kimi-tools-mcp
Provides access to arXiv as a data source, letting agents query one of the 25+ managed professional data sources behind Kimi's kimi-datasource for academic preprints and research papers.
Provides access to Google Scholar as a data source, letting agents search scholarly literature through one of the managed data sources behind Kimi's kimi-datasource.
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@kimi-tools-mcpfind Tesla's latest 10-K on SEC EDGAR and summarize it"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
kimi-tools-mcp
Use Kimi Code's official managed tools — web search, URL fetch, and the
25+ professional data sources behind Kimi's kimi-datasource (Wind, SEC
EDGAR, S&P Capital IQ, World Bank, IMF, FRED, Tianyancha, arXiv, Google
Scholar, Chinese law & standards, WHO/FAO/OECD, Xinhua, Caixin, …) — from
any MCP-capable agent, signed in with your own Kimi account.
This is an independent, MIT-licensed MCP bridge. It speaks the same managed
endpoints the official Kimi Code clients use (POST /coding/v1/search,
/fetch, /tools), through the same OAuth device-authorization flow, with
the same public OAuth client id that identifies the Kimi Code product
family. It is not affiliated with Moonshot AI.
Requires a paid Kimi membership. These tools are paid subscription features: every call is served by — and counted against — the signed-in user's own Kimi Code membership (Plus / Moderato or above). There is no free tier here; you must sign in with your own paid account.
What it gives your agent
Tool | What it does |
| Managed web search: |
| Managed page extraction: a URL → main text as markdown. |
| API documentation for one data source (same entry point as the official plugin). |
| One call into a data source ( |
The data-source catalog behind the last two tools includes:
stock_finance_data, yahoo_finance, world_bank_open_data, tianyancha,
arxiv, scholar, yuandian_law, wind, imf, gildata, sec_edgar,
sp_data, china_nda, china_nbs, china_standards, who, fao,
unsd, ecb, eurostat, unicef, oecd, fred, xhcj, caixin.
Related MCP server: kimi-code-mcp
Requirements
Node.js ≥ 18.17 (no dependencies;
npxruns it directly).A paid Kimi membership that includes Kimi Code (Plus / Moderato or above). These are paid subscription features of your own account: every tool call is served by — and counted against — your membership's quota, so the tools only work after you sign in with your own account. Free-tier accounts and other people's credentials won't work.
Sign in (once per machine)
npx -y kimi-tools-mcp loginThis starts the OAuth device flow: a browser tab opens
kimi.com/code/authorize_device, you approve with your own Kimi account,
and the CLI stores the resulting tokens locally. Done.
npx -y kimi-tools-mcp status # check the sign-in (never prints tokens)
npx -y kimi-tools-mcp logout # delete the local sign-in
npx -y kimi-tools-mcp login --region global # use auth.kimi.ai instead of auth.kimi.comAdd it to your agent
magpie
magpie library mcp add kimi-tools npx -y kimi-tools-mcp
magpie library sync(Note: magpie library mcp add takes the command directly — no --
separator, unlike codex mcp add / pi mcp add.)
Then sign in once with npx -y kimi-tools-mcp login. Every agent you gave
the server to (magpie's Library page or agents=... selects them) can call
the tools, sharing your sign-in — agents never see your tokens.
Codex (OpenAI)
codex mcp add kimi-tools -- npx -y kimi-tools-mcp
codex mcp login kimi-tools # opens the browser device flow(codex mcp login runs the server process; this bridge detects it and runs
the same device flow as npx kimi-tools-mcp login. Either command works —
they share the same credential store.)
pi
pi mcp add kimi-tools -- npx -y kimi-tools-mcp
pi mcp login kimi-toolsClaude Code
claude mcp add kimi-tools -- npx -y kimi-tools-mcpthen run npx -y kimi-tools-mcp login once in a terminal.
