Back to Browse

Gmail MCP Server

Developer ToolsUse Caution4.2MCP RegistryLocal
Free

Server data from the Official MCP Registry

Allow AI systems to read, send, archive, and manage emails via Gmail.

About

Allow AI systems to read, send, archive, and manage emails via Gmail.

Security Report

4.2
Use Caution4.2High Risk

This Gmail MCP server implements OAuth 2.0 proxying to Google APIs with generally sound security practices. Authentication is properly required for sensitive operations, credentials are handled via environment variables, and the code shows good input validation and error handling. Minor code quality observations include the absence of rate limiting on the token endpoint and some broad error handling, but these do not constitute significant security risks given the server's architecture and purpose. Supply chain analysis found 6 known vulnerabilities in dependencies (2 critical, 2 high severity). Package verification found 1 issue.

7 files analyzed · 11 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

env_vars

Check that this permission is expected for this type of plugin.

HTTP Network Access

Connects to external APIs or services over the internet.

File System Read

Reads files on your machine. Normal for tools that analyze or process local data.

File System Write

Writes or modifies files on your machine. Check that this is expected for the tool.

What You'll Need

Set these up before or after installing:

Google OAuth access token with Gmail scopes.Required

Environment variable: GOOGLE_ACCESS_TOKEN

Transport type.Optional

Environment variable: MCP_TRANSPORT

Google OAuth client ID.Optional

Environment variable: GOOGLE_CLIENT_ID

Google OAuth client secret.Required

Environment variable: GOOGLE_CLIENT_SECRET

How to Install

Add this to your MCP configuration file:

{
  "mcpServers": {
    "io-github-domdomegg-gmail-mcp": {
      "env": {
        "MCP_TRANSPORT": "your-mcp-transport-here",
        "GOOGLE_CLIENT_ID": "your-google-client-id-here",
        "GOOGLE_ACCESS_TOKEN": "your-google-access-token-here",
        "GOOGLE_CLIENT_SECRET": "your-google-client-secret-here"
      },
      "args": [
        "-y",
        "gmail-mcp"
      ],
      "command": "npx"
    }
  }
}

Documentation

View on GitHub

From the project's GitHub README.

gmail-mcp

MCP server for Gmail - read, send, archive, and manage emails.

Use Cases

Flight check-in: "Check me in for my flight tomorrow" → finds your confirmation email, extracts the booking reference, and completes check-in with browser use.

Expense submission: "Submit my Amazon purchases from last week as expenses" → finds receipts, extracts amounts/categories, and files them in your expense system.

Package tracking: "Where's my package from Acme?" → finds the shipping notification, extracts the tracking number, and fetches current delivery status.

Find that attachment: "What did we settle on for the budget? Michelle sent me something yesterday" → locates the email and opens the attached spreadsheet.

Vacation mode: "I'm on holiday Dec 20-Jan 2" → sets up Gmail auto-reply, blocks your calendar, and updates your Slack status in one go.

Meeting follow-up: After a call, your assistant reads the Gemini transcript, summarizes key decisions, and drafts a follow-up email with action items.

(These are just examples - any workflow that needs email search, reading, or sending can use this.)

Setup

1. Create Google OAuth credentials

  1. Go to Google Cloud Console
  2. Create a new project (or use existing)
  3. Enable the Gmail API
  4. Go to APIs & ServicesOAuth consent screen, set up consent screen
  5. Go to APIs & ServicesCredentialsCreate CredentialsOAuth client ID
  6. Choose Web application
  7. Add http://localhost:3000/callback to Authorized redirect URIs
  8. Note your Client ID and Client Secret

2. Run the server

GOOGLE_CLIENT_ID='your-client-id' \
GOOGLE_CLIENT_SECRET='your-client-secret' \
MCP_TRANSPORT=http \
npm start

The server runs on http://localhost:3000 by default. Change with PORT=3001.

3. Add to your MCP client

With the server running, follow the instructions on install-mcp, which generates the right config for your MCP client (Claude Code, Claude Desktop, Cursor, Cline, VS Code, and more).

Architecture

This server acts as an OAuth proxy to Google:

graph LR
    A[MCP client] <--> B[gmail-mcp] <--> C[Google OAuth/API]
  1. Server advertises itself as an OAuth authorization server via /.well-known/oauth-authorization-server
  2. /register returns the Google OAuth client credentials
  3. /authorize redirects to Google, encoding the client's callback URL in state
  4. /callback receives the code from Google and forwards to the client's callback
  5. /token proxies token requests to Google, injecting client credentials
  6. /mcp handles MCP requests, using the bearer token to call Gmail API

The server holds no tokens or state - it just proxies OAuth to Google.

Tools

ToolDescription
gmail_get_profileGet user's email address and profile info
Messages
gmail_messages_listSearch/list messages (consider gmail_threads_list instead)
gmail_message_getGet a single message
gmail_message_sendSend an email
gmail_message_forwardForward an email to new recipients
gmail_message_modifyAdd/remove labels
gmail_message_archiveArchive (remove from inbox)
gmail_message_trashMove to trash
gmail_message_untrashRestore from trash
gmail_message_deletePermanently delete
gmail_messages_batch_modifyBulk label changes
gmail_messages_batch_deleteBulk permanent delete
Threads
gmail_threads_listSearch/list threads (recommended)
gmail_thread_getGet all messages in a thread (recommended)
gmail_thread_modifyAdd/remove labels
gmail_thread_trashMove to trash
gmail_thread_untrashRestore from trash
gmail_thread_deletePermanently delete
Drafts
gmail_drafts_listList drafts
gmail_draft_getGet a draft
gmail_draft_createCreate a draft
gmail_draft_updateUpdate a draft
gmail_draft_sendSend a draft
gmail_draft_deleteDelete a draft
Labels
gmail_labels_listList all labels
gmail_label_getGet a label
gmail_label_createCreate a label
gmail_label_updateUpdate a label
gmail_label_deleteDelete a label
Attachments
gmail_attachment_getDownload attachment
Filters
gmail_filters_listList email filters
gmail_filter_getGet a filter
gmail_filter_createCreate a filter
gmail_filter_deleteDelete a filter
Settings
gmail_vacation_getGet vacation auto-reply settings
gmail_vacation_setSet vacation auto-reply settings

Gmail API Scopes

  • gmail.readonly - Read messages and labels
  • gmail.send - Send messages
  • gmail.modify - Modify messages (archive, labels, trash)

Contributing

Pull requests are welcomed on GitHub! To get started:

  1. Install Git and Node.js
  2. Clone the repository
  3. Install dependencies with npm install
  4. Run npm run test to run tests
  5. Build with npm run build

Releases

Versions follow the semantic versioning spec.

To release:

  1. Use npm version <major | minor | patch> to bump the version
  2. Run git push --follow-tags to push with tags
  3. Wait for GitHub Actions to publish to the NPM registry.

Reviews

No reviews yet

Be the first to review this server!