# OpenClaw MCP Server
[](https://www.npmjs.com/package/openclaw-mcp)
[](https://github.com/freema/openclaw-mcp/actions/workflows/ci.yml)
[](https://opensource.org/licenses/MIT)
[](https://github.com/freema/openclaw-mcp/pkgs/container/openclaw-mcp)
<a href="https://glama.ai/mcp/servers/@freema/openclaw-mcp">
<img width="380" height="200" src="https://glama.ai/mcp/servers/@freema/openclaw-mcp/badge" />
</a>
π¦ Model Context Protocol (MCP) server for [OpenClaw](https://github.com/openclaw/openclaw) AI assistant integration.
## Demo
<p align="center">
<img src="docs/assets/claude-ai-demo.gif" alt="OpenClaw MCP in Claude.ai" width="720" />
</p>
## Why I Built This
Hey! I created this MCP server because I didn't want to rely solely on messaging channels to communicate with OpenClaw. What really excites me is the ability to connect OpenClaw to the Claude web UI. Essentially, my chat can delegate tasks to my Claw bot, which then handles everything else β like spinning up Claude Code to fix issues for me.
Think of it as an AI assistant orchestrating another AI assistant. Pretty cool, right?
## Quick Start
### Docker (Recommended)
Pre-built images are published to GitHub Container Registry on every release.
```bash
docker pull ghcr.io/freema/openclaw-mcp:latest
```
Create a `docker-compose.yml`:
```yaml
services:
mcp-bridge:
image: ghcr.io/freema/openclaw-mcp:latest
container_name: openclaw-mcp
restart: unless-stopped
ports:
- "3000:3000"
environment:
- OPENCLAW_URL=http://host.docker.internal:18789
- OPENCLAW_GATEWAY_TOKEN=${OPENCLAW_GATEWAY_TOKEN}
- AUTH_ENABLED=true
- MCP_CLIENT_ID=openclaw
- MCP_CLIENT_SECRET=${MCP_CLIENT_SECRET}
- MCP_ISSUER_URL=${MCP_ISSUER_URL:-}
- CORS_ORIGINS=https://claude.ai
extra_hosts:
- "host.docker.internal:host-gateway"
read_only: true
security_opt:
- no-new-privileges
```
Generate secrets and start:
```bash
export MCP_CLIENT_SECRET=$(openssl rand -hex 32)
export OPENCLAW_GATEWAY_TOKEN=your-gateway-token
docker compose up -d
```
Then in Claude.ai add a custom MCP connector pointing to your server with `MCP_CLIENT_ID=openclaw` and your `MCP_CLIENT_SECRET`.
> **Tip:** Pin a specific version instead of `latest` for production: `ghcr.io/freema/openclaw-mcp:1.1.0`
### Local (Claude Desktop)
```bash
npx openclaw-mcp
```
Add to your Claude Desktop config:
```json
{
"mcpServers": {
"openclaw": {
"command": "npx",
"args": ["openclaw-mcp"],
"env": {
"OPENCLAW_URL": "http://127.0.0.1:18789",
"OPENCLAW_GATEWAY_TOKEN": "your-gateway-token"
}
}
}
}
```
### Remote (Claude.ai) without Docker
```bash
AUTH_ENABLED=true MCP_CLIENT_ID=openclaw MCP_CLIENT_SECRET=your-secret \
MCP_ISSUER_URL=https://mcp.your-domain.com \
CORS_ORIGINS=https://claude.ai OPENCLAW_GATEWAY_TOKEN=your-gateway-token \
npx openclaw-mcp --transport sse --port 3000
```
> **Important:** When running behind a reverse proxy (Caddy, nginx, etc.), you **must** set `MCP_ISSUER_URL` (or `--issuer-url`) to your public HTTPS URL. Without this, OAuth metadata will advertise `http://localhost:3000` and clients will fail to authenticate.
See [Installation Guide](docs/installation.md) for details.
## Architecture
```
βββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββ
β Your Server β
β β
β βββββββββββββββββββ βββββββββββββββββββββββββββ β
β β OpenClaw β β OpenClaw MCP β β
β β Gateway βββββββΊβ Bridge Server β β
β β :18789 β β :3000 β β
β β β β β β
β β OpenAI-compat β β - OAuth 2.1 auth β β
β β /v1/chat/... β β - CORS protection β β
β βββββββββββββββββββ β - Input validation β β
β ββββββββββββ¬βββββββββββββββ β
β β β
ββββββββββββββββββββββββββββββββββββββββΌβββββββββββββββββββββββββββ
β HTTPS + OAuth 2.1
βΌ
βββββββββββββββββββ
β Claude.ai β
β (MCP Client) β
βββββββββββββββββββ
```
## Available Tools
### Sync Tools
| Tool | Description |
|------|-------------|
| `openclaw_chat` | Send messages to OpenClaw and get responses |
| `openclaw_status` | Check OpenClaw gateway health |
### Async Tools (for long-running operations)
| Tool | Description |
|------|-------------|
| `openclaw_chat_async` | Queue a message, get task_id immediately |
| `openclaw_task_status` | Check task progress and get results |
| `openclaw_task_list` | List all tasks with filtering |
| `openclaw_task_cancel` | Cancel a pending task |
## Documentation
- [Installation](docs/installation.md) β Setup for Claude Desktop & Claude.ai
- [Configuration](docs/configuration.md) β Environment variables & options
- [Deployment](docs/deployment.md) β Docker & production setup
- [Threat Model](docs/threat-model.md) β What Claude can/can't trigger, trust boundaries & attack surfaces
- [Logging](docs/logging.md) β What gets logged, where, and what is never logged
- [Development](docs/development.md) β Contributing & adding tools
- [Security](SECURITY.md) β Security policy & best practices
## Security
β οΈ **Always enable authentication in production!**
```bash
# Generate secure client secret
export MCP_CLIENT_SECRET=$(openssl rand -hex 32)
# Run with auth enabled
AUTH_ENABLED=true MCP_CLIENT_ID=openclaw MCP_CLIENT_SECRET=$MCP_CLIENT_SECRET \
openclaw-mcp --transport sse
```
Configure CORS to restrict access:
```bash
CORS_ORIGINS=https://claude.ai,https://your-app.com
```
See [Configuration](docs/configuration.md) for all security options.
## Requirements
- Node.js β₯ 20
- OpenClaw gateway running with HTTP API enabled:
```json5
// openclaw.json
{ "gateway": { "http": { "endpoints": { "chatCompletions": { "enabled": true } } } } }
```
## License
MIT
## Author
Created by [TomΓ‘Ε‘ Grasl](https://www.tomasgrasl.cz/)
## Related Projects
- [OpenClaw](https://github.com/openclaw/openclaw) β The AI assistant this MCP connects to
- [MCP Specification](https://spec.modelcontextprotocol.io/) β Model Context Protocol docs