Back to Browse

Read AdSense Management MCP Server

Developer ToolsModerate7.2MCP RegistryLocal
Free

Server data from the Official MCP Registry

Read AdSense Management API v2 accounts and reports through MCP.

About

Read AdSense Management API v2 accounts and reports through MCP.

Security Report

7.2
Moderate7.2Low Risk

This is a well-designed MCP server for Google AdSense with appropriate OAuth authentication and minimal security concerns. The code properly handles credential management via environment variables, implements token refresh logic correctly, and uses read-only API scopes. A minor issue exists in the authorization script where shell command construction could theoretically be vulnerable to argument injection on non-Windows platforms, but the severity is low given the controlled execution context. Supply chain analysis found 1 known vulnerability in dependencies (0 critical, 1 high severity). Package verification found 1 issue.

7 files analyzed · 4 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

env_vars

Check that this permission is expected for this type of plugin.

HTTP Network Access

Connects to external APIs or services over the internet.

File System Read

Reads files on your machine. Normal for tools that analyze or process local data.

File System Write

Writes or modifies files on your machine. Check that this is expected for the tool.

What You'll Need

Set these up before or after installing:

Optional short-lived OAuth access token.Required

Environment variable: ADSENSE_ACCESS_TOKEN

OAuth desktop client ID. Required when not using an access token.Optional

Environment variable: ADSENSE_CLIENT_ID

OAuth desktop client secret. Required when not using an access token.Required

Environment variable: ADSENSE_CLIENT_SECRET

OAuth refresh token. Required when not using an access token.Required

Environment variable: ADSENSE_REFRESH_TOKEN

Optional AdSense account resource name. The first accessible account is used when omitted.Optional

Environment variable: ADSENSE_ACCOUNT

How to Install

Add this to your MCP configuration file:

{
  "mcpServers": {
    "io-github-sirmacke-adsense-mcp": {
      "env": {
        "ADSENSE_ACCOUNT": "your-adsense-account-here",
        "ADSENSE_CLIENT_ID": "your-adsense-client-id-here",
        "ADSENSE_ACCESS_TOKEN": "your-adsense-access-token-here",
        "ADSENSE_CLIENT_SECRET": "your-adsense-client-secret-here",
        "ADSENSE_REFRESH_TOKEN": "your-adsense-refresh-token-here"
      },
      "args": [
        "-y",
        "@sirmacke/adsense-mcp"
      ],
      "command": "npx"
    }
  }
}

Documentation

View on GitHub

From the project's GitHub README.

AdSense MCP

An MCP server providing read-only access to the AdSense Management API v2: accounts, payments, alerts, policy issues, sites, inventory, ad code, and saved or ad-hoc reports.

The server uses the read-only https://www.googleapis.com/auth/adsense.readonly OAuth scope. It does not write to an AdSense account.

Install

Once published, run it from an MCP client with npx -y @sirmacke/adsense-mcp. Configure either ADSENSE_ACCESS_TOKEN, or all three of ADSENSE_CLIENT_ID, ADSENSE_CLIENT_SECRET, and ADSENSE_REFRESH_TOKEN.

Security

OAuth access tokens, refresh tokens, and client secrets are credentials. Keep them out of this repository, issue trackers, shell history, and MCP configuration that is shared with others. If one is exposed, revoke it in Google Cloud immediately; see SECURITY.md.

Setup

  1. In Google Cloud, enable AdSense Management API and create an OAuth Desktop client.
  2. Obtain a refresh token granted the https://www.googleapis.com/auth/adsense.readonly scope. Keep it secret.
  3. Copy .env.example to your secure environment configuration and populate either ADSENSE_ACCESS_TOKEN or the OAuth client ID, secret, and refresh token.
  4. Install and build:
npm install
npm run build

One-time OAuth authorization (without gcloud)

Download the OAuth Desktop client JSON from Google Cloud, then run:

$env:ADSENSE_OAUTH_CLIENT_FILE = "C:\secure\adsense-client.json"
$env:ADSENSE_TOKEN_FILE = "C:\secure\adsense-oauth.json"
npm run authorize

The command opens the Google consent screen on a localhost callback and saves the client ID, client secret, and refresh token only in the private token file. Copy those values to the ADSENSE_CLIENT_ID, ADSENSE_CLIENT_SECRET, and ADSENSE_REFRESH_TOKEN fields of the MCP configuration. Do not leave an External consent screen in Testing: its refresh tokens expire after seven days.