OpenCode
Add to ~/.config/opencode/opencode.json (or .opencode/opencode.json):
{
"mcp": {
"kimi-tools": {
"type": "local",
"command": ["npx", "-y", "kimi-tools-mcp"],
"enabled": true
}
}
}Cursor · VS Code · any other MCP host
Register a stdio MCP server whose command is npx with arguments
["-y", "kimi-tools-mcp"], then run npx -y kimi-tools-mcp login once.
Scope, terms and responsibilities
Please read this before using the bridge.
What this software is. A client-side MCP bridge: it forwards tool calls from your agent to Kimi's managed endpoints, authenticated with the OAuth tokens you issued to your own Kimi account on this machine. It runs entirely on your computer, talks only to Kimi's own servers, and has no server-side component of its own.
What it is not. It is not a way to share, resell, or multiply access. Every call consumes the quota of the signed-in user's own membership, exactly as if the official client had made it. Do not use it to give other people access to your membership, to build a paid or free service on top of Kimi Code, or to drive non-interactive batch/automation workloads.
Terms of use. Kimi's Community Guidelines allow using your membership from third-party tools, and ask that you:
use it for personal, interactive work only (no scripted batch execution, no data pipelines);
not resell accounts, API access, or repackage Kimi Code as a service;
not spoof or alter client identity.
This bridge is designed to stay inside those rules: it identifies itself
truthfully (User-Agent: kimi-tools-mcp/<version>,
X-Msh-Platform: kimi-tools-mcp — it does not impersonate an official
client), it requires every user to sign in with their own account, and it
contains no scheduling, batching, caching-proxy or account-pooling logic.
You are responsible for how you use it; the authors assume no liability
for account actions Kimi may take in response to misuse (see the MIT
license). If Kimi's terms change, the terms win — stop using the bridge
where it conflicts.
Credential storage & security
Location.
$KIMI_TOOLS_HOME, else$XDG_CONFIG_HOME/kimi-tools, else~/.config/kimi-tools.Permissions. The directory is created
0700;credentials.jsonanddevice_idare written0600(owner read/write only). Writes are atomic (temporary file + rename), so a crash cannot corrupt your tokens.Contents. OAuth
access_token+refresh_token, expiry, region and the endpoints — nothing else. No usage data, no telemetry, no analytics. The only network traffic is to Kimi's own OAuth and API hosts.Token lifecycle. Access tokens are short-lived; the bridge refreshes them automatically (at most one in-flight refresh per process) and persists the rotated pair. A 401 triggers exactly one forced refresh and retry; if that fails you are told to sign in again.
Hygiene. Tokens are never printed, logged, written to project folders, or included in tool outputs/error text.
logout(or deleting the directory) removes every trace from the machine.Optional OS keychain. Set
KIMI_TOOLS_STORE=keychainto move the long-lived refresh token out ofcredentials.jsonand into the OS keychain (macOS Keychain viasecurity; Linux libsecret viasecret-tool). Off by default for zero-dependency portability — the short-lived access token and non-secret metadata still live in the file. Sign in (or re-login) once with the variable set and the token migrates; unset it and sign in again to move back. If the keychain is unavailable the bridge fails loudly with instructions instead of silently writing the secret to disk.Your part. Treat
credentials.jsonlike a password: don't copy it into repos, backups you share, or other people's machines. Signing in on a machine registers a device on your Kimi account page; remove devices you no longer use from that page.
How it works (for reviewers)
Zero dependencies, ~700 lines, all in src/:
File | Role |
| newline-delimited JSON-RPC 2.0 MCP stdio server ( |
| the four tool schemas (same shapes as the official |
| RFC 8628 device flow + refresh, matching the official clients |
| permission-safe credential store + refresh de-duplication |
| optional OS-keychain backend for the refresh token |
|
|
| truthful |
Run the tests with npm test (node:test, no network).
Releasing (maintainers)
Pushing a version tag runs .github/workflows/release.yml: it runs the
tests, verifies the tag matches package.json, creates the GitHub Release
(auto-generated notes), then publishes to npm with
trusted publishing (OIDC — no
npm token, no OTP, provenance attestation included).
npm version patch # or minor / major — bumps, commits, tags vX.Y.Z
git push origin main --follow-tagsOne-time setup, in addition to the workflow file:
npmjs.com → package
kimi-tools-mcp→ Settings → Trusted publishing → add GitHub Actions: ownerObsidianArch02, repokimi-tools-mcp, workflow filenamerelease.yml(no environment).
