ExecuFunction MCP Server
Click on "Install Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@ExecuFunction MCP Servershow my incomplete tasks"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
Siftable MCP Server
A Model Context Protocol server that exposes Siftable tools to IDE clients like Cursor, Claude Desktop, and VS Code.
ExecuFunction 0.4.0.0 hosted compatibility
The npm package is 1.2.42; the hosted and source projection profile is
1.33.0. Projection 1.33.0 recognizes natural-language source-search intent
and returns the retired capability card with local recovery rather than routing
the request to curated code memories. Projection 1.32.0 added an explicit no_matches discovery outcome,
rejects generic-operation and weak-prefix-only capability matches, preserves
canonical compound-intent matches, and captures HTTP status classes in failure
receipts. Projection 1.31.0 added governed lead-discovery scope requirements.
Projection 1.29.0 added managed
work-lease sessions for hosted clients while keeping claim tokens server-side.
Projection 1.28.0 added four governed
lead-discovery tools and five app-equivalent person/organization enrichment tools.
Lead discovery is disabled by default. When enabled, it requires separately
granted lead_discovery:read or lead_discovery:write scopes; mcp:* does
not imply either scope. Hosted baseline catalogs therefore omit company search
until request_capability approval and a catalog refresh expose the hosted-capable
tool. A company search is bounded to one paid Crustdata
request, shows a maximum charge before dispatch, settles the actual provider
credits, and saves results only as review candidates. Canonical CRM records
are created through lead_discovery_import_plan_create followed by the
existing crm_import_plan_approve and crm_import_plan_apply review gates.
Person enrichment returns stored profile and fact proposals. Apply accepts only proposal field names and fact IDs rehydrated from the completed run; it does not accept free-form replacements and is not retry-safe. Organization enrichment remains the app's paid preview-only flow and cannot apply canonical CRM changes.
Related MCP server: Personal Task Manager MCP
1.2.42 compatibility note
Version 1.2.42 closes the publication-readiness audit. Natural-language source search discovery returns the canonical retired/local-only recovery card, while curated code-memory discovery remains distinct. The hosted setup guide now gives exact ChatGPT and Codex configuration steps.
1.2.41 compatibility note
Version 1.2.41 closes two hosted audit failures. Dataset routes reject malformed
dataset UUIDs at the HTTP boundary, and MCP receipts preserve the resulting 400
as bad_request. find_capability now requires a direct domain signal plus an
aligned operation; unrelated intent returns queryOutcome: no_matches with
empty capability lanes and rephrase guidance. Exact tool names, removed-tool
cards, and virtual orientation tools bypass semantic rejection.
1.2.40 compatibility note
Version 1.2.40 addresses the third round of live agent QA (the 2026-08-22 hosted audit).
claimabilityis honest about lifecycle and lease state, not only dependencies:stateis one ofready,waiting,dependency_failed,leased,lease_expired,blocked,in_review,human_review_gate, orterminal, withclaimable,reason, andnextActionalongsideblockedBy. Claimed, running, cancelled, and done work no longer advertiseready;claimableis the authoritative boolean (alease_expireditem and a legacy-convertedblockedplaceholder whose predecessors are satisfied areclaimable: truebecause an explicit claim recovers them). Claiming a non-claimable item by ID returns a 409 that names the state (lease_active,work_item_terminal, …) instead ofnot_found. The CLI and TUI gate onclaimablewhen the server provides it.agent_work_listandwork_item_listhide done/failed/cancelled items by default (includeTerminal: trueor an explicitstatusshows them), print their ordering rule, and document that higherqueueRanksorts earlier,0is the default, and negative ranks are deferred (they sort after 0).work_item_heartbeatsays that a heartbeat on claimed work starts it (claimed → running, same aswork_item_start);resultSummarypassed to start, heartbeat, or release is now persisted instead of silently dropped.task_getlists the executable work joined to the task (first ten, with a marker when more exist; "none yet" with thework_item_createhint when empty) when the connection can read work items; a missing scope keeps the capability hint and an upstream failure is reported as such (single attempt, no retry).entity_graphreports each record's own status where it has one (a completed task iscompleted, notactive; notes/datasets active/archived; connected projects now carry their name and status instead of[untitled entity]/active) — migration V400 fixes the SQL function that labelled every non-note nodeactiveand never joined projects. Other node types keep their type-specific label in that slot (organization industry, person relationship, news published date).note_searchranks full-text matches (websearch syntax) ahead of semantic neighbours, then literal-substring fallbacks, instead of sorting raw scores on different scales; scores are comparable within a source, not across.object_finddistinguishes an unknown object type key from a known type with zero records.Code-memory listings label a
confirmedfact without chunk evidence asnot_recorded (confirmed; no source-chunk evidence recorded)so the evidence gap is visible without downgrading human-admitted facts.
Projection 1.25.0 keeps hosted OAuth catalogs limited to tools callable with
the current token. find_capability still discovers tools that need scope
elevation, and those tools appear after authorization and a catalog refresh.
The server initialization guidance is also shorter so clients do not repeat a
large instruction block across tool descriptions.
1.2.39 compatibility note
Version 1.2.39 addresses the second round of live agent QA.
work_item_requeuealso returns a claimed/running item whose lease has expired to the queue, without the original claim token; active leases are still never requeued.work_item_listlabels expired leases inline ([claimed · lease expired <time>]), andwork_item_getprefixes its JSON with aLease: expired <time> — …header saying the item is claimable as-is or requeueable, instead of showing plainclaimed.work_item_revision_history/work_item_verification_historysay so in a sentence when there is nothing recorded instead of printing[].object_findnames the object type it searched and points atschema_introspect/people_search/organization_searchwhen nothing matches, instead of a bare "No objects found."schema_introspectsummarises datasets (title, ID, rows, field count) by default;includeDatasetFields: truerestores the per-field dump.dataset_quality_checkcounts blank strings as missing values and returns a versioned structured result. Frequently repeated values are observations; they are only quality violations when a field is declared unique.
Projection 1.22.0 records the schema_introspect input schema and the tool
description changes.
1.2.38 compatibility note
Version 1.2.38 makes the agent path to work authority direct instead of a scavenger hunt (decision 2026-08-20, after live use from Grok and Claude).
Hosted OAuth first connect (no
scopeparameter, orscopes_supportedcopied by the client) is issuedmcp:* work:read work:writebehind the consent screen. Vault and AI scopes remain step-up/CLI-only.Tools the connection could acquire through step-up are presented on
tools/list; calling one before approval returns an in-band tool error carrying the sameelevationlink (or CLI/PAT guidance). The HTTP 403insufficient_scopechallenge is now issued only forrequest_capabilityinchallengemode.Elevation links live for one hour (was ten minutes); after an approval the server publishes
tools/list_changedso subscribed clients refresh, and the guidance tells the agent to refresh the tool list or restart the connector if the tools are still hidden.find_capability,request_capability, andcontext_currentrender a compact text summary (name, availability, next step) instead of the full JSON; the complete projections remain instructuredContent.task_getand the task tool descriptions no longer claimwork:readis missing; they point atwork_item_listwithtaskIdand defer torequest_capabilityonly when the tool is not callable."Stable handles" in generic list text now name the field each ID came from and group repeats, so a
projectIdshared by twenty rows reads as one project reference rather than twenty new records.
Projection 1.21.0 records the presented-tool and description changes. Reconnect hosted MCP clients after upgrade to refresh the projection 1.21.0 schemas.
1.2.37 compatibility note
Version 1.2.37 makes scope step-up reachable from the agent's seat on hosted OAuth connections instead of depending on the client re-running OAuth.
request_capability(inspect) now returnselevation— a short-lived (ten-minute), owner-bound approval link for the connected OAuth token, replayable by the owner within its window — on Streamable HTTP whenever the missing scopes are elevatable (work:read,work:write) and the server suppliedcapabilityAcquisition.createElevationGrant. The user opens the link, re-authenticates, approves on the first-party consent screen, and the existing token is widened in place; the agent retries the tool without reconnecting.recommendedNextAction.typeisopen_elevation_urlin that case andreconnectRequiredisfalse. The reconnect guidance remains the fallback for connections that cannot be elevated.find_capability,context_current, and direct gated-tool rejections point at that path instead of at a client reconnect.Hosted OAuth now accepts an explicit
work:writerequest (consent-gated); in 1.2.37 the authorize default when a client omitsscopewasmcp:* work:readandscopes_supportedadvertised only that pair (both widened to the full work family in 1.2.38).
Projection 1.20.0 records the request_capability output schema and
description change. Reconnect hosted MCP clients after upgrade to refresh the
projection 1.20.0 schemas.
1.2.36 compatibility note
Version 1.2.36 prepares the hosted endpoint for ChatGPT plugin-directory publication without changing the stdio tool surface.
upload_documentno longer advertisesfilePathon the hosted profile: the hosted schema requires inlinecontentandfilename, and afilePathargument is rejected with a normalizedbad_requestfailure at the MCP boundary, atexecuteTool, and insideSiftClientunless the client was constructed withallowLocalFiles. Only the local stdio entrypoint sets that flag; hosted and remote clients can never reach the server's filesystem.Hosted tools now carry OpenAI-only hints under
_meta, which other MCP clients ignore by specification:securitySchemeslisting only the scopes the connected OAuth client can actually request (baselinemcp:*), and tool-invocation status strings derived from each tool's title.Every catalog tool now publishes an
outputSchema: the 27 read-only query tools that lacked one declare thesift.action_receiptenvelope with atext/plainresult, matching whattools/callalready returns.Projections and catalog digests are computed from the transport-shaped schema, so hosted
find_capabilityandschemaDigestdescribe the tool surface the client is actually presented.
Projection 1.19.0 records the hosted upload_document schema and the
envelope output schemas. Reconnect hosted MCP clients after upgrade to
refresh the projection 1.19.0 schemas.
1.2.35 compatibility note
Version 1.2.35 closes the remaining contract divergences found in the 1.2.32 review.
schema_introspectnow exposes datasets only when both the deployment-wide dataset switch and the caller's feature grant allow the dataset routes. Its dataset and object-type queries now run with the caller's RLS identity.code_memory_deletereturned 500 for every memory that had ever existed.V351gave the lifecycle event log anON DELETE CASCADEforeign key and an append-only trigger that raised unconditionally, so the cascade aborted every delete.V389lets the referential cascade through while still refusing a direct edit of the log, repairs two lineage foreign keys that would have nulled aNOT NULLowner column, and returns an orphaned predecessor toneeds_reviewwith an audit event when its successor is deleted.Human admission actions are no longer callable over MCP.
code_memory_confirm,code_memory_reject,code_memory_edit, andcode_memory_supersedeare hidden and refused on both hosted and local agent transports. Agents may store candidates or mark factsneeds_review; a human curates them in the Siftable interface.project_get_contextreported each task's workflow phase in itsstatusfield and leftphasenull. Both are now the real column values, on open, blocked, and overdue tasks alike.
Projection 1.18.0 records that human-curation boundary and removes four tools from the presented agent surface.
This release requires migration V389__code_memory_delete_cascade.sql.
code_memory_delete continues to fail until it is applied.
1.2.34 compatibility note
Version 1.2.34 closes a set of defects where a call succeeded but the answer was wrong or incomplete.
Writing a person with a
companyreturned 500 unconditionally. The organization upsert named a unique index that became partial in V357 without supplying its predicate, so Postgres could not infer the conflict target.Authored content is no longer stripped in transit. The request pipeline ran
striptags()over every string, which deleted<from filter operators, turnedList<String>intoList, and removed markup from note titles — silently, and for every MCP call, because the content allowlist only matched top-level body keys. HTML is now escaped where it is rendered instead.A range comparison (
>>=<<=) against a text-typed column with a numeric value is rejected with the retype path, instead of quietly comparing as text where'99'sorts above'199'. Sorting such a column returns a warning rather than an unmarked, plausible, wrong order.dataset_querynow carrieswarningsin its structured result.task_getnow carries the full task brief structurally —rationale,deliverable,verification,approachConstraints,acceptanceCriteria, andscope. Structured-first clients previously received a task with no definition of done.
Reconnect MCP clients after upgrade to refresh the projection 1.18.0 schemas.
1.2.33 compatibility note
Version 1.2.33 repairs hosted OAuth token exchange. The authorization server
looked up a hashed authorization code with a consumed_at IS NULL filter
against a table that consumes codes by deletion and has no such column, so
every fresh Connect from Cursor, Codex, or any other remote client failed with
Internal Server Error after Google consent. Existing authenticated sessions
were unaffected. Tool contracts and projection 1.16.0 schemas are unchanged; no
reconnect is required beyond retrying a login that previously failed.
1.2.32 compatibility note
Version 1.2.32 adds an explicit, metadata-only repository_project_link mutation so an agent can persist the project selected from context_current.projectCandidates. It also keeps unsupported-client matches in a secondary discovery lane and suppresses zero-score full-text note hits.
Reconnect MCP clients after upgrade to refresh the projection 1.16.0 schemas.
Hosted remote clients
The recommended hosted endpoint is:
https://siftable.io/api/v1/mcpClaude remote connectors, Cursor, Codex, Devin, Kimi Code, and Antigravity can
connect over Streamable HTTP. Prefer URL-only OAuth configuration: an
authorize request that omits scope is issued mcp:* work:read work:write
by default behind the first-party consent form, and anything missing later can
be approved in place through the one-hour link request_capability returns
(Streamable HTTP only; legacy /sse sessions reconnect instead). A
configured Authorization header selects static PAT mode; that token's scopes
cannot be expanded by an OAuth challenge or an elevation link.
Client configuration keys and callback behavior differ (url in Cursor,
Codex, and Kimi; serverUrl in Antigravity; UI-managed connections in Claude
and Devin). See
docs/runbooks/hosted-mcp-client-compatibility.md
for the provider-grounded matrix and verification flow.
The npm package remains the local stdio path for clients that need an authorized checkout or cannot use the hosted endpoint.
1.2.31 compatibility note
This release keeps task collection totals stable across cursor pages, resolves repository context through durable identities under transaction-scoped RLS, and returns explicit project candidates instead of auto-linking repositories by name. Project resources now paginate with opaque cursors and surface backend failures, while graph and people results provide usable canonical labels. Reconnect MCP clients after upgrade to refresh the projection 1.15.0 schemas.
1.2.30 compatibility note
This release requires caller-stable idempotency keys for agent creation, work
claims and lifecycle transitions, code-memory writes, document uploads, Vault
entry creation, and governed approval, execution-grant, and materialization
requests. Same-key retries replay the original authoritative response; changed
payloads conflict. Vault receipts retain metadata or runner-encrypted ciphertext,
never plaintext. ai_generate remains explicitly non-retry-safe because streamed
provider output is not persisted for replay. Reconnect MCP clients after upgrade
to refresh the projection 1.14.0 schemas.
1.2.29 compatibility note
This release makes hosted capability inspection terminal and reconnect-safe,
adds task-state and governed-approval invariants, and puts stable IDs and typed
details into project, task, dataset, schema, people, organization, and calendar
results. Retired source-index/search names route to local checkout search while
curated code memories remain available. The dataset_create,
dataset_mutate, dataset_schema_modify, and dataset_materialize_result
tools require a caller-stable idempotencyKey.
Reusing the same key with the same payload replays the original result; reusing
it with a changed payload is rejected. Existing MCP sessions must reconnect to
refresh their cached tool schemas before invoking these mutations. Direct REST
callers remain backward compatible when the Idempotency-Key header is omitted.
Privacy Policy
The server sends tool calls to the Siftable API at the configured
SIFT_API_URL (by default https://siftable.io) and to nothing else. It
stores no data locally beyond the environment it is started with, and the
personal access token is only ever sent to that API. Siftable's privacy
policy, covering collection, use, storage, sharing, retention, and contact
details, is at https://siftable.io/privacy.html.
Distribution artifacts
@siftable/mcp-server is published from the monorepo; the public source
mirror at https://github.com/execufunction-mcp/mcp-server is refreshed with
scripts/mirror-mcp-server.sh and cannot build on its own.
Artifact | Command | Where it goes |
npm package |
|
|
Claude Desktop extension |
|
|
MCP Registry entry |
|
|
manifest.json is the desktop-extension manifest; its version must match
package.json and the bundle build asserts it. The bundle carries its own
production node_modules, so it runs without the monorepo.
Quick Start
1. Create a Personal Access Token
Go to Siftable → Settings → Developer → Access Tokens
Click "Create Token"
Name it (e.g., "Cursor MCP")
Select
mcp:*for baseline MCP access, then add the specific scope families your workflows need (for exampleprojects:read,tasks:write, orwork:read).mcp:*is not universal authorization.Save the token immediately - it's only shown once!
