MCP Stateless Examples
Click on "Install Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@MCP Stateless Examplesbrainstorm gift ideas for my mom's birthday"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
MCP Stateless Examples
Educational implementation of the MCP 2026-07-28 stateless protocol — the largest revision since launch, finalized July 28, 2026.
Built with raw Starlette (no SDK dependency) to show the wire protocol clearly. Supply-chain hardened throughout.
What's New in 2026-07-28
Change | Impact |
Stateless core | No |
| Every request carries |
| Replaces |
Routing headers |
|
MRTR |
|
| HMAC-signed opaque handle for multi-round state |
| Long-lived POST→SSE replaces GET endpoint |
Sources: Spec · Changelog · Blog
Related MCP server: MCP Stateless Server Template
Quick Start
# Install
pip install -e ".[dev]"
# Run the server
uvicorn mcp_stateless.server:app --reload
# In another terminal, try the examples
python examples/01_basic_tool.py
python examples/02_state_handle.py
python examples/03_mrtr_elicitation.py
# Or use curl
bash examples/curl/discover.sh
bash examples/curl/tools_list.sh
bash examples/curl/tools_call.shExamples
# | Example | Pattern |
01 | Simplest stateless | |
02 | Server-minted handle for cross-request state | |
03 | Multi-round with user input | |
04 | Multi-round with LLM sampling + decline path | |
05 |
| |
06 | Backward compat with 2025-era clients |
Architecture
src/mcp_stateless/
├── server.py # Starlette app, JSON-RPC routing
├── meta.py # _meta envelope parsing + validation
├── headers.py # MCP-Protocol-Version, Mcp-Method, Mcp-Name, Origin
├── discover.py # server/discover RPC
├── request_state.py # HMAC-SHA256 requestState codec
├── mrtr.py # InputRequiredResult + inputResponses helpers
└── tools/
├── __init__.py # SENTINEL-TPD tool registry + scanning
├── weather.py # Stateless tool (no state)
├── cart.py # Stateful-via-handle tool
└── brainstorm.py # MRTR multi-round toolSecurity
SENTINEL-TPD: Tool descriptions scanned at registration for poisoning signals
Origin validation: DNS rebinding defense
Header-body validation: Prevents routing spoofing
State handle security: HMAC-signed, principal-bound, TTL-expiring
Capability enforcement: Server rejects undeclared client capabilities
See docs/security-model.md for the full threat model.
Supply Chain
Control | Status |
Wolfi/distroless base | Dockerfile with pinning notes |
SBOM (syft) | CI workflow |
cosign signing | supply-chain.yml |
SLSA Level 3 | slsa-github-generator |
Pinned deps | pyproject.toml |
Non-root container | UID 1000 |
bash scripts/verify_supply_chain.shTesting
python -m pytest tests/ -vTest coverage:
_metaenvelope parsing and validationHeader mismatch detection (all required headers)
requestStateHMAC codec (mint, verify, tamper, expiry, principal binding)MRTR helpers (InputRequiredResult, inputResponses)
SENTINEL-TPD tool scanning (poisoning detection, quarantine)
Stateless invariants (no session, no initialize, per-request _meta)
License
MIT
Tool Schema Changelog
Recent tool additions, removals, and schema changes observed during successful MCP inspections. Dates show when Glama detected each change.
No tool schema history has been recorded yet.
This server cannot be installed
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Related MCP Connectors
Experimental MCP server for current empirical verification of explicit public HTTPS endpoint claims.
MCP server for Boson Protocol — on-chain agentic commerce for physical & digital goods.
Guarded MCP server for agent-readable business truth, provenance, readiness, and discovery.
MCP server for Modern Treasury — payment orders, transactions, counterparties and ledgers.
Related MCP Servers
- AlicenseNot gradedqualityCmaintenanceProvides a sovereign, MIT-licensed MCP server for professional-service workflows, running entirely on your infrastructure with Ed25519 cryptographic signing for every action.MIT
- AlicenseNot gradedqualityCmaintenanceA production-ready stateless MCP server template implementing the 2026-07-28 specification, enabling horizontal scaling and easy migration from session-based servers.MIT
- FlicenseNot gradedqualityCmaintenanceA minimal stateless HTTP MCP server demonstrating the 2026-07-28 protocol era, with tools for arithmetic, order and user queries, resources, prompts, and MCP Apps, featuring caching and W3C trace context.-
- AlicenseNot gradedqualityBmaintenanceA demo MCP server showcasing every MCP capability with fake logic, including tools, resources, prompts, progress, cancellation, elicitation, sampling, roots, and subscriptions, over Streamable HTTP, HTTP+SSE, and stdio transports.10MIT
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/rajesamp/mcp-stateless-examples'
If you have feedback or need assistance with the MCP directory API, please join our Discord server