Claude Desktop

Current Claude Desktop builds use extensions. Run npm run package, then install build/adsense-mcp.mcpb from Settings → Extensions → Advanced settings → Install extension. It securely prompts for the OAuth values. On installations that support classic configuration, add this instead:

{
  "mcpServers": {
    "adsense": {
      "command": "node",
      "args": ["/absolute/path/to/adsense-mcp/dist/index.js"],
      "env": {
        "ADSENSE_CLIENT_ID": "...",
        "ADSENSE_CLIENT_SECRET": "...",
        "ADSENSE_REFRESH_TOKEN": "..."
      }
    }
  }
}

Codex

Add the equivalent server definition to your Codex MCP configuration, using the same command, arguments, and environment variables. The server uses the standard MCP stdio transport and works in both clients.

Tools

Accounts and account status

  • adsense_list_accounts
  • adsense_get_account
  • adsense_list_child_accounts
  • adsense_list_payments
  • adsense_list_alerts
  • adsense_get_ad_blocking_recovery_tag
  • adsense_list_policy_issues
  • adsense_get_policy_issue
  • adsense_list_sites
  • adsense_get_site

Inventory

  • adsense_list_ad_clients
  • adsense_get_ad_client
  • adsense_get_ad_client_ad_code
  • adsense_list_ad_units
  • adsense_get_ad_unit
  • adsense_get_ad_unit_ad_code
  • adsense_list_linked_custom_channels
  • adsense_list_url_channels
  • adsense_get_url_channel
  • adsense_list_custom_channels
  • adsense_get_custom_channel
  • adsense_list_linked_ad_units

Reports

  • adsense_list_saved_reports
  • adsense_get_saved_report
  • adsense_generate_saved_report
  • adsense_generate_report

Account-level tools discover the configured or first accessible account when account is omitted. Paginated list tools accept pageSize and pageToken; pass a returned nextPageToken to continue. Resource-specific tools accept the canonical names returned by their corresponding list tools.

adsense_list_payments returns paid and unpaid earnings, including the formatted amount and, for paid earnings, the credited date. The AdSense API does not expose bank or payment-method details.

Example report request: metrics: ["ESTIMATED_EARNINGS", "PAGE_VIEWS", "CLICKS"], dimensions: ["DATE", "COUNTRY_NAME"], dateRange: "LAST_7_DAYS", orderBy: ["-ESTIMATED_EARNINGS"].

The server returns structured JSON. The API's duplicate CSV report methods are intentionally omitted because agents can transform the structured response when CSV is needed.

Verify

npm test
npm run build

Live verification also requires the OAuth values above and an AdSense account. Every exposed endpoint accepts the AdSense read-only OAuth scope.

Releasing

Releases are published to both npm and the official MCP Registry. The registry stores discovery metadata from server.json; the installable server itself is distributed through npm.

  1. Update the version consistently in package.json, package-lock.json, server.json (including its npm package entry), mcpb/manifest.json, and the MCP server version in src/index.ts.
  2. Run npm test and npm pack --dry-run to verify the build and published package contents.
  3. Commit and push the release to GitHub.
  4. Publish the public scoped package with npm publish --access public.
  5. Authenticate when necessary with mcp-publisher login github, then run mcp-publisher publish to publish the matching server.json version.

Publish npm before the MCP Registry because registry validation requires the referenced public package version to exist. Published versions are immutable, so corrections require a new version.

License

MIT

Reviews

No reviews yet

Be the first to review this server!