch
the workspace draft; only
publish_versionchanges what runs on the live site, and it needsconfirm=true. You review changes in the GTM UI (or viaget_workspace_status/get_live_version) before anything ships. - Updates are merge patches. The model sends only the fields to change;
the server re-reads the entity and submits its
fingerprint, so a concurrent edit fails cleanly instead of being clobbered. - Deletes and publishing need explicit confirmation (
confirm=true) and are declared withdestructiveHint.create_versionis also destructive (it consumes the workspace) but does not gate onconfirm. - No blind retries on writes. Rate-limit rejections are retried (they happen before execution); ambiguous 5xx errors are not, so a create can never be silently duplicated.
Prerequisites
- Python >= 3.10
- pipx
- The gcloud CLI
- A Google account with access to your GTM containers
- Any GCP project you can enable an API on (used only for quota attribution)
Setup
1. Install
pipx install tagmanager-mcp
2. Enable the Tag Manager API on your quota project
gcloud services enable tagmanager.googleapis.com --project=YOUR_PROJECT
3. Create a Desktop OAuth client
Google blocks gcloud's built-in OAuth client for Tag Manager scopes ("This app is blocked"), so you bring your own:
- GCP Console → Google Auth Platform → Clients → Create client → Application type Desktop app → create, then download the JSON.
- On the Audience page, publish the app to Production. An app left in Testing status issues refresh tokens that expire after 7 days — the exact re-auth treadmill this project exists to avoid.
4. Log in
gcloud auth application-default login \
--client-id-file=path/to/your-client.json \
--scopes=https://www.googleapis.com/auth/tagmanager.readonly,https://www.googleapis.com/auth/tagmanager.edit.containers,https://www.googleapis.com/auth/tagmanager.edit.containerversions,https://www.googleapis.com/auth/tagmanager.publish,https://www.googleapis.com/auth/cloud-platform
gcloud auth application-default set-quota-project YOUR_PROJECT
Scopes are additive to what each tier needs: drop tagmanager.publish +
tagmanager.edit.containerversions for edit-only (no publishing), or also
drop tagmanager.edit.containers for a read-only setup. Tools outside your
granted scopes fail with a clear re-login hint while everything else keeps
working.
The browser will warn "Google hasn't verified this app" — it is your own app; choose Advanced → Continue.
Connect an MCP client
Claude Code starts from your shell and inherits its PATH, so the bare command works:
claude mcp add gtm -- tagmanager-mcp
Claude Desktop (claude_desktop_config.json) is launched by the OS and
does not inherit your shell PATH, so give it the absolute path. Print it
with which tagmanager-mcp:
{
"mcpServers": {
"gtm": {
"command": "/Users/you/.local/bin/tagmanager-mcp"
}
}
}
Example prompts
- "Which GTM accounts and containers do I have?"
- "How many tags are in the default workspace of container GTM-XXXXXXX, grouped by type?"
- "Which tags are paused?"
- "Show me the full config of the purchase tag and which triggers fire it."
- "Does the current workspace have unpublished changes? What changed?"
- "Find triggers that no tag references."
- "Pause every tag that fires on the checkout trigger."
- "Create a custom-event trigger for
sign_upand a GA4 event tag that fires on it."
Quota
The GTM API is tightly limited: 10,000 requests/day and 0.25 QPS (25 requests per 100-second window) per GCP project — per-user quota overrides do not raise it. Ordinary audit conversations fit comfortably; avoid "every tag in every container" sweeps across many containers at once.
Troubleshooting
- "This app is blocked" during login — you used gcloud's default OAuth
client; pass your own with
--client-id-file(Setup step 3). - 403 mentioning insufficient scopes — your ADC predates this setup; re-run the login command in Setup step 4.
- Errors mention enabling the API / quota project — run Setup step 2 and
set-quota-project; the error message itself carries the exact commands.
Development
git clone https://github.com/jinchliu/tagmanager-mcp && cd tagmanager-mcp
python3 -m venv .venv
.venv/bin/pip install -e ".[dev]"
.venv/bin/nox -s tests # stdlib unittest, fully offline
.venv/bin/nox -s lint # black --check
.venv/bin/mcp dev tagmanager_mcp/server.py # MCP Inspector
Point your MCP client at .venv/bin/tagmanager-mcp to run the checkout
instead of the installed release.
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file tagmanager_mcp-0.3.0.tar.gz.
File metadata
- Download URL: tagmanager_mcp-0.3.0.tar.gz
- Upload date:
- Size: 23.1 kB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.12
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
c631b774bdc67fb9b3e0490995981a3f1a2888c9f5261a0331b3ea4bb02428b1
|
|
| MD5 |
ff37efefaa75428ca181bc4398b31612
|
|
| BLAKE2b-256 |
bd0552c5178fb14d2cb2ec5df1f95ded27032bf1036d7b85fef310806f90aa7f
|
Provenance
The following attestation bundles were made for tagmanager_mcp-0.3.0.tar.gz:
Publisher:
release.yml on jinchliu/tagmanager-mcp
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
tagmanager_mcp-0.3.0.tar.gz -
Subject digest:
c631b774bdc67fb9b3e0490995981a3f1a2888c9f5261a0331b3ea4bb02428b1 - Sigstore transparency entry: 2137007240
- Sigstore integration time:
-
Permalink:
jinchliu/tagmanager-mcp@6586997a74eea82b8053c63c768c1c73cb812cd3 -
Branch / Tag:
refs/tags/v0.3.0 - Owner: https://github.com/jinchliu
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
release.yml@6586997a74eea82b8053c63c768c1c73cb812cd3 -
Trigger Event:
push
-
Statement type:
File details
Details for the file tagmanager_mcp-0.3.0-py3-none-any.whl.
File metadata
- Download URL: tagmanager_mcp-0.3.0-py3-none-any.whl
- Upload date:
- Size: 25.8 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.12
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
004c00274e84387f19b664394551e374d5ad69b160bced78cf5f5f83a590a241
|
|
| MD5 |
bf23f84aec81d88da14187e8d8bc1988
|
|
| BLAKE2b-256 |
d08532b0d1e6b6fdc0394a35d515f2e6b4698ec9304fc59890c3b189cc34dee8
|
Provenance
The following attestation bundles were made for tagmanager_mcp-0.3.0-py3-none-any.whl:
Publisher:
release.yml on jinchliu/tagmanager-mcp
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
tagmanager_mcp-0.3.0-py3-none-any.whl -
Subject digest:
004c00274e84387f19b664394551e374d5ad69b160bced78cf5f5f83a590a241 - Sigstore transparency entry: 2137007267
- Sigstore integration time:
-
Permalink:
jinchliu/tagmanager-mcp@6586997a74eea82b8053c63c768c1c73cb812cd3 -
Branch / Tag:
refs/tags/v0.3.0 - Owner: https://github.com/jinchliu
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
release.yml@6586997a74eea82b8053c63c768c1c73cb812cd3 -
Trigger Event:
push
-
Statement type: