ChatGPT Web HWPX MCP
Optional integration with GitHub for supplementary document workflows; the README notes it must not become a dependency of core document creation/download.
Optional integration with Notion for supplementary document workflows; the README notes it must not become a dependency of core document creation/download.
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@ChatGPT Web HWPX MCPCall probe_read with message "ChatGPT Web P0 read test""
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
ChatGPT Web HWPX MCP
Remote Streamable-HTTP MCP for authenticated HWPX document creation, custody, validation, structured introspection, revision-safe editing, legacy HWP read/promotion, and fidelity testing from ChatGPT Web.
What this repository contains
The GitHub repository is intentionally runtime-facing.
It contains:
MCP server/runtime code
HWPX/HWP parsing and edit modules
durable OAuth/document-custody code
tests and CI workflows
required fixtures
Windows/Hancom fidelity harnesses
concise operational documentation
Historical phase ledgers, support packets, adjudication narratives, and long-form receipts are kept outside the runtime repository in the project Drive archive.
Related MCP server: notebooklm-mcp
Main capabilities
Evidence-gated rare-feature lanes and recurring UX guard (P3.34)
P3.34 does not silently promote every deferred native feature. It adds a machine-readable registry that separates feature ancestry, current authority, evidence requirements, and blocked semantics.
Production discovery surfaces:
get_rare_feature_registryevaluate_rare_feature_laneplan_rare_feature_promotionget_product_ux_regression_contract
A promotion plan is only emitted after semantic contract, structural fixture, native open/resave or render evidence, family regression, and primary file-delivery regression are all present. The plan itself never changes editing authority.
Known ambiguous semantics remain blocked even if callers claim all Boolean
evidence. In particular, smart hp:connectLine authoring remains preserve-only
because the available anchored native sample does not identify a reversible
geometry/transform rule. Static P3.29 managed edges remain the production
contract until stronger evidence exists.
The P3.33 user experience is now a recurring regression obligation rather than a one-off milestone. Every production phase, and every plugin/package or host UX change, must recheck OAuth discovery, validated revision-bound HWPX delivery, download-byte receipt matching, and periodic Hancom open/resave sanity. Host attachment-card rendering and in-place chat tool-catalog refresh remain separately observed host behaviors.
Download an HWPX from a natural-language request (P3.33)
The assistant translates the request into the existing P3.21 composition plan and
calls generate_document. The call creates, validates, exports and returns a named
.hwpx MCP resource link plus a clickable download link. get_document_delivery_contract
includes the plan schema and recovery contract. No new document or graph engine is used.
For existing documents, edit_document_and_deliver combines the existing atomic
text/paragraph edits with delivery. All other native editing families retain their
existing APIs; finish with deliver_document. Existing export_document also returns
the file/link, with its prior JSON receipt fields retained in structuredContent.
Downloads bind the document ID, revision, SHA-256 and expiry into a signed URL.
They read immutable revision bytes from encrypted Postgres, not mutable cache files.
Editing a document after export cannot silently change an already issued download.
Links expire after 60–900 seconds and document deletion/retention still applies.
Call deliver_document to renew a link; do not repeat an edit to repair delivery.
If a write commits but delivery fails, the result explicitly reports COMMITTED
and RETRY_DELIVERY_ONLY with the recoverable document ID and revision.
MCP resource delivery, a successful HTTP attachment download, ChatGPT's native attachment rendering, and Hancom open/resave are separate evidence gates. The server does not claim the latter two were observed. Clients without resource-link UI can present the returned Markdown download link. See the OpenAI plugin result contract for host result handling; no undocumented attachment metadata is invented.
Rare native features remain in an independent capability/evidence lane exposed by the delivery contract. Promotion requires native evidence, family regressions and the primary delivery/OAuth/Docker gates. Optional Notion/Drive/GitHub integrations must not become dependencies of ordinary document creation or download.
Skill-Workshop 2.4.4 routing used for this release: FORGE for bounded artifacts/tests,
TRACE for actual capability use and delivery evidence. The runtime has no dependency
on a developer's local .agents directory or external skills being installed.
