YouGile MCP with priorities and subtasks
@nebelov/yougile-mcp (форк Sunscrypt)
A fork of nebelov/yougile-mcp adding sticker priority and subtask parameters to create and update task, plus its own skill and a security audit
Medium risk
We rate an entry medium when the tool runs code, makes network calls or reads project files. Check what exactly it does before installing.
Why this level
- Can create, change and delete tasks, stickers and board structure in YouGile
- The API key grants access to the whole YouGile company while it is valid
Install
Manual install
git clone https://github.com/Sunscrypt/yougile-mcp.git && cd yougile-mcp && npm install && npm run buildInstall the fork from source; upstream is set up as a remote for updates.
This is third-party code. Review the repository files before installing.
What it does
The server builds on @nebelov/yougile-mcp (57 tools, full YouGile API v2 coverage) and fixes a specific gap: in the stock version, tool descriptions mentioned sticker priorities and subtasks, but the parameter schemas did not include them, so the model could never set them. The fork adds a stickers parameter to yougile_create_task and yougile_update_task for a task's priority sticker, a subtasks parameter with an array of ids for parent-subtask links, and makes columnId optional since a subtask is created without a column. The changes are concentrated in one file, src/tools/tasks.ts, which makes merging upstream easier. It ships with auto-setup via npx --setup, its own SKILL.md, and a source code security audit by the author.
Who it is for. For people already using or considering @nebelov/yougile-mcp who need the agent to actually be able to set priority and subtasks
Good fit when
- You need the agent to set a task's priority via a sticker
- You need to create subtasks nested under a parent task without their own column
- You need full YouGile API v2 coverage from upstream plus these two fixes
Not a fit when
- You do not need priorities and subtasks: the original @nebelov/yougile-mcp is enough
- You need HTTP mode without restrictions: the author's own audit warns that --http serves with no authorization
Example request
Create a "Write tests" task as a subtask of "Release 2.0" and set it to high priorityLimitations
The project has no stars, a single-author fork. The changes are not merged upstream at the time of review; updating requires git fetch upstream and resolving conflicts specifically in src/tools/tasks.ts. The server's HTTP mode has no authorization of its own and serves with Access-Control-Allow-Origin: *; the author explicitly advises against exposing it externally.
How to disable. Remove the server from your MCP client config, for example claude mcp remove yougile in Claude Code.
MCP
- Transport
- stdio
- Authentication
- API key
| Environment variables | |
|---|---|
| YOUGILE_API_KEY required, secret | YouGile API key |
| YOUGILE_LOGIN secret | Login for auto-setup via npx --setup |
| YOUGILE_PASSWORD secret | Password for auto-setup via npx --setup |
| YOUGILE_API_HOST_URL | YouGile API host, if different from the default |
Security check
- Can create, change and delete tasks, stickers and board structure in YouGile
- The API key grants access to the whole YouGile company while it is valid
README in short
The README points to the original @nebelov/yougile-mcp with 57 tools and full API v2 coverage, while a separate FORK-NOTES.md documents the changes in detail: a table of modified parameters, an explanation of the sticker-priority and subtask mechanics, the upstream update command, and the results of a July 4, 2026 security audit with an explicit warning about the unprotected HTTP mode.
FAQ
How does this differ from the original @nebelov/yougile-mcp?
Only in changes to src/tools/tasks.ts: added stickers and subtasks parameters, and columnId became optional in create task.
Is HTTP mode safe to expose externally?
No, per the author's own audit --http serves with no authorization; only the local stdio mode should be used.
Related
Salesforce's official DX MCP server: work with orgs, metadata, data, users and Apex tests from your agent
Yandex Kit skills for store management
kit-skills
Yandex's official skill set: catalog, prices, stock, orders, storefront and a weekly checkup for a Yandex Kit store, through Claude Code or Codex
YouGile MCP by Indalo
YouGile MCP
Full 65-operation YouGile API coverage with configurable permissions, write confirmation and a shared company rate limit
Bitrix24 portal MCP server
MCP-сервер портала Битрикс24
Bitrix24's official per-portal MCP: an external agent uses OAuth or a token to read and change tasks, deals, meetings and mail