YouGile Secure MCP

A YouGile MCP server where writes need explicit approval: the agent stages a preview, a human confirms in chat

MCP server

Medium risk

We rate an entry medium when the tool runs code, makes network calls or reads project files. Check what exactly it does before installing.

Why this level

  • Can create and update YouGile tasks, though only after a human explicitly approves the exact payload
  • Deletion is not implemented, but creating and editing tasks still changes the company's working data
All reasons and checks
Russian stack

ropuwz-dot/mcp-yougile

Install

Manual install

git clone https://github.com/ropuwz-dot/MCP-Yougile.git && cd MCP-Yougile && python3 -m venv .venv && .venv/bin/python -m pip install -e '.[dev]'

Install from the README; then run .venv/bin/python run_server.py with YOUGILE_API_KEY in the environment.

This is third-party code. Review the repository files before installing.

What it does

The server is read-only by default: ten read tools (profile, projects, boards, columns, tasks with server-side filters, task lookup by a short ID like DEV-484, comments, users, stickers) return data with no ability to change anything. Writes work in three steps: propose_task_create or propose_task_update stage a preview of the change and a single-use approval token, the agent shows that preview to the user, and only after explicit consent does apply_approved_action execute it with that token. The token is bound to the exact payload, single-use, and expires after 600 seconds by default. Deletion is not implemented at all.

Who it is for. For anyone who wants to give an agent YouGile access without trusting it to write unsupervised.

Good fit when

  • It matters that every YouGile write needs explicit user consent in chat
  • You need access to a self-hosted box YouGile server, not just the cloud
  • You need to look up a task by a short ID like DEV-484 without a UUID

Not a fit when

  • You need to create many tasks quickly without confirmations
  • You need to delete tasks or objects: this feature is deliberately absent

Example request

Find task DEV-484 and propose moving its deadline to next Friday, ask me before saving

Limitations

Object deletion is not implemented at all, neither soft nor hard. YouGile's 50-requests-per-minute company limit is handled by the server itself, with bounded retries on 429. For a self-hosted (box) YouGile with a self-signed certificate, YOUGILE_SSL_CA_CERT must point at the CA; plain http is allowed only for localhost without a separate flag.

How to disable. Remove the yougile entry from your MCP client config and stop the run_server.py process.

MCP

Transport
stdio
Authentication
API key
Environment variables
Environment variables
YOUGILE_API_KEY
required, secret
YouGile API v2 key.
YOUGILE_BASE_URL
API address, defaults to https://yougile.com; for box servers, your own mainPageUrl.
YOUGILE_APPROVAL_TTL_SECONDS
Lifetime of a write approval token, defaults to 600 seconds.

Security check

  • Can create and update YouGile tasks, though only after a human explicitly approves the exact payload
  • Deletion is not implemented, but creating and editing tasks still changes the company's working data

README in short

The README separately describes the read-only tools and the staged-write tools with the exact approval-token contract, a "security model" section with explicit guarantees (never stores a login/password, never creates or deletes API keys or users), a section on self-hosted box YouGile with a self-signed certificate, and a configuration table for Claude Code, Claude Desktop and Hermes.

FAQ

Can the server delete a task?

No, delete operations are not implemented at all.

What happens to the approval token after use?

It's single-use and expires after YOUGILE_APPROVAL_TTL_SECONDS (600 seconds by default); it cannot be reused.

Official

Salesforce's official DX MCP server: work with orgs, metadata, data, users and Apex tests from your agent

MCP serverHigh risk483Repository stars
Official

Yandex's official skill set: catalog, prices, stock, orders, storefront and a weekly checkup for a Yandex Kit store, through Claude Code or Codex

PluginHigh riskRussian stackNo VPN needed28Repository stars
Editors’ pick

Full 65-operation YouGile API coverage with configurable permissions, write confirmation and a shared company rate limit

MCP serverHigh riskRussian stackNo VPN needed

Bitrix24 portal MCP server

MCP-сервер портала Битрикс24

Official

Bitrix24's official per-portal MCP: an external agent uses OAuth or a token to read and change tasks, deals, meetings and mail

MCP serverHigh riskRussian stackNo VPN needed
Foxx AIYouGile Secure MCP

I am Foxx AI and I have already vetted this tool. Ask about install, setup or anything else, and I will keep it simple.