Authenticated document lifecycle
OAuth-protected MCP transport
opaque document IDs
bounded HWPX ingestion
revision-safe mutation
durable revision lineage
signed export
semantic/structure/formatting receipts
ChatGPT-native HWPX creation
get_document_plan_contractexposes the declarative composition schema.validate_document_planchecks a plan without creating bytes.create_document_from_plancompiles an ordered block plan into one validated HWPX in a single atomic creation call.blank-document and owned-template append modes
ordered paragraph/heading/list/table/equation/picture/page-break/section-break blocks
preset document setup and formatting
block-id references such as
$block:introductionfor bookmarks, cross-references and annotationsdependency ordering for setup, formatting, references, native TOC and annotations
idempotent replay through
request_idprivate-candidate build: failed plans never partially commit a document
The language model remains responsible for deciding the document's content and structure. The MCP is the deterministic compiler/backend that turns that plan into HWPX.
HWPX editing
paragraphs and text
formatting and rich inline structure
fields, hyperlinks and bookmarks
tables
pictures/objects
equations
page-margin geometry with revision/CAS protection
paper size/orientation and section page setup
section creation/removal
header/footer stories and automatic page numbers
multi-column layout and page-number restart controls
native bullet/numbered lists and outline hierarchy
named-style application
table/picture/equation captions
bookmarks, page cross-references, and Hancom-native TOC fields
footnotes and endnotes
anchored review memos/comments
one- and two-level index marks
external hyperlinks and bookmark navigation
measured DATE/PATH/MAILMERGE/proofreading reference fields
bounded search/slice and bulk text plans
Legacy HWP 5.x
read-only native HWP parsing
common document IR
fidelity-graded extraction
provenance-preserving HWP→HWPX promotion where authority is sufficient
Hancom fidelity harness
The repository includes a Windows/Hancom capture lane for renderer evidence.
Current harness components include:
self-materialized near-wrap fixture packs
Hancom PDF export automation
controlled PDF rasterization and line-box extraction
artifact custody receipts
positive-sensitivity calibration ladders
font-file SHA-256 custody
cross-version environment isolation
cross-version boundary transport adjudication
Fidelity authority is layered. Renderer-independent HWPX structural evidence is kept separate from renderer evidence. P3.16 established version-indexed exact authority for Hancom 13.0.0.3622 under the sealed environment; global cross-version promotion remains fail-closed until a second Hancom version is captured under the same non-renderer environment.
P3.17-P3.22 turn that evidence into product behavior:
get_production_fidelity_contractexposes the current edit-class authority envelope.assess_edit_plan_fidelityclassifies a planned edit before mutation.get_document_fidelity_profilecomposes document-specific structural receipts with the production contract.get_page_geometryandapply_page_geometryexpose revision-safe page-margin editing.get_document_setupandapply_document_setupexpose atomic paper/orientation, header/footer, page-number, section, and multi-column editing.get_structured_publishingandapply_structured_publishingexpose native lists, named styles, captions, bookmarks, page cross-references, TOC fields, and outline hierarchy.Native TOC/CROSSREF authoring delegates to
python-hwpx.tools.toc_author, whose contract is based on Hancom-authored gold documents; this repository owns the transaction, locator, custody, and regression layers rather than duplicating that field format.get_annotation_apparatusandapply_annotation_apparatusexpose footnotes/endnotes, memos, index marks, hyperlinks/bookmarks, and measured rich reference fields for academic/report publishing.Annotation authoring delegates to public
python-hwpxnote/reference/field APIs where available; unsupported field grammars remain fail-closed rather than guessed.create_document_from_planis the high-level ChatGPT-native composition surface: the LLM supplies a declarative block plan and the MCP resolves block identities, dependency order, native objects, publishing fields, validation and atomic commit.get_review_workflowandapply_review_workflowexpose native tracked insert/delete/replace, CLICKHERE form fields, check boxes, highlights/proofreading marks, and document metadata through the same revision/CAS transaction boundary.Review support is deliberately fail-closed: tracked-change accept/reject, tracking-only toggles/protection passwords, radio/command-button authoring, and document-history-part authoring are not guessed.
get_advanced_tablesandapply_advanced_table_editsre-promote the earlier P2.7/P2.8 table primitives into a product layer with merge/split, row operations, width/height, borders/fills, vertical alignment, repeating headers, page-break state, and advanced-layout receipts. Arbitrary column insertion remains evidence-gated.get_story_layerandapply_story_layerre-promote the P3.18 header/footer/page-number primitives into section-scoped story ownership: BOTH/EVEN/ODD variants, first-page visibility policy, variant page numbering, and section-boundary story configuration.P3.24 does not invent a FIRST header/footer story. HWPX story variants remain BOTH/EVEN/ODD; first-page behavior is expressed through section visibility (
hideFirstHeader,hideFirstFooter,hideFirstPageNum).CI materializes document-level regression corpora for general editing, document setup, structured publishing, annotation apparatus, one-shot composition, review workflow, advanced tables, and section stories.
