Skip to main content

Taranis MCP Server

A read-oriented Model Context Protocol server for Taranis AI. The current version exposes the list_stories and list_sources tools over stdio or authenticated Streamable HTTP.

Configuration

You need a reachable Taranis instance and a user with ASSESS_ACCESS. Set TARANIS_API_URL to the complete API root, including /api, then choose exactly one authentication mode:

  • TARANIS_USERNAME and TARANIS_PASSWORD: the server logs in lazily and can log in again after an expired JWT.
  • TARANIS_ACCESS_TOKEN: use an existing JWT returned by Taranis /api/auth/login; it cannot be renewed without credentials.

Do not reuse a Taranis JWT as MCP_ACCESS_TOKEN. The latter protects the MCP HTTP endpoint and is not needed for stdio.

Installation and MCP Client Configuration

This server is intended for desktop AI assistants as well as developer tools. Desktop applications with MCP support include Claude Desktop and OpenAI's ChatGPT desktop app. IDE and terminal clients include Cursor, Zed, Codex CLI, and the Codex IDE extension. If another assistant, such as Mistral Le Chat, offers MCP integration in your installed version or workspace, use its local stdio or remote Streamable HTTP configuration as appropriate.

Clients that support local stdio can launch the server as a child process. The configuration file location and surrounding schema depend on the client, but the server command, arguments, and environment are the same. Desktop applications that support only remote MCP connectors should use the Streamable HTTP setup below instead.

PyPI with uvx

This option installs and runs the package without cloning the repository. Install uv, then add the following definition to a client that uses the mcpServers format, such as Claude Desktop or Cursor:

{
  "mcpServers": {
    "taranis": {
      "command": "/absolute/path/to/uvx",
      "args": ["taranis-mcp-server"],
      "env": {
        "MCP_TRANSPORT": "stdio",
        "TARANIS_API_URL": "https://taranis.example/api",
        "TARANIS_USERNAME": "analyst",
        "TARANIS_PASSWORD": "change-me"
      }
    }
  }
}

Use which uvx on Linux/macOS or where uvx on Windows to find the executable. On Windows the path may end in uvx.exe. An absolute path is recommended because desktop applications may have a smaller PATH than an interactive shell.

Container with Docker

This option requires only Docker. On Windows, install and start Docker Desktop before launching the MCP client. The client passes its configured environment variables to docker, and the -e arguments forward them into the container:

{
  "mcpServers": {
    "taranis": {
      "command": "docker",
      "args": [
        "run",
        "--rm",
        "-i",
        "-e",
        "TARANIS_API_URL",
        "-e",
        "TARANIS_USERNAME",
        "-e",
        "TARANIS_PASSWORD",
        "ghcr.io/taranis-ai/taranis-mcp-server:stable"
      ],
      "env": {
        "TARANIS_API_URL": "https://taranis.example/api",
        "TARANIS_USERNAME": "analyst",
        "TARANIS_PASSWORD": "change-me"
      }
    }
  }
}

The stable tag follows the newest stable container release. Replace it with an exact tag such as 0.1.1 for a reproducible installation. Likewise, append a version to the PyPI argument, such as taranis-mcp-server==0.1.1, to pin that installation.

For either installation method, use a JWT by replacing the username and password with TARANIS_ACCESS_TOKEN. In the Docker arguments, also replace the two credential -e entries with "-e", "TARANIS_ACCESS_TOKEN".

MCP Registry

Starting with version 0.1.1, releases are published as io.github.taranis-ai/taranis-mcp-server in the official MCP Registry. Registry-aware applications can use that identity to discover the server and choose either its PyPI or OCI package. The registry does not define one universal install command, so the final confirmation and configuration flow depends on the application.

Do not commit a project-level MCP configuration containing credentials. Restart or reload the client after saving its configuration. Its MCP settings should show a taranis server with the list_stories and list_sources tools. For clients such as Zed that use a different configuration schema, carry over the same command, argument list, and environment values into that client's stdio MCP definition.

Codex

Codex CLI and the Codex IDE extension share MCP configuration from ~/.codex/config.toml. Add this server definition, replacing the absolute path:

[mcp_servers.taranis]
command = "/absolute/path/to/uvx"
args = ["taranis-mcp-server"]
env_vars = ["TARANIS_USERNAME", "TARANIS_PASSWORD"]

[mcp_servers.taranis.env]
MCP_TRANSPORT = "stdio"
TARANIS_API_URL = "https://taranis.example/api"

Export the forwarded credentials before starting Codex:

export TARANIS_USERNAME=analyst
export TARANIS_PASSWORD=change-me
codex mcp list
codex

Use /mcp inside the Codex TUI to confirm that taranis is active and exposes list_stories and list_sources. To use a JWT instead, replace the two names in env_vars with TARANIS_ACCESS_TOKEN and export that variable.

Streamable HTTP

For a separately running server, configure MCP_TRANSPORT=streamable-http, set a strong MCP_ACCESS_TOKEN, and start:

uv run --frozen taranis-mcp-server

The default endpoint is http://127.0.0.1:8000/mcp. Clients must send Authorization: Bearer <MCP_ACCESS_TOKEN>. For a non-local deployment, configure MCP_PUBLIC_URL, MCP_ISSUER_URL, MCP_ALLOWED_HOSTS, and MCP_ALLOWED_ORIGINS for the externally visible address, and terminate TLS at a trusted reverse proxy.

Development from Source

Development requires Python 3.12 or newer and uv. Clone the repository, copy .env.example to .env, and install the locked dependencies:

uv sync --frozen

Run the server using the configuration from .env:

uv run --frozen taranis-mcp-server

Run the development checks:

uv run --frozen pytest
uv run --frozen ruff check .

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

taranis_mcp_server-0.1.1.tar.gz (55.3 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

taranis_mcp_server-0.1.1-py3-none-any.whl (11.8 kB view details)

Uploaded Python 3

File details

Details for the file taranis_mcp_server-0.1.1.tar.gz.

File metadata

  • Download URL: taranis_mcp_server-0.1.1.tar.gz
  • Upload date:
  • Size: 55.3 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/7.0.0 CPython/3.13.14

File hashes

Hashes for taranis_mcp_server-0.1.1.tar.gz
Algorithm Hash digest
SHA256 d3e022881f5cccc3e090433c25eb8369cad8b64e5d9bd7b499069983b8e07ac3
MD5 68db6a7858ae6bec9f4c7111a6626b9c
BLAKE2b-256 154c7ce6185229defeac79607c499f5108b0c435e3106741cf2095d1df5ac351

See more details on using hashes here.

Provenance

The following attestation bundles were made for taranis_mcp_server-0.1.1.tar.gz:

Publisher: release.yml on taranis-ai/taranis-mcp-server

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file taranis_mcp_server-0.1.1-py3-none-any.whl.

File metadata

File hashes

Hashes for taranis_mcp_server-0.1.1-py3-none-any.whl
Algorithm Hash digest
SHA256 312fca6e767ff92c951f81dd795e62e107f6e386193afd6f1cd66b90043e7755
MD5 6378805eb179cef364adc4596b375085
BLAKE2b-256 64c92e15f6627e6b97d8e76f0e470d2e91dc29a6fff948152ecfb62be854da8a

See more details on using hashes here.

Provenance

The following attestation bundles were made for taranis_mcp_server-0.1.1-py3-none-any.whl:

Publisher: release.yml on taranis-ai/taranis-mcp-server

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page