Umami MCP
Server Configuration
Describes the environment variables required to run the server.
| Name | Required | Description | Default |
|---|---|---|---|
| MCP_HOST | No | HTTP bind address. Default is 127.0.0.1. | 127.0.0.1 |
| MCP_PORT | No | HTTP port. Default is 3000. | 3000 |
| UMAMI_TOKEN | No | Pre-issued self-hosted token. Used with UMAMI_BASE_URL for self-hosted token authentication. | |
| MCP_TRANSPORT | No | Transport mode: stdio, http, or streamable-http. Default is stdio. | stdio |
| UMAMI_API_KEY | No | Umami Cloud API key. Use for Umami Cloud authentication. | |
| UMAMI_BASE_URL | No | Umami root or full API base URL. Required for self-hosted authentication modes. | |
| UMAMI_PASSWORD | No | Self-hosted login password. Used with UMAMI_BASE_URL and UMAMI_USERNAME for self-hosted login authentication. | |
| UMAMI_USERNAME | No | Self-hosted login username. Used with UMAMI_BASE_URL and UMAMI_PASSWORD for self-hosted login authentication. | |
| MCP_BEARER_TOKEN | No | Protects the HTTP MCP endpoint. Required for non-loopback HTTP binds. | |
| UMAMI_TIMEOUT_MS | No | Upstream request timeout in milliseconds, between 100 and 120000. | 15000 |
| MCP_ALLOWED_HOSTS | No | Comma-separated hostnames for non-loopback HTTP. Required for non-loopback HTTP binds. | |
| MCP_ALLOWED_ORIGINS | No | Comma-separated exact browser origins. Optional. | |
| UMAMI_TWO_FACTOR_CODE | No | Current six-digit two-factor code for one-off login. Optional for self-hosted login mode. Configure only one two-factor variable (this or UMAMI_TWO_FACTOR_SECRET). | |
| UMAMI_TWO_FACTOR_SECRET | No | Base32 setup seed for TOTP two-factor authentication. Optional for self-hosted login mode. Configure only one two-factor variable (this or UMAMI_TWO_FACTOR_CODE). | |
| UMAMI_DEFAULT_WEBSITE_ID | No | Optional default website UUID to avoid site resolution for most calls. | |
| UMAMI_ENABLE_WRITE_TOOLS | No | Set to true to register non-destructive mutation tools. Default is false. | false |
| UMAMI_MAX_RESPONSE_BYTES | No | Maximum upstream response size in bytes, between 1 KB and 10 MB. | 512000 |
| UMAMI_ALLOW_INSECURE_HTTP | No | Set to true to allow non-local plain HTTP Umami URLs for an explicitly trusted private network only. Default is false. | |
| UMAMI_ENABLE_DESTRUCTIVE_TOOLS | No | Set to true to register reset/delete tools; requires UMAMI_ENABLE_WRITE_TOOLS=true. Default is false. | false |
Instructions
Guidance the server publishes about itself, which clients place ahead of the tool catalog so the model reads it before choosing anything.
This server publishes no instructions, or was last inspected before Glama recorded them.
Capabilities
Server capabilities have not been inspected yet.
Tools
Functions exposed to the LLM to take actions
| Name | Description |
|---|---|
No tools | |
Prompts
Interactive templates invoked by user choice
| Name | Description |
|---|---|
No prompts | |
Resources
Contextual data attached and managed by the client
| Name | Description |
|---|---|
No resources | |
This server cannot be deployed
Maintenance
ActivityMaintained
ResponsivenessNo issues