2. Configure Your MCP Client
Claude Desktop
Edit ~/Library/Application Support/Claude/claude_desktop_config.json:
{
"mcpServers": {
"siftable": {
"command": "npx",
"args": ["@siftable/mcp-server"],
"env": {
"SIFT_API_URL": "https://siftable.io",
"SIFT_PAT": "sift_pat_your_token_here"
}
}
}
}Cursor
Add to your Cursor MCP settings:
{
"siftable": {
"command": "npx",
"args": ["@siftable/mcp-server"],
"env": {
"SIFT_API_URL": "https://siftable.io",
"SIFT_PAT": "sift_pat_your_token_here"
}
}
}VS Code
Configure in your MCP extension settings.
3. Restart Your IDE
After configuration, restart your IDE to load the MCP server.
Available Tools
Orientation and capability acquisition
Start every new client session with context_current. It reports the effective
workspace, project, repository, transport, presented/effective scopes, missing
requestable scopes, and recommended next calls. Hosted MCP returns a null
checkout plus a reason unless the client explicitly provides a root hint.
Use find_capability as the discovery entry point when a tool is absent or an
operation is unauthorized. Call request_capability in inspect mode to get a
structured recovery plan without triggering an authorization challenge; use
challenge mode only when the client can render the standards-compliant OAuth
action from the HTTP 403 response.
When no candidate meets the discovery confidence contract, find_capability
returns queryOutcome: no_matches, zero counts, and empty lanes. Rephrase with
both a Siftable domain and operation, or inspect tools/list; do not treat a
zero-result response as authorization evidence.
task_* manages human planning. work_* manages executable agent work. Prefer
the stable IDs returned by collection and mutation results in follow-on calls.
Tool | Description | Mutates |
| Resolve principal, owner, project, repository, checkout, and effective capability context | No |
| Discover callable, missing, requestable, and unsupported capabilities | No |
| Inspect recovery or request an OAuth authorization challenge | No |
Projects
Tool | Description | Mutates |
| List projects with status filtering, bounded cursor pagination, stable IDs, and compact summaries | No |
| Create a new project | Yes |
| Update project name, summary, status, emoji | Yes |
| Archive a project (destructive) | Yes |
| Get full project context (tasks, notes, signals) | No |
Tasks
Tool | Description | Mutates |
| List human planning tasks with project/status/phase/effort/title filters | No |
| Get a single human planning task with full details | No |
| Create a human planning task with priority, phase, effort, acceptance criteria | Yes |
| Update human planning task fields (title, status, priority, phase, effort, scope) | Yes |
| Delete a task (destructive) | Yes |
| Preview or bulk delete tasks by IDs or filter | Yes |
| Mark a task as complete | Yes |
Agents
Tool | Description | Mutates |
| List user-visible agent aliases and capabilities | No |
| Get an agent alias by slug or ID | No |
| Create an agent alias | Yes |
| Update alias metadata, capabilities, or permissions | Yes |
| Disable an alias without deleting history | Yes |
| List executable work assigned to an alias | No |
Work Items
Tool | Description | Mutates |
| List work items with authoritative dependency claimability | No |
| Get work details, dependencies, satisfaction, and claimability | No |
| Create bounded work with optional UUID | Yes |
| Atomically replace a work item's UUID dependencies | Yes |
| Claim queued executable work with a lease | Yes |
| Get a project's default dependency gate | No |
| Set a project's default dependency gate | Yes |
| Mark claimed work running | Yes |
| Extend a lease | Yes |
| Mark work blocked | Yes |
| Mark work as needing review | Yes |
| Complete work with summary/artifacts | Yes |
| Mark work failed | Yes |
| Release work back to the queue | Yes |
| Cancel work | Yes |
Knowledge / Notes
Tool | Description | Mutates |
| List notes with type, project, archive, and title filters | No |
| Get a single note with full content | No |
| Semantic search across knowledge base | No |
| Create a new note (markdown) | Yes |
| Update note title, content, or type | Yes |
| Delete a note (destructive) | Yes |
| Preview or bulk delete notes by IDs or filter | Yes |
People
Tool | Description | Mutates |
| Search contacts with fuzzy or exact/prefix filters | No |
| Create a contact | Yes |
| Update a contact | Yes |
| Delete a contact (destructive) | Yes |
| Preview or bulk delete contacts by IDs or filter | Yes |
| Check identity readiness and current app prices without dispatching providers | No |
| Run paid, idempotent app-equivalent enrichment and return stored proposals and billing evidence | Yes |
| Apply selected stored profile fields and facts from a settled run; not retry-safe | Yes |
Organizations
Tool | Description | Mutates |
| Search organizations with fuzzy or exact/prefix filters | No |
| Create an organization | Yes |
| Update an organization | Yes |
| Delete an organization (destructive) | Yes |
| Preview or bulk delete organizations by IDs or filter | Yes |
| Check provider availability and current app prices without dispatching providers | No |
| Run the paid, idempotent app preview and save evidence without canonical CRM writes | Yes |
Lead Discovery
Tool | Description | Mutates |
| Run one bounded paid company search and stage source-backed review candidates | Yes |
| List candidates and their CRM match/review state | No |
| Shortlist or reject one candidate with a recorded reason | Yes |
| Create a durable CRM import plan from shortlisted candidates; approval and apply remain separate | Yes |
See Headless CRM import plans for the approval and apply lifecycle shared by CLI and MCP.