Local run
Install runtime dependencies:
pip install -r requirements.txtRun the authenticated server with the required deployment secrets/environment variables:
python server_p2.pyThe canonical hosted service currently retains the historical Render hostname:
https://chatgpt-web-hwpx-mcp-p0.onrender.comSecrets are deployment-only and are not stored in this repository.
Windows/Hancom replay
Native Hancom replay is an evidence batch, not a requirement for every feature commit. Normal feature development and regression run in Python/Linux CI; Windows PowerShell is used only when a group of edit classes is ready for native-render certification or when renderer-specific behavior must be diagnosed.
The completed P3.16 single-version stability runner is archived in the project Drive rather than kept on the active runtime surface. Its promoted authority remains recorded in the canonical Drive receipt.
Cross-version reopening remains available through the P3.15 runner:
powershell -ExecutionPolicy Bypass -File .\scripts\p315_run_cross_version_replay.ps1The runner discovers installed Hwp.exe versions, freezes the same fixture bytes for both trials, cryptographically seals Windows font files before and after each replay, fresh-renders both Hancom versions, compares boundary transport, and emits a cross-version evidence ZIP.
If a second installation is not auto-detected, provide it explicitly:
powershell -ExecutionPolicy Bypass -File .\scripts\p315_run_cross_version_replay.ps1 -SecondHancomExe "C:\path\to\other\Hwp.exe"Promotion remains closed unless the two trials have distinct Hancom versions/executable hashes while OS, machine, locale, DPI, rasterizer, fixture set, and cryptographic font-file custody all match.
CI
The main lifecycle workflow compiles and tests the active HWPX/HWP runtime plus the renderer-fidelity adjudicators.
The fidelity harness does not simulate Hancom world contact in Linux CI. Real Hancom renderer authority comes only from sealed Windows capture evidence.
Repository-record policy
Keep GitHub product-facing.
Do not add new phase-specific *_TEST_LEDGER.md files, historical support packets, or long-form phase diaries to this repository. Store those in the project Drive archive instead.
Raw world-contact artifacts should be preserved before adjudication.
This server cannot be deployed
Maintenance
Related MCP Connectors
Remote streamable-HTTP MCP server running on a single Cloudflare Worker. Your assistant gets live Airbnb, Amazon, Booking.com, Google Flights, Maps and Reddit data, social search on X, Instagram and TikTok, the Meta Ad Library, and image/video generation without any keys. Connect your own accounts to let it send WhatsApp or Telegram messages, work an IMAP inbox, manage Meta Ads campaigns and publish to X and LinkedIn. OAuth 2.1 with PKCE; stored credentials are AES-256-GCM encrypted.
Team docs served to AI agents over MCP - search, Markdown reads, version pinning, read audit.
Generate contextual prompts and reusable agent skills, evaluate prompts with the 16-dimension Prompt Score, and manage saved work in PromptDrive. Twelve MCP tools also provide authorized access to private Memory for source-grounded answers. Connect over Streamable HTTP using OAuth 2.1 and PKCE. Generation consumes account quota and automatically saves successful results; Memory access follows account permissions and plan limits.
Hosted MCP endpoint with realistic fake data for prototyping agents. 12 tools, no setup.
Related MCP Servers
- AlicenseNot gradedqualityDmaintenanceEnables AI assistants to read, search, create, and edit Quip documents through the MCP protocol.5ISC
- AlicenseBqualityAmaintenanceMCP server that provides ~39 tools to interact with Google NotebookLM's internal API, enabling notebook management, source addition, chat queries, and Studio artifact generation through stdio, HTTP, and SSE transports.39MIT
- AlicenseNot gradedqualityBmaintenanceEnables AI agents to interact with WordPress sites over MCP, providing read-only tools for AEO/GEO readiness, AI visibility, traffic, request logs, bot identification, page checks, and schema/markdown previews, plus opt-in write tools to draft, edit, and publish posts with permission checks and auditing.2GPL 2.0
- AlicenseNot gradedqualityBmaintenanceEnables ChatGPT Pro web to securely read workspace files, git diffs, and test records through OAuth-protected read-only MCP tools, so it can plan and review while Codex handles execution without uploading the repository.MIT