bitbucket-mcp
Provides tools to interact with Bitbucket Cloud repositories and pull requests, including listing repositories, branches, pull requests, creating and updating pull requests, viewing diffs, comments, activity, and comparing branches.
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@bitbucket-mcplist my open pull requests"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
bitbucket-mcp
An MCP (Model Context Protocol) server that exposes Bitbucket Cloud repository and pull request data as tools consumable by any MCP-compatible client (Claude, Cursor, etc.).
This is a port of the original Go stdio server (bradlycarpenter/bitbucket-mcp) to a Hono app running on Cloudflare Workers, built with Effect.
How it works
The worker serves the MCP streamable HTTP transport at POST /:workspace/mcp via @hono/mcp.
It is fully stateless and stores no credentials of its own: each caller creates their own
Bitbucket API token, sends it on every request, and the worker relays the call to the Bitbucket
API on their behalf. Every action is therefore attributed to the caller's own Bitbucket account.
Everything below the transport is Effect:
src/bitbucket/config.ts—BitbucketConfigservice, built per request from the caller's workspace andAuthorizationheadersrc/bitbucket/client.ts—Bitbucketservice wrapping the Bitbucket Cloud REST API onHttpClient, returning typed errorssrc/bitbucket/domain.ts—Schemadefinitions used to decode (and trim) API responsessrc/mcp/tool.ts— tool definitions whose parameters areSchemas; JSON Schema for the MCP tool list is derived from themsrc/index.ts— aManagedRuntimeper request bridges Effect into the Hono handler
Related MCP server: bitbucket-mcp-server
Tools
Tool | Description |
| List all repositories in the configured workspace |
| List branches for a repository |
| List pull requests, optionally filtered by state |
| Get a specific pull request by ID |
| Create a new pull request |
| Update a pull request title and/or description |
| List commits on a pull request |
| List all comments on a pull request |
| Full activity stream for a pull request |
| Unified diff for a pull request |
| File-level change summary for a pull request |
| Unified diff between two branches |
| File-level diffstat between two branches |
| Commits in source branch not in destination branch |
Setup page
GET / serves a setup page: enter your workspace, email and API token, and it generates the
claude mcp add command (and an equivalent JSON config) ready to copy. It also lists every tool
with its arguments, rendered from the same tools array the server registers, so it cannot drift.
The form is inert — there is no submit handler and no fetch. The base64 encoding happens in
btoa in the browser, so the token only ever leaves the machine on the MCP requests your client
makes afterwards.
Request contract
The worker stores no credentials. Every request carries its own identity:
URL |
|
Header |
|
The Authorization header is forwarded verbatim to api.bitbucket.org; Bearer is accepted too
if you are using an OAuth access token. A request without credentials gets a 401, and a
workspace slug outside [A-Za-z0-9][A-Za-z0-9_.-]* gets a 400.
Because callers bring their own tokens, an unauthenticated request can do nothing, and the worker never sees more access than the token it was handed. Do not add request logging that captures headers — the credential is on every call.
Restricting which workspaces are served
Variable | Required | Purpose |
| no | Comma-separated workspace slugs. Anything else gets a |
Set this on any deployment you don't want used as a general-purpose Bitbucket relay. Requests for
other workspaces are refused before any credential is used, and the response is a bare 404 so it
doesn't reveal which workspaces the deployment serves. Matching ignores case.
Leaving it unset serves every workspace. That exposes no data — a caller still needs a token valid for whichever workspace they ask for — but it does let strangers spend your request quota.
npx wrangler secret put ALLOWED_WORKSPACESSet it as a secret rather than a vars entry if your repository is public, so the slug isn't
committed.
Creating an API token
Go to https://id.atlassian.com/manage-profile/security/api-tokens
Click Create API token, label it, and copy the token — it is not shown again
Base64-encode it together with your Atlassian account email:
printf 'you@yourcompany.com:<api-token>' | base64Required scopes:
Scope | Purpose |
| List repositories and branches |
| Read pull requests, commits, diffs, comments, and activity |
| Create and update pull requests |
Local development
pnpm install
pnpm devThe endpoint is http://localhost:5173/<workspace-slug>/mcp.
Deploying
pnpm deployMCP client configuration
{
"mcpServers": {
"bitbucket": {
"type": "http",
"url": "https://<your-worker>.workers.dev/<workspace-slug>/mcp",
"headers": {
"Authorization": "Basic <base64 of email:api-token>"
}
}
}
}Or with the Claude Code CLI:
claude mcp add --transport http bitbucket \
https://<your-worker>.workers.dev/<workspace-slug>/mcp \
--header "Authorization: Basic <base64 of email:api-token>"This server cannot be deployed
Maintenance
Related MCP Connectors
Governed MCP gateway: one endpoint for your tools, with credential custody and audit log.
GitHub MCP — wraps the GitHub public REST API (no auth required for public endpoints)
OAuth-protected, read-only-by-default MCP server for provenance-labeled QuillCaddie project memory.
GitLab MCP — wraps the GitLab REST API v4 (BYO API key)
Related MCP Servers
- AlicenseNot gradedqualityDmaintenanceA read-only MCP server for the Bitbucket Cloud REST API v2.0 that enables AI assistants to browse workspaces, repositories, and review pull requests.38 npmISC
- AlicenseBqualityDmaintenanceMCP server for Bitbucket Cloud that exposes Pull Request operations as tools for Claude and other MCP clients.1438 npmISC
- AlicenseBqualityBmaintenanceMCP server for Bitbucket Server integration, enabling project, repository, pull request, source code, branch, and code review operations via the Bitbucket Server APIs.2712 npmMIT
- FlicenseAqualityCmaintenanceEnables MCP-compatible clients to read repositories and source code from Bitbucket. Provides tools for listing workspaces and repositories, browsing directories, reading files, searching code, and inspecting commits and pull requests.12-