Calendar
Tool | Description | Mutates |
| List calendar events for a date range | No |
| Create a new calendar event | Yes |
| Update a calendar event | Yes |
| Delete a calendar event (destructive) | Yes |
Local Source Context
Tool | Description | Mutates |
| Run git blame on a local file range | No |
Source inspection and search stay local to an authorized checkout through Git,
rg, the editor, or agent-native tools. Siftable stores curated code memories;
it does not index or semantically search repository source.
Code Memories
Tool | Description | Mutates |
| Store a curated code fact | Yes |
| Search stored code facts | No |
| List all stored code memories | No |
| Delete a code memory (destructive) | Yes |
Vault / Secrets
Tool | Description | Mutates |
| List vault entries (metadata only) | No |
| Store a new encrypted secret | Yes |
| Update vault entry metadata | Yes |
| Search vault entries by name/description | No |
| Inspect the Vault audit trail | No |
| Request approval for one exact materialization destination | Yes |
| Check materialization status without returning secret bytes | No |
| List governed Vault execution capabilities | No |
| Describe a governed Vault execution capability | No |
| Execute a governed capability without exposing secret bytes | Yes |
vault_read is retired. MCP never returns plaintext secret bytes; use a governed capability or an explicitly approved materialization instead.
Entity Graph
Tool | Description | Mutates |
| Traverse the entity relationship graph | No |
| Discover the full data model and entity types | No |
Document Upload
Tool | Description | Mutates |
| Upload a PDF, Markdown, or text file into Knowledge | Yes |
Datasets (feature flag: DATASETS_ENABLED=true)
Tool | Description | Mutates |
| List datasets | No |
| Create a dataset | Yes |
| Query records by filters/sorts | No |
| Create/update/delete records (destructive) | Yes |
| Add/update/delete fields (destructive) | Yes |
| Summarize schema and sample rows | No |
| Value distributions for fields | No |
| Missing-value metrics, invalid values, uniqueness issues, repeated-value observations | No |
| Grouped metrics (count, avg, sum, etc.) | No |
| Bucket numeric/date fields into ranges | No |
| Rank records by sorts or weighted formula | No |
| Generate natural-language insights | No |
| Compare metrics across segments | No |
| Export records as CSV | No |
| Self-join with alias-scoped fields | No |
| Compute derived columns (lag, diff, rolling) | No |
| Time series analysis with transforms | No |
| Save derived result as a new dataset | Yes |
| Validate chart payload from derived result | No |
Ontology (feature flag: DATASET_ONTOLOGY_ENABLED=true)
Tool | Description | Mutates |
| Find objects by type and property filters | No |
| Traverse graph links for an object | No |
| Run a declarative action on an object (destructive) | Yes |
Usage Examples
1. Get project context and create a task
User prompt: "Get context for my auth project and create a task to fix the token refresh bug"
Tools invoked:
project_list— Lists projects to find the auth projectproject_get_context— Retrieves tasks, notes, and signals for the projecttask_create— Creates a human planning task with title, description, and project linkage
Result: The AI reads existing project context (open tasks, recent notes) to avoid duplicates, then creates a well-scoped task linked to the correct project.
