Skip to main content
Glama
firstorderai

Authenticator App MCP Server

by firstorderai
README.md
[![MseeP.ai Security Assessment Badge](https://mseep.net/pr/firstorderai-authenticator-mcp-badge.png)](https://mseep.ai/app/firstorderai-authenticator-mcp)

<div align="center">
  <h1>Authenticator App MCP Server</h1>
  <p>
    🌐 Available in:
    <a href="README.zh.md">中文 (Chinese)</a>
  </p>

[![Trust Score](https://archestra.ai/mcp-catalog/api/badge/quality/firstorderai/authenticator_mcp)](https://archestra.ai/mcp-catalog/firstorderai__authenticator_mcp)
  <a href="https://smithery.ai/server/@firstorderai/authenticator_mcp"><img alt="Smithery Badge" src="https://smithery.ai/badge/@firstorderai/authenticator_mcp"></a>
</div>

<br/>

A secure MCP (Model Context Protocol) server that enables AI agents to interact with the Authenticator App. It provides seamless access to 2FA codes and passwords, allowing AI agents to assist with automated login processes while maintaining security. This tool bridges the gap between AI assistants and secure authentication, making it easier to manage your credentials across different platforms and websites.

<a href="https://glama.ai/mcp/servers/@firstorderai/authenticator_mcp">
  <img width="380" height="200" src="https://glama.ai/mcp/servers/@firstorderai/authenticator_mcp/badge" alt="Authenticator App Server MCP server" />
</a>

## How it works

1. Open your AI agent's integrated chat interface (such as Cursor's agent mode).
2. Ask AI agent to retrieve your 2FA code or password for your desired website and account.
3. AI agent will securely fetch these credentials, then can utilize them to automate your login process.

This MCP server is specifically designed for use with [Authenticator App · 2FA](#install-authenticator-app--2fa-desktop-version).

[![Demo video](https://markdown-videos-api.jorgenkh.no/url?url=https%3A%2F%2Fyoutu.be%2F4zZqrES6FBc)](https://youtu.be/4zZqrES6FBc)

## Getting Started

Many AI clients use a configuration file to manage MCP servers.

The `authenticator-mcp` tool can be configured by adding the following to your configuration file.

> NOTE: You will need to create a Authenticator App **access token** to use this server. Instructions on how to create a Authenticator App access token can be found [here](#creating-an-access-token).

### MacOS / Linux

```json
{
  "mcpServers": {
    "Authenticator App MCP": {
      "command": "npx",
      "args": ["-y", "authenticator-mcp", "--access-token=YOUR-KEY"]
    }
  }
}
```

### Windows

```json
{
  "mcpServers": {
    "Authenticator App MCP": {
      "command": "cmd",
      "args": ["/c", "npx", "-y", "authenticator-mcp", "--access-token=YOUR-KEY"]
    }
  }
}
```

Or you can set `AUTHENTICATOR_ACCESS_TOKEN` in the `env` field.

## Install Authenticator App · 2FA Desktop version

[<img src="https://static.firstorder.ai/authenticator/icon_ms_store.png" alt="Download Authenticator App on the Windows Microsoft Store" height="50">](https://apps.microsoft.com/detail/9n6gl0bvkphn?utm_source=mcp)
[<img src="https://static.firstorder.ai/authenticator/icon_windows_exe.png" alt="Download Authenticator.exe for Windows PC" height="50">](https://static.firstorder.ai/app/authenticator_setup.exe)
[<img src="https://static.firstorder.ai/authenticator/icon_mac_store.png" alt="Download Authenticator App on the Mac App Store" height="50">](https://apps.apple.com/app/apple-store/id6470149516?pt=126691301&mt=8&platform=mac&utm_source=mcp)
[<img src="https://static.firstorder.ai/authenticator/icon_ubuntu_deb.png" alt="Download the Ubuntu/Debian .deb" height="50">](https://static.firstorder.ai/app/authenticator.deb)

## Creating an Access Token

1. Launch the desktop version of `Authenticator App · 2FA`.
2. Navigate to `Settings` and locate the `MCP Server` section.
3. Enable the MCP Server by toggling it `ON`, then proceed to generate your access token.

Please note that the access token will only be displayed once. Be sure to copy it immediately and add it to your MCP client configuration.

## More information

### [Firstorder.AI](https://firstorder.ai)

TDQS

B3.2/5.0

Scored across 3 tools

Disambiguation5/5

Each tool has a clearly distinct purpose: get_2fa_code retrieves time-based codes, get_account_list lists available accounts, and get_password retrieves passwords. There is no overlap in functionality, making tool selection unambiguous for an agent.

Naming Consistency5/5

All tool names follow a consistent verb_noun pattern with 'get_' prefix (get_2fa_code, get_account_list, get_password). The naming is uniform and predictable, using snake_case throughout without any deviations.

Tool Count3/5

With only 3 tools, the server feels thin for an authenticator app domain that might benefit from operations like adding/removing accounts or updating credentials. While the tools cover core retrieval needs, the count is borderline minimal for comprehensive functionality.

Completeness2/5

The toolset is severely incomplete for an authenticator app, lacking any write operations such as adding accounts, updating passwords, or managing 2FA settings. Agents can only retrieve data, leading to dead ends for common workflows like account setup or credential changes.

Maintenance

ActivityInactive
ResponsivenessNo issues