mcp-starter
Provides schema validation for function parameters, ensuring data correctness before processing API requests.
Offers containerized deployment of the MCP server, simplifying installation and providing consistent runtime environments.
Enables exposure of APIs compatible with the Model Context Protocol for use with OpenAI services, allowing custom functions to be invoked by AI agents.
Click on "Install Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@mcp-startersubmit feedback: Great tool, but docs could be clearer. Rating 4"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
mcp-starter
Secure, starter MCP server boilerplate with JWT authentication, schema validation, and Docker support.
Built for developers who want to expose AI-compatible APIs to tools like Claude, OpenAI, Sourcegraph Cody, or custom agents using the Model Context Protocol (MCP).
Features
JWT-based authentication with tenant isolation
Function auto-loading from
/functionsdirectoryInline per-function schema validation (via AJV)
Dynamic MCP manifest generation (
/mcp-manifest.json)Docker container
CLI utility to generate JWTs for local testing
Health endpoints (
/mcp,/healthz)
Related MCP server: MCP Server Templates
Running locally
Clone repo
git clone https://github.com/parmindersk/mcp-starter.git
cd mcp-starterRun with Docker
docker-compose upRun from code
pnpm install
pnpm startGenerating a Test Token
node tools/generateToken.js --tenant=acme --secret=supersecureThe --secret value (supersecure) must match the JWT_SECRET defined in your .env or docker-compose.yml.
Testing sample submitFeedback
curl -X POST http://localhost:3000/mcp \
-H "Authorization: Bearer YOUR_JWT_HERE" \
-H "Content-Type: application/json" \
-d '{
"method": "submitFeedback",
"params": {
"message": "Love the product!",
"rating": 5
}
}'You can play around with the body to remove message or give an invalid value for rating to see how validation is working.
Follow SinghSpeak.com for more.
Have feedback or feature ideas? Open an issue or contribute via pull request.
Available Tools
1 toolhello_toolD
Hello tool
| Name | Required | Description | Default |
|---|---|---|---|
| name | Yes | The name of the person to greet |
TDQS
Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations provided, the description carries full burden for behavioral disclosure but offers none. 'Hello tool' gives no indication of whether this is a read/write operation, what permissions might be required, what side effects occur, or what the response looks like. It's completely inadequate for behavioral understanding.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.
Is the description appropriately sized, front-loaded, and free of redundancy?
While technically concise with just two words, this represents under-specification rather than effective brevity. The description fails to provide necessary information, making it inefficient rather than well-structured. Every word should earn its place, but here the words don't provide meaningful content.
Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.
Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?
Given a tool with one parameter but no annotations and no output schema, the description is completely inadequate. It provides no information about what the tool does, how it behaves, or what it returns. For even a simple tool, this description fails to provide the minimum necessary context for effective use.
Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.
Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?
The schema has 100% description coverage with the parameter 'name' clearly documented as 'The name of the person to greet.' The description adds no parameter information beyond what the schema provides. With high schema coverage, the baseline score of 3 is appropriate as the schema does the heavy lifting.
Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.
Does the description clearly state what the tool does and how it differs from similar tools?
The description 'Hello tool' is a tautology that merely restates the tool name without specifying what it does. It doesn't provide a clear verb+resource combination or explain the tool's function beyond the obvious name. While it doesn't mislead, it fails to articulate any meaningful purpose.
Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.
Does the description explain when to use this tool, when not to, or what alternatives exist?
The description provides no guidance on when to use this tool, what context it's appropriate for, or any alternatives. There are no sibling tools, but the description still offers zero usage context, leaving the agent with no information about application scenarios or prerequisites.
Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.
Tool Schema Changelog
Recent tool additions, removals, and schema changes observed during successful MCP inspections. Dates show when Glama detected each change.
1 tool update
- First observed
hello_tool
TDQS
With only one tool, there is no possibility of confusion or overlap between tools. The tool's purpose is clearly distinct by default.
The single tool name 'hello_tool' follows a consistent verb_noun pattern (hello + tool). With only one tool, consistency is inherently perfect.
A single tool is too few for most practical server purposes, as it severely limits functionality and scope. This feels thin and inadequate for typical MCP server use cases.
With only a 'hello_tool', the server lacks any meaningful domain coverage. It is severely incomplete, offering no operations for a coherent workflow or domain.
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Related MCP Connectors
The official MCP Server from Mia-Platform to interact with Mia-Platform Console
The official MCP Server for the Mux API
FusionAuth Documentation MCP server
MCP server for mandates, delegation, policy-gated execution, credential grants, and audit.
111
Related MCP Servers
- AlicenseNot gradedqualityFmaintenanceA starter template for building MCP servers with support for No Auth, API Key, and OAuth authentication using the Dedalus Labs DAuth framework.MIT
- AlicenseNot gradedqualityDmaintenanceProvides production-grade starter templates for MCP servers with permission boundaries, integration tests, and eval contracts, enabling rapid development of secure and testable MCP servers.Apache 2.0
- AlicenseNot gradedqualityDmaintenanceProduction-ready MCP server starter with authentication, observability, and a plugin system for building and deploying MCP servers quickly.MIT
- AlicenseNot gradedqualityBmaintenanceA security-first MCP (Model Context Protocol) backend built with Node.js and Express, featuring hardening, rate limiting, structured logging, and Docker support.MIT
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/parmindersk/mcp-starter'
If you have feedback or need assistance with the MCP directory API, please join our Discord server