Server data from the Official MCP Registry
Expose the 5dive agent-fleet CLI (tasks, agents, digest) as stdio MCP tools.
About
Expose the 5dive agent-fleet CLI (tasks, agents, digest) as stdio MCP tools.
Security Report
Well-designed MCP server with strong security practices. The server acts as a thin adapter to the 5dive CLI, properly avoiding credential handling, using safe argument passing (no shell), and implementing input validation. Permissions are appropriate for its purpose as a developer tool. Minor code quality findings do not substantially impact security. Supply chain analysis found 2 known vulnerabilities in dependencies (0 critical, 2 high severity). Package verification found 1 issue.
4 files analyzed · 7 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
Permissions Required
This plugin requests these system permissions. Most are normal for its category.
What You'll Need
Set these up before or after installing:
Environment variable: FIVEDIVE_SUDO
Environment variable: FIVEDIVE_BIN
Environment variable: FIVEDIVE_TIMEOUT_MS
How to Install
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-5dive-ai-5dive-mcp": {
"env": {
"FIVEDIVE_BIN": "your-fivedive-bin-here",
"FIVEDIVE_SUDO": "your-fivedive-sudo-here",
"FIVEDIVE_TIMEOUT_MS": "your-fivedive-timeout-ms-here"
},
"args": [
"-y",
"@5dive/mcp"
],
"command": "npx"
}
}
}Documentation
View on GitHubFrom the project's GitHub README.
5dive MCP server
Expose the 5dive agent-fleet CLI as Model Context Protocol tools. Point any MCP client (Claude Desktop, Cursor, Cline, or your own) at this stdio server to file tasks, inspect and message agents, and read the fleet digest — directly from inside a model context.
5dive is the CLI + control plane for running a fleet of
autonomous coding agents as a self-governing company. This server is a thin,
honest adapter: every tool shells out to the local 5dive binary's
machine-readable --json surface and returns the result — so it inherits the
CLI's auth, permissions, and audit log for free, and never handles secrets itself.
Tools
| Tool | Wraps | What it does |
|---|---|---|
task_create | 5dive task add | File a task in the shared queue (title, body, priority, assignee, parent). |
task_show | 5dive task show | Full detail for one task by id (status, body, result, subtasks, blockers). |
task_list | 5dive task ls | List tasks (open by default; filter by status / assignee). |
agent_send | 5dive agent send | Send a message to another agent on the fleet. |
agent_list | 5dive agent list | List every agent: type, channels, model, live state. |
digest_get | 5dive digest | Fleet daily standup digest (window: "7d" for the weekly view). |
Requirements
- Node.js >= 18
- The
5diveCLI installed and onPATH(curl https://install.5dive.ai | sudo bash).
Install & run
npx @5dive/mcp # run directly
# or
npm i -g @5dive/mcp && 5dive-mcp
Client config (Claude Desktop / Cursor / Cline)
{
"mcpServers": {
"5dive": {
"command": "npx",
"args": ["-y", "@5dive/mcp"],
"env": { "FIVEDIVE_SUDO": "1" }
}
}
}
Remote mode: 5dive-mcp serve (ChatGPT, OpenAI dots)
A client that runs in someone else's cloud can't spawn a stdio process on your
box. serve puts the same six tools behind MCP's Streamable HTTP transport, on
loopback, for your reverse proxy to publish over HTTPS.
Using managed 5dive? You don't need this: connect to
https://api.5dive.com/mcpand sign in. See the guide.
# 1. Mint a token. It is printed once; only its hash is kept.
5dive-mcp token create --name=chatgpt # read-only
5dive-mcp token create --name=chatgpt --write # may also file tasks and message agents
# 2. Serve on loopback (default 127.0.0.1:8741, path /mcp).
FIVEDIVE_SUDO=1 5dive-mcp serve
# 3. Publish it over HTTPS, e.g. with Caddy (automatic certificates):
# agents.example.com {
# reverse_proxy /mcp* 127.0.0.1:8741
# }
Then point the client at it:
- Clients that can send a header (Claude Code, the MCP inspector, most SDKs):
https://agents.example.com/mcpwithAuthorization: Bearer <token>. - ChatGPT developer mode offers only OAuth or "No authentication", so put
the token in the URL and choose "No authentication":
https://agents.example.com/mcp/<token>.