FAQ
Does this share my quota with other people? No. Only processes running as your OS user on this machine can read the credential file, and every call counts against your own membership.
Can I use it from several agents at once? Yes — that's the point. Codex, pi, magpie-routed agents etc. can all call the same local server definition; they share your sign-in, not your tokens.
What happens when Kimi rotates endpoints?
KIMI_TOOLS_BASE_URL / KIMI_TOOLS_OAUTH_HOST override the defaults
without a code change; region global switches to the kimi.ai hosts.
Is this affiliated with Moonshot AI / Kimi? No. It uses the same public OAuth client and managed endpoints as the official clients, the same way other third-party integrations do.
This server cannot be deployed
Maintenance
Related MCP Connectors
Docs: https://docs.keenable.ai/mcp-server Keenable is a free, remote MCP server that gives agents access to the web index. Search the web with ranked results and date/site filters, then fetch any indexed page as clean markdown. Works out of the box with no account or API key.
Your agent needs live data — a competitor's traffic, who to contact there, what people are saying, what Google and ChatGPT answer about you, a company's filings. Normally that is six vendor accounts, six sets of keys and six SDKs. This is one URL. **What you can ask for** • "How much traffic does stripe.com get, where does it come from, and who competes for the same keywords?" • "Find 20 Series-B fintech companies in Germany and the heads of marketing there, with emails." • "Does ChatGPT mention our brand when someone asks for the best CRM — and what does it cite?" • "What is X saying about $NVDA today, and what did the stock actually do?" • "Search the web for this, then scrape the three best pages into markdown." **How to use it** Point any MCP client at https://mcp.aisa.one/mcp and sign in with OAuth — there is no key to create or paste. Then just ask: the agent calls search to find the right operation and use to run it. **Why this rather than the source** 26 sources behind one account and one bill — DataForSEO, Semrush, Ahrefs, Similarweb, Apollo, X/Twitter, Instagram, Reddit, Pinterest, YouTube, Tavily, Exa, Perplexity, Firecrawl, CoinGecko, Kalshi, Polymarket, AgentMail and more, 580+ operations. tools/list returns five tools, not 580, so the introduction does not eat your context window. **What it costs** Finding and inspecting an operation is free. Running one is billed per call at API prices, with no seat and no monthly minimum, and every call takes max_price_usd so an agent cannot overspend by accident. **Where else it reaches** One slice at a time: https://mcp.aisa.one/seo/mcp · /finance/mcp · /social/mcp · /search/mcp · /sales/mcp · /mail/mcp · /gtm/mcp, or a single provider like /twitter-api/mcp. Same account, fewer tools listed, and search still reaches everything. Full list at https://mcp.aisa.one/servers
Free web search for AI agents. No API key required. Hosted MCP in active development.
MCP server for Firecrawl — web search, scraping, and biomedical/arXiv paper search.
Related MCP Servers
- FlicenseNot gradedqualityDmaintenanceWraps the Kimi Coding Search and Fetch APIs into MCP tools for web searching and content retrieval. It enables LLMs to perform targeted searches and crawl web pages using standardized interfaces.1-
- AlicenseBqualityDmaintenanceMCP server wrapping Kimi Code CLI (kimi-k2.5) to provide tools for filesystem, shell, web, and agent operations.1414 npm7MIT
- AlicenseNot gradedqualityDmaintenanceMCP server that provides file operations and Moonshot API-powered tools (reasoning, code review, testing, research, web search, agent) for Kimi K2.5, requiring only a Moonshot API key.930 npm1MIT
- FlicenseNot gradedqualityCmaintenanceBridges MiniMax's native web search server tool to Kimi Code, enabling the agent to perform real-time web searches through an MCP tool.-