YouGile Secure MCP
A YouGile MCP server where writes need explicit approval: the agent stages a preview, a human confirms in chat
Medium risk
We rate an entry medium when the tool runs code, makes network calls or reads project files. Check what exactly it does before installing.
Why this level
- Can create and update YouGile tasks, though only after a human explicitly approves the exact payload
- Deletion is not implemented, but creating and editing tasks still changes the company's working data
Install
Manual install
git clone https://github.com/ropuwz-dot/MCP-Yougile.git && cd MCP-Yougile && python3 -m venv .venv && .venv/bin/python -m pip install -e '.[dev]'Install from the README; then run .venv/bin/python run_server.py with YOUGILE_API_KEY in the environment.
This is third-party code. Review the repository files before installing.
What it does
The server is read-only by default: ten read tools (profile, projects, boards, columns, tasks with server-side filters, task lookup by a short ID like DEV-484, comments, users, stickers) return data with no ability to change anything. Writes work in three steps: propose_task_create or propose_task_update stage a preview of the change and a single-use approval token, the agent shows that preview to the user, and only after explicit consent does apply_approved_action execute it with that token. The token is bound to the exact payload, single-use, and expires after 600 seconds by default. Deletion is not implemented at all.
Who it is for. For anyone who wants to give an agent YouGile access without trusting it to write unsupervised.
Good fit when
- It matters that every YouGile write needs explicit user consent in chat
- You need access to a self-hosted box YouGile server, not just the cloud
- You need to look up a task by a short ID like DEV-484 without a UUID
Not a fit when
- You need to create many tasks quickly without confirmations
- You need to delete tasks or objects: this feature is deliberately absent
Example request
Find task DEV-484 and propose moving its deadline to next Friday, ask me before savingLimitations
Object deletion is not implemented at all, neither soft nor hard. YouGile's 50-requests-per-minute company limit is handled by the server itself, with bounded retries on 429. For a self-hosted (box) YouGile with a self-signed certificate, YOUGILE_SSL_CA_CERT must point at the CA; plain http is allowed only for localhost without a separate flag.
How to disable. Remove the yougile entry from your MCP client config and stop the run_server.py process.
MCP
- Transport
- stdio
- Authentication
- API key
| Environment variables | |
|---|---|
| YOUGILE_API_KEY required, secret | YouGile API v2 key. |
| YOUGILE_BASE_URL | API address, defaults to https://yougile.com; for box servers, your own mainPageUrl. |
| YOUGILE_APPROVAL_TTL_SECONDS | Lifetime of a write approval token, defaults to 600 seconds. |
Security check
- Can create and update YouGile tasks, though only after a human explicitly approves the exact payload
- Deletion is not implemented, but creating and editing tasks still changes the company's working data
README in short
The README separately describes the read-only tools and the staged-write tools with the exact approval-token contract, a "security model" section with explicit guarantees (never stores a login/password, never creates or deletes API keys or users), a section on self-hosted box YouGile with a self-signed certificate, and a configuration table for Claude Code, Claude Desktop and Hermes.
FAQ
Can the server delete a task?
No, delete operations are not implemented at all.
What happens to the approval token after use?
It's single-use and expires after YOUGILE_APPROVAL_TTL_SECONDS (600 seconds by default); it cannot be reused.
Related
Salesforce's official DX MCP server: work with orgs, metadata, data, users and Apex tests from your agent
Yandex Kit skills for store management
kit-skills
Yandex's official skill set: catalog, prices, stock, orders, storefront and a weekly checkup for a Yandex Kit store, through Claude Code or Codex
YouGile MCP by Indalo
YouGile MCP
Full 65-operation YouGile API coverage with configurable permissions, write confirmation and a shared company rate limit
Bitrix24 portal MCP server
MCP-сервер портала Битрикс24
Bitrix24's official per-portal MCP: an external agent uses OAuth or a token to read and change tasks, deals, meetings and mail