Back to Browse

Google Contacts MCP Server

Developer ToolsUse Caution4.2MCP RegistryLocal
Free

Server data from the Official MCP Registry

Allow AI systems to list, search, and manage contacts via Google Contacts.

About

Allow AI systems to list, search, and manage contacts via Google Contacts.

Security Report

4.2
Use Caution4.2High Risk

This Google Contacts MCP server implements OAuth 2.0 delegation appropriately with proper authentication and authorization checks. The architecture acts as a stateless OAuth proxy to Google, minimizing token storage risk. Code quality is solid with input validation via Zod schemas and appropriate permissions scoping. A few minor code quality observations exist around error handling and token validation logging, but do not represent security vulnerabilities. Supply chain analysis found 6 known vulnerabilities in dependencies (2 critical, 2 high severity). Package verification found 1 issue.

7 files analyzed · 12 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

env_vars

Check that this permission is expected for this type of plugin.

HTTP Network Access

Connects to external APIs or services over the internet.

process_spawn

Check that this permission is expected for this type of plugin.

What You'll Need

Set these up before or after installing:

Google OAuth access token.Required

Environment variable: GOOGLE_ACCESS_TOKEN

Transport type.Optional

Environment variable: MCP_TRANSPORT

Google OAuth client ID.Optional

Environment variable: GOOGLE_CLIENT_ID

Google OAuth client secret.Required

Environment variable: GOOGLE_CLIENT_SECRET

How to Install

Add this to your MCP configuration file:

{
  "mcpServers": {
    "io-github-domdomegg-google-contacts-mcp": {
      "env": {
        "MCP_TRANSPORT": "your-mcp-transport-here",
        "GOOGLE_CLIENT_ID": "your-google-client-id-here",
        "GOOGLE_ACCESS_TOKEN": "your-google-access-token-here",
        "GOOGLE_CLIENT_SECRET": "your-google-client-secret-here"
      },
      "args": [
        "-y",
        "google-contacts-mcp"
      ],
      "command": "npx"
    }
  }
}

Documentation

View on GitHub

From the project's GitHub README.

google-contacts-mcp

MCP server for Google Contacts - list, search, and manage contacts.

Use Cases

Email lookup: "See the latest JIRA ticket that's come in. Can we email Sarah from the security team to get their input?" → finds Sarah's email and drafts the message.

Business card capture: After a networking event, snap photos of business cards → your assistant extracts the details and adds them as contacts with a note about where you met.

Find connections: "Who do I know at Google?" or "I'm visiting London next week - who should I catch up with?" → search your personal network.

Call reminder: "Remind me to call Mike at 3pm" → creates a calendar event with Mike's phone number attached so you can dial straight from the reminder.

Contact updates: You receive an out-of-office saying someone left their company with a new personal email → your assistant updates their contact automatically.

(These are just examples - any workflow that needs contact lookup or management can use this.)

Setup

1. Create Google OAuth credentials

  1. Go to Google Cloud Console
  2. Create a new project (or use existing)
  3. Enable the People API
  4. Go to APIs & ServicesOAuth consent screen, set up consent screen
  5. Go to APIs & ServicesCredentialsCreate CredentialsOAuth client ID
  6. Choose Web application
  7. Add http://localhost:3000/callback to Authorized redirect URIs
  8. Note your Client ID and Client Secret

2. Run the server

GOOGLE_CLIENT_ID='your-client-id' \
GOOGLE_CLIENT_SECRET='your-client-secret' \
MCP_TRANSPORT=http \
npm start

The server runs on http://localhost:3000 by default. Change with PORT=3001.

3. Add to your MCP client

With the server running, follow the instructions on install-mcp, which generates the right config for your MCP client (Claude Code, Claude Desktop, Cursor, Cline, VS Code, and more).

Architecture

This server acts as an OAuth proxy to Google:

graph LR
    A[MCP client] <--> B[google-contacts-mcp] <--> C[Google OAuth/API]
  1. Server advertises itself as an OAuth authorization server via /.well-known/oauth-authorization-server
  2. /register returns the Google OAuth client credentials
  3. /authorize redirects to Google, encoding the client's callback URL in state
  4. /callback receives the code from Google and forwards to the client's callback
  5. /token proxies token requests to Google, injecting client credentials
  6. /mcp handles MCP requests, using the bearer token to call People API

The server holds no tokens or state - it just proxies OAuth to Google.

Tools

ToolDescription
contacts_listList contacts with names, emails, phones, organizations, birthdays, events, URLs, addresses, nicknames, relations, IM usernames, genders, external IDs, client data, and custom fields
contacts_searchSearch contacts by name, email, or phone
directory_searchSearch organization directory for coworkers
contact_getGet detailed info for a single contact
contact_createCreate a new contact
contact_updateUpdate an existing contact
contact_deletePermanently delete a contact
contact_photo_updateSet or replace a contact's photo
contact_photo_deleteRemove a contact's photo
contact_groups_listList contact groups (labels)
contact_group_getGet a contact group, including its members
contact_group_createCreate a new contact group
contact_group_updateRename a contact group
contact_group_deletePermanently delete a contact group
contact_group_members_modifyAdd or remove contacts from a contact group

Contributing

Pull requests are welcomed on GitHub! To get started:

  1. Install Git and Node.js
  2. Clone the repository
  3. Install dependencies with npm install
  4. Run npm run test to run tests
  5. Build with npm run build

Releases

Versions follow the semantic versioning spec.

To release:

  1. Use npm version <major | minor | patch> to bump the version
  2. Run git push --follow-tags to push with tags
  3. Wait for GitHub Actions to publish to the NPM registry.

Reviews

No reviews yet

Be the first to review this server!