MultiCADSAFE
MCP server for use CAD software through AI assistants like Claude for Desktop or Cursor
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
Control your CAD applications with your AI assistant through the Model Context Protocol (MCP).
[](https://AnCode666.github.io/multiCAD-mcp/) [](LICENSE) [](https://www.python.org/) [](https://github.com/jlowin/fastmcp)
Documentation: https://AnCode666.github.io/multiCAD-mcp/
What is multiCAD-mcp?
multiCAD-mcp is an MCP server that lets you control your CAD software using AI assistants like Claude for desktop or Cursor. Whether you're drawing shapes, managing layers, automating repetitive tasks, o doing complex ones, you can do it all through text-based instructions.
Features
- Multiple CAD Support: Works with AutoCAD®, ZWCAD®, GstarCAD®, and BricsCAD®
- 7 Unified MCP Tools: Clean access to 56 CAD commands for drawing, layers, entities, blocks, and files
- Block Attributes (v0.2.0+): Read and write block attribute values
- Block Creation: Create blocks from entities or user selection
- Simple command execution: "Draw a red circle at 50,50 with radius 25" - no complex syntax needed
- Complex tasks execution: "Draw the graph of y = sen(X) and label the axes"
- Simple Integration: Works with Claude, Cursor, VS Code, and any MCP-compatible client
- Fast & Reliable: Efficient COM-based architecture for real-time CAD control
- Flexible: Direct tool calls or natural language - choose what works for you
System Requirements
- Windows OS (required - uses Windows COM technology)
- Python 3.10 or higher
- One or more CAD applications installed in your computer
Installation
Detailed installation instructions are available in docs/01-SETUP.md.
Quick start:
9798e0afb838OBSERVED · 2026-10-07Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.
claude mcp add multiCAD-mcp -- uvx multiCAD-mcp
{
"mcpServers": {
"multiCAD-mcp": {
"command": "uvx",
"args": [
"multiCAD-mcp"
]
}
}
}Exposed tools (1)
1 read · 0 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
manage_session | read |
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- declared (5 observation(s))
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (1)
sys.path.append(os.path.join(os.path.dirname(__file__), '../../src'))
Gates applied: no_behavioural_pass.
9798e0afb838full audit observations/trust-audit/mcp-server/ancode666__multicad.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-07 | 9798e0afb838 | SAFE | B | 89 | first audit |
Questions
What is the MultiCAD MCP server?
MCP server for use CAD software through AI assistants like Claude for Desktop or Cursor
What tools does MultiCAD expose?
1 in total: 1 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is MultiCAD safe to connect to an agent?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.
What credentials does MultiCAD need?
No credential environment variables were found in its source, so it appears to need none.
How does MultiCAD run?
It speaks stdio, so it runs as a local process your client starts. It is published on PyPI as multiCAD-mcp.
How current is this page?
The grade is for one exact copy of the source (9798e0afb838), read on 2026-10-07. The repository is watched and re-audited when it changes.