KanbanCAUTION
MCP Kanban is a specialized middleware designed to facilitate interaction between Large Language Models (LLMs) and Planka, a Kanban board application. It serves as an intermediary layer that provides LLMs with a simplified and enhanced API to interact with Planka's task management system.
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
Welcome to the Kanban MCP project! 🎉 This project integrates Planka kanban boards with Cursor's Machine Control Protocol (MCP) to enable AI assistants like Claude to manage your kanban boards.
🤔 What is Kanban MCP?
Kanban MCP is a bridge between Planka (an open-source kanban board) and Cursor's Machine Control Protocol. It allows AI assistants like Claude to:
- 📋 View and manage projects, boards, lists, and cards
- ✅ Create and update tasks
- 💬 Add comments to cards
- 🔄 Move cards between lists
- ⏱️ Track time spent on tasks
- 🚀 And much more!
This integration enables a seamless workflow where you can ask Claude to help manage your development tasks, track progress, and organize your work.
🚦 Quick Start
📋 Prerequisites
- 🐳 Docker for running Planka
- 🔄 Git for cloning the repository
- 🟢 Node.js (version 18 or above) and npm for development
📥 Installation
- Clone this repository:
git clone https://github.com/bradrisse/kanban-mcp.git cd kanban-mcp
- Install dependencies and build the TypeScript code:
npm install npm run build
- Start the Planka containers:
npm run up
- Access the Planka Kanban board:
- Default URL: http://localhost:3333
- Default credentials:
- Email: [email protected]
- Password: demo
- Configure Cursor to use the MCP server:
- In Cursor, go to Settings > Features > MCP
- Add a new MCP server with the following configuration:
{
"mcpServers": {
"kanban": {
"command": "node",
"args": ["/path/to/kanban-mcp/dist/index.js"],
"env": {
"PLANKA_BASE_URL": "http://localhost:3333",
"PLANKA_AGENT_EMAIL": "[email protected]",
"PLANKA_AGENT_PASSWORD": "demo"
}
}
}
}- Replace
/path/to/kanban-mcpwith the act
a3dab10ca221OBSERVED · 2026-10-08Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control. Replace the environment placeholders with a token scoped to the least it needs.
claude mcp add mcp-kanban --env PLANKA_AGENT_PASSWORD=${PLANKA_AGENT_PASSWORD} -- npx -y [email protected]{
"mcpServers": {
"mcp-kanban": {
"command": "npx",
"args": [
"-y",
"[email protected]"
],
"env": {
"PLANKA_AGENT_PASSWORD": "${PLANKA_AGENT_PASSWORD}"
}
}
}
}Exposed tools (8)
8 read · 0 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
mcp_kanban_card_manager | read | Manage kanban cards with various operations |
mcp_kanban_comment_manager | read | Manage card comments with various operations |
mcp_kanban_label_manager | read | Manage kanban labels with various operations |
mcp_kanban_list_manager | read | Manage kanban lists with various operations |
mcp_kanban_membership_manager | read | Manage board memberships with various operations |
mcp_kanban_project_board_manager | read | Manage projects and boards with various operations |
mcp_kanban_stopwatch | read | Manage card stopwatches for time tracking |
mcp_kanban_task_manager | read | Manage kanban tasks with various operations |
Trust audit
CAUTIONgrade B · trust 82/100 Install with care. The audit found things worth knowing before you trust its output.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | FAIL |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- declared (2 observation(s))
- Network
- declared (2 observation(s))
- Shell
- none-observed
- Dependencies
- not all pinned
- Secrets in source
- found
Findings (4)
.env
.env
@types/node, @types/node-fetch, node-fetch, universal-user-agent, zod, zod-to-json-schema, @jest/globals, @types/jest
Gates applied: no_behavioural_pass, no_license.
a3dab10ca221full audit observations/trust-audit/mcp-server/bradrisse__kanban.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-08 | a3dab10ca221 | CAUTION | B | 82 | first audit |
Questions
What is the Kanban MCP server?
MCP Kanban is a specialized middleware designed to facilitate interaction between Large Language Models (LLMs) and Planka, a Kanban board application. It serves as an intermediary layer that provides LLMs with a simplified and enhanced API to interact with Planka's task management system.
What tools does Kanban expose?
8 in total: 8 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is Kanban safe to connect to an agent?
With care. The audit graded it B (82/100) and found 4 things worth knowing before you trust this server, listed below with the exact line each was found on.
What credentials does Kanban need?
It reads PLANKA_AGENT_PASSWORD from the environment. Give it a token scoped to the least it needs — an agent that can be talked into calling a tool can be talked into calling it with your credentials.
How does Kanban run?
It speaks stdio, so it runs as a local process your client starts. It is published on npm as mcp-kanban at 0.0.6.
How current is this page?
The grade is for one exact copy of the source (a3dab10ca221), read on 2026-10-08. The repository is watched and re-audited when it changes.