Atlas / MCP servers / gomarble-ai / Facebook Ads

Facebook AdsSAFE

mcp/gomarble-ai/facebook-ads

None

Verdict
SAFE
Grade
B
Trust score
89 /100
Exposed tools
21 17r · 4w · 0d
Transport
stdio
License
MIT
Stars
366
01

Overview

From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.

[](https://archestra.ai/mcp-catalog/gomarble-ai__facebook-ads-mcp-server) [](https://smithery.ai/server/@gomarble-ai/facebook-ads-mcp-server)

This project provides an MCP server acting as an interface to the Meta Ads, enabling programmatic access to Meta Ads data and management features.

Your browser does not support the video tag.

Easy One-Click Setup

For a simpler setup experience, we offer ready-to-use installers:

👉 Download installer - https://gomarble.ai/mcp

Join our community for help and updates

👉 Slack Community - AI in Ads

Try Google ads mcp server also

👉 Google Ads MCP - Google Ads MCP

What It Does

  • Installs and configures the MCP server locally
  • Automatically handles environment setup
  • Prompts for Meta token authentication during the process which is optional
  • If Meta access token is not provided then connect to GoMarble's server to create the token on your behalf

Important Disclaimer

This setup does not require you to manually obtain a Meta Developer Access Token.

Instead, it connects securely to GoMarble's server to create the token on your behalf. GoMarble does not store your token — it is saved locally on your machine for use with the MCP server.

Setup

Prerequisites

  • Python 3.10+
  • Dependencies listed in requirements.txt
  1. (Optional but Recommended) Create and Activate a Virtual Environment:
python3 -m venv venv
source venv/bin/act
Read from source at commit 32cf9eb81c7aOBSERVED · 2026-10-02
02

Exposed tools (21)

17 read · 4 write · 0 destructive.

ToolRiskDescription
fetch_pagination_urlreadFetch data from a Facebook Graph API pagination URL
get_activities_by_adaccountreadRetrieves activities for a Facebook ad account.
get_activities_by_adsetwriteRetrieves activities for a Facebook ad set.
get_ad_by_idreadRetrieves detailed information about a specific Facebook ad by its ID.
get_ad_creative_by_idreadRetrieves detailed information about a specific Facebook ad creative.
get_ad_creatives_by_ad_idreadRetrieves the ad creatives associated with a specific Facebook ad.
get_ad_insightsreadRetrieves detailed performance insights for a specific Facebook ad.
get_adaccount_insightsreadRetrieves performance insights for a specified Facebook ad account.
get_ads_by_adaccountreadRetrieves ads from a specific Facebook ad account.
get_ads_by_adsetwriteRetrieves ads associated with a specific Facebook ad set.
get_ads_by_campaignreadRetrieves ads associated with a specific Facebook campaign.
get_adset_by_idwriteRetrieves detailed information about a specific Facebook ad set by its ID.
get_adset_insightswriteRetrieves performance insights for a specific Facebook ad set.
get_adsets_by_adaccountreadRetrieves ad sets from a specific Facebook ad account.
get_adsets_by_campaignreadRetrieves ad sets associated with a specific Facebook campaign.
get_adsets_by_idsreadRetrieves detailed information about multiple Facebook ad sets by their IDs.
get_campaign_by_idreadRetrieves detailed information about a specific Facebook ad campaign by its ID.
get_campaign_insightsreadRetrieves performance insights for a specific Facebook ad campaign.
get_campaigns_by_adaccountreadRetrieves campaigns from a specific Facebook ad account.
get_details_of_ad_accountreadGet details of a specific ad account as per the fields provided
list_ad_accountsreadList down the ad accounts and their names associated with your Facebook account.
03

Trust audit

SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.

LayerWhat it checksResult
L0Provenance & inventoryPASS
L1Static analysis of the codePASS
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
none-observed
Network
declared (2 observation(s))
Shell
none-observed
Dependencies
not all pinned
Secrets in source
none-found

Findings (3)

LOWInventory / provenance · inv.hidden_file · CWE-1104
.dxtignore
.dxtignore
Why it matters. hidden member outside the usual dotfiles
Fix. review its purpose
LOWSupply chain · supply.unpinned · CWE-829, CWE-1357
requirements.txt
mcp, requests
Why it matters. 2 requirement(s) not pinned with ==
Fix. pin exact versions
LOWPrompt injection · prompt.credential_read · CWE-94, CWE-1427
readme.md:60
3.  **Obtain Meta Access Token:** Secure a Meta User Access Token with the necessary permissions (e.g., `ads_read`). You can generate this through the Meta Developer portal. Follow [this link](https:/
Why it matters. asks the agent to read credentials

Gates applied: no_behavioural_pass.

Audited 2026-10-02 · audit v0.4.1 · source sha 32cf9eb81c7afull audit observations/trust-audit/mcp-server/gomarble-ai__facebook-ads.json · Report an issue / request a re-scan
04

Audit history

Every audit this server has had. A grade with a past is a grade somebody is still checking.

DateSourceVerdictGradeScoreChange
2026-10-0232cf9eb81c7aSAFEB89first audit
05

Questions

What is the Facebook Ads MCP server?

None

What tools does Facebook Ads expose?

21 in total: 17 read-only, 4 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.

Is Facebook Ads safe to connect to an agent?

The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.

What credentials does Facebook Ads need?

No credential environment variables were found in its source, so it appears to need none.

How does Facebook Ads run?

It speaks stdio, so it runs as a local process your client starts.

How current is this page?

The grade is for one exact copy of the source (32cf9eb81c7a), read on 2026-10-02. The repository is watched and re-audited when it changes.

Advertisement