To run an agent, create a linked executable work item with work_item_create and set taskId to the parent human task. Task tools should track planning state; work item tools should track execution, leases, artifacts, verification, and review state.
Dependencies are authoritative UUID references. Pass dependsOn as an array of { workItemId, requiredGate? }, where requiredGate is done or commands_passed. An omitted gate resolves through the project's work-dependency policy. List and get results expose the resolved dependencies projection and derived claimability (ready, waiting, or dependency_failed). Replace the complete edge set with work_item_dependencies_replace; use an empty array to remove every dependency. Historical verified gates are normalized to commands_passed during the verifier-retirement migration.
Lease-owned lifecycle calls (start, heartbeat, block, review, and fail) require both the claimOwner and claimToken returned by work_item_claim; release requires the active token. complete accepts credentials for lease-owned completion but leaves them optional so a human can resolve needs_review without a lease. cancel is likewise tokenless. Claim tokens remain omitted from get/list output and should not be logged or persisted by clients.
2. Knowledge search and note creation
User prompt: "Search for our deployment process and create a note summarizing the steps"
Tools invoked:
note_search— Searches the knowledge base for "deployment process"code_memory_search— Searches stored code facts for deployment-related memoriesnote_create— Creates a new note with a markdown summary of the deployment steps
Result: The AI synthesizes information from existing notes and code memories into a single reference note, linked to the relevant project.
Resources
The server also exposes project context bundles as MCP resources:
exf://projects/{id}/context- Full context bundle for a project
Environment Variables
Variable | Required | Description |
| Yes | Siftable API URL |
| Yes | Personal Access Token |
Legacy EXF_API_URL and EXF_PAT remain supported for existing MCP configs.
Development
# Install dependencies
npm install
# Run in development mode
npm run dev
# Test with MCP Inspector
npm run inspect
# Build for production
npm run buildSecurity
PATs are stored as SHA-256 hashes - plaintext is never stored
Tokens can be revoked at any time from Siftable Settings
Use minimal scopes for your use case
Never commit tokens to version control
Scopes
Scope | Description |
| Core project, task, calendar, knowledge, and people operations |
| Read project data |
| Create/update projects |
| Read tasks |
| Create/update/complete tasks |
| Search/read notes |
| Create notes |
| View calendar/free slots |
| Create calendar events |
| Search/view contacts |
| Create/update contacts |
| Read executable work queues |
| Mutate executable work queues |
| Read lead-discovery runs and candidates |
| Dispatch paid searches and review/import candidates |
| Read Vault metadata and materialization status |
| Create/update Vault metadata and request materializations |
| Read the Vault audit trail |
Troubleshooting
"SIFT_API_URL environment variable is required"
Make sure you've configured the env section in your MCP client config.
"Invalid token"
Check that your token starts with
sift_pat_or legacyexf_pat_Verify the token hasn't been revoked
Check the token hasn't expired
Tools not appearing
Restart your IDE after configuration changes
Check IDE logs for MCP errors
Try running
npm run inspectto test the server directly
License
MIT
This server cannot be installed
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Related MCP Servers
- AlicenseNot gradedqualityCmaintenanceEnables AI assistants to manage tasks, projects, and dependencies through MCP protocol with embedded Web UI, multi-workspace support, and Turkish language capabilities for productivity tracking.1MIT
- FlicenseNot gradedqualityDmaintenanceEnables AI assistants to manage tasks with full lifecycle support including due dates, priorities, tags, subtasks, and project lists via 19 SQLite-backed MCP tools.4
- AlicenseNot gradedqualityDmaintenanceEnables AI assistants to manage Notion tasks, projects, and courses through MCP, allowing creation, retrieval, and filtering of tasks.1Apache 2.0
- AlicenseBqualityDmaintenanceEnables AI assistants to interact with Labradoc's document management, email ingestion, task extraction, and integration features through MCP tools.1710MIT
Related MCP Connectors
Your memory, everywhere AI goes. Build knowledge once, access it via MCP anywhere.
OCR, transcription, file extraction, and image generation for AI agents via MCP.
One shared context your team's AI tools read & write over MCP. No re-explaining. Free.
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/execufunction-mcp/mcp-server'
If you have feedback or need assistance with the MCP directory API, please join our Discord server