5dive-mcp token list shows the tokens; 5dive-mcp token revoke --name=chatgpt
cuts one off, and a running server refuses it from the next request.
serve flag | Default | Purpose |
|---|---|---|
--listen | 127.0.0.1:8741 | Address to bind. A non-loopback address is refused unless you pass --allow-public-http. |
--path | /mcp | Mount point. |
--rate | 60 | Tool calls per token per minute. |
Security: what opening this endpoint means
- What a token can do. A read-only token can list agents and tasks, read a
task, and read the digest. A
--writetoken can also file tasks (task_create) and message agents (agent_send). No token can answer a gate, change settings, spend money, or run anything outside those six CLI calls, each built as a fixed argv with no shell. Whatever sender the remote client claims is dropped: its messages arrive labelledmcp-<token name>, and its tasks say in their body which connection filed them. - Who it runs as. The tools run with the rights of the user running
serve, plus root throughsudowhenFIVEDIVE_SUDO=1. The server only ever runs those six subcommands, but a compromised server process holds that user's rights, so run it as a dedicated user whose sudo grant covers only the5divebinary. - Rate limit. 60 calls a minute per token by default (
--rate), counted per JSON-RPC message: batches are refused before anything runs. Bodies over 1 MiB are refused. - Audit. Every tool call, allowed or refused, appends one line to
audit.jsonl: time, token name, tool, outcome, client IP (fromX-Forwarded-Forwhen the proxy is on loopback), and the ids and names involved. Message text and task bodies are never written. - Tokens at rest.
tokens.json(mode 0600) holds a SHA-256 of each token, never the token. Both files live in$FIVEDIVE_MCP_HOME, default~/.config/5dive-mcp. - A token in the URL is a password in the URL. Your reverse proxy's access
log records request paths. Turn path logging off for
/mcp/*, or use header auth where the client supports it. Anyone holding the URL holds the token. - Plain HTTP stays on loopback.
serverefuses a public bind by default, because the token would cross the network unencrypted.
Prefer no inbound port at all? OpenAI's
Secure MCP Tunnel
runs a small client next to the server and connects out to OpenAI. Its
tunnel-client can launch the stdio server directly
(--mcp-command "npx -y @5dive/mcp"), but it needs an OpenAI Platform
organization with tunnel permissions.
Configuration (env vars)
| Var | Default | Purpose |
|---|---|---|
FIVEDIVE_BIN | 5dive | Path to the 5dive binary. |
FIVEDIVE_SUDO | (unset) | Set to 1 to prefix calls with sudo. Managed 5dive boxes require root for most subcommands; leave unset if you already run as root. |
FIVEDIVE_TIMEOUT_MS | 30000 | Per-call timeout in milliseconds. |
FIVEDIVE_MCP_HOME | ~/.config/5dive-mcp | Where serve keeps tokens.json and audit.jsonl. |
Safety
Arguments are passed to the CLI as an argv array with no shell, so tool input can never be interpreted as shell syntax. The server never sees secrets: the CLI reads its own credentials from the box.
Scope
This mirrors a curated slice of the CLI (tasks, agents, digest), not its full
surface. It is a distribution and convenience layer, not a new API. For
everything else, use the 5dive CLI directly (5dive --help). Full docs: https://5dive.ai/docs/5dive-cli
License
MIT
Reviews
No reviews yet
Be the first to review this server!
More Developer Tools MCP Servers
Git
Freeby Modelcontextprotocol · Developer Tools
Read, search, and manipulate Git repositories programmatically
Fetch
Freeby Modelcontextprotocol · Developer Tools
Web content fetching and conversion for efficient LLM usage
Worldmonitor
Freeby Koala73 · Developer Tools
Live markets, conflicts, country risk, chokepoints, energy, and China decision signals. 84 tools.
Toleno
Freeby Toleno · Developer Tools
Toleno Network MCP Server — Manage your Toleno mining account with Claude AI using natural language.
mcp-creator-python
Freeby mcp-marketplace · Developer Tools
Create, build, and publish Python MCP servers to PyPI — conversationally.
MCP Marketplace
Freeby mcp-marketplace · Developer Tools
Search and install MCP servers from inside your AI client.
