kaiten-mcp (Go)
kaiten-mcp
A Go MCP server for Kaiten with readonly and full access profiles, where the tool set is set by config instead of one blanket key
Medium risk
We rate an entry medium when the tool runs code, makes network calls or reads project files. Check what exactly it does before installing.
Why this level
- The full profile allows reversible changes to cards and boards
- The Kaiten token grants access to the whole space; the restriction is only software-level
Install
Manual install
make buildBuilds the bin/kaiten-mcp binary. Requires Go 1.26 or newer.
This is third-party code. Review the repository files before installing.
What it does
The server builds into a single Go binary and gives an agent access to Kaiten spaces, boards, columns, cards, members and tags over MCP via stdio, talking to the Kaiten API over HTTP. Its key feature is that the available tool set is controlled by a permission profile. In the default readonly mode there are no mutating tools at all, the agent cannot even see them. The full profile adds reversible changes, but not irreversible deletion. The token does not have to sit in the client config; it can live in a separate 0600 file whose path the server reads from KAITEN_ENV_FILE.
Who it is for. For teams that need to strictly limit an agent to reading, or to explicitly allowed changes, in Kaiten.
Good fit when
- You want to give an agent read-only Kaiten access with no risk of accidental changes
- You want a single binary with no Node or Python runtime
- You want to keep the token out of the client config via a separate permissioned file
Not a fit when
- You need prebuilt binaries for platforms other than darwin/arm64 and linux/amd64
- You need an automatic build without installing Go
Example request
Show cards with no owner on the Sprint board, read-onlyLimitations
There are no ready binary releases for every platform; you build from source with Go 1.26 using make build or make release. The repository also contains internal skills for developing the project itself, which are not meant to be installed by users.
How to disable. Remove the server from your MCP client config and delete the bin/kaiten-mcp binary.
MCP
- Transport
- stdio
- Authentication
- API key
| Environment variables | |
|---|---|
| KAITEN_BASE_URL required | Kaiten API base URL, https is required |
| KAITEN_API_KEY required, secret | Kaiten personal access token |
| KAITEN_PERMISSIONS | Profile readonly or full, or a list of individual permissions |
| KAITEN_ENV_FILE | Path to a variables file so the token is not stored in the client config |
Security check
- The full profile allows reversible changes to cards and boards
- The Kaiten token grants access to the whole space; the restriction is only software-level
README in short
The Russian README covers building with make build and make release, the mandatory KAITEN_BASE_URL and KAITEN_API_KEY, optional KAITEN_PERMISSIONS, KAITEN_LOG_LEVEL and KAITEN_ENV_FILE, the readonly and full profiles, and individual permissions. The version and commit hash are embedded in the binary.
FAQ
What does the full profile add?
Reading and all reversible changes. Irreversible deletion is not part of the full profile and needs separate permissions.
Related
A skills library that gives coding agents a development process: brainstorming, planning, TDD, subagents and code review
Skills for real engineers by Matt Pocock
Skills For Real Engineers
Small composable skills for engineering with agents: plan grilling, TDD, bug diagnosis, code review and architecture
GitHub toolkit for spec-driven development: the specify CLI adds agent commands and skills to a project, from principles to implementation
Reference MCP servers
Model Context Protocol servers
Official reference MCP servers: Filesystem, Fetch, Git, Memory, Sequential Thinking, Time and Everything