MedEval MCP Server
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@MedEval MCP ServerShow me my projects and pull evidence for the latest one."
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
MedEval MCP Server
Authenticated Streamable HTTP MCP access to a running MedEval medical-device regulatory workspace.
Public endpoint: https://xiaoyuu.me/mcp
The server exposes MedEval project selection, evidence retrieval, CEP/CER section context, Agent observability, generation/evaluation task control, and immutable document revisions to Codex-compatible MCP clients.
Security model
Every MCP request requires
Authorization: Bearer <token>.The MCP process binds to
127.0.0.1; only Nginx exposes it over HTTPS.The adapter may call only a loopback MedEval API.
No delete, cleanup, cancel, rollback, or arbitrary server-file upload tool is exposed.
The access token is stored only in
/etc/medeval-mcp.envon the server and must never be committed.This deployment uses one shared MedEval instance. Anyone with the token can inspect its projects and invoke its exposed write tools. Use separate deployments/tokens when tenant isolation is required.
MedEval itself can still call model and literature providers configured by the server operator. Do not assume that those downstream operations are offline merely because the MCP adapter is private.
Related MCP server: AuroraDocs MCP Server
Use with Codex
Codex supports Streamable HTTP MCP servers with bearer tokens. Put the token in an environment variable rather than in config.toml.
1. Set the token
PowerShell:
$env:MEDEVAL_MCP_TOKEN = "the-token-provided-by-the-server-owner"macOS/Linux:
export MEDEVAL_MCP_TOKEN='the-token-provided-by-the-server-owner'2. Configure Codex
Add this to ~/.codex/config.toml:
[mcp_servers.medeval]
url = "https://xiaoyuu.me/mcp"
bearer_token_env_var = "MEDEVAL_MCP_TOKEN"
tool_timeout_sec = 1800
startup_timeout_sec = 30
default_tools_approval_mode = "writes"Restart the ChatGPT desktop app, Codex CLI, or IDE extension. Use /mcp to verify that medeval is connected.
The writes approval mode lets read-only inspection run normally while prompting before generation, evaluation, workspace creation, or document patching.
Typical workflow
Call
medeval_health.Call
medeval_list_projects; never guess a workspace or task ID.Upload source materials through xiaoyuu.me when needed. Remote MCP deliberately cannot read paths on the client computer.
Use
medeval_search_project_evidenceormedeval_build_section_contextfor traceable retrieval.Start generation/evaluation only after explicit authorization and retain the returned task ID.
Inspect
medeval_get_task_progress,medeval_list_runs, andmedeval_get_runrather than blindly resubmitting a slow task.For edits, read the current revision, patch with its
base_revision_id, then verify the resulting diff.
Product facts must come from uploaded product materials. External literature is supporting evidence and must not silently replace intended use, indications, specifications, risks, or test results.
Available tools
Read-only tools:
medeval_healthmedeval_list_projectsmedeval_get_workspacemedeval_list_workspace_documentsmedeval_list_runsmedeval_get_runmedeval_get_agent_contextmedeval_list_project_documentsmedeval_search_project_evidencemedeval_build_section_contextmedeval_list_generation_templatesmedeval_get_task_progressmedeval_get_generation_taskmedeval_list_document_revisionsmedeval_read_document_revisionmedeval_diff_document_revisions
Non-destructive write tools:
medeval_create_workspacemedeval_start_generationmedeval_start_evaluationmedeval_patch_document_revision
Run your own instance
Requirements:
Python 3.11+
A reachable MedEval FastAPI backend on the same host
HTTPS reverse proxy for public use
git clone https://github.com/hanxiaoyu-cmd/medeval-mcp-server.git
cd medeval-mcp-server
python3 -m venv .venv
. .venv/bin/activate
python -m pip install -e .
cp .env.example .envExport the variables from .env, then run:
python -m medeval_mcp_serverThe default listener is 127.0.0.1:8765; the MCP route is /mcp and the public health route is /healthz.
Production deployment
Example systemd and Nginx files are under deploy/:
medeval-mcp.serviceruns an unprivileged, hardened process.nginx-location.confproxies/mcpwithout buffering and keeps long tool calls alive.
Generate a token with:
python -c 'import secrets; print(secrets.token_urlsafe(36))'Store it in a root-readable environment file:
MEDEVAL_MCP_TOKEN=<generated-token>
MEDEVAL_API_BASE_URL=http://127.0.0.1:8000
MEDEVAL_MCP_PUBLIC_HOSTS=your-domain.example,127.0.0.1,localhostSet the file mode to 600, validate Nginx with nginx -t, and verify both unauthenticated rejection and authenticated MCP initialization before sharing the token.
Development
python -m pip install -e ".[dev]"
python -m pytest
python -m compileall -q srcLicense
MIT
This server cannot be deployed
Maintenance
Related MCP Connectors
Query, browse, and automate OmegaAI workspaces from any MCP client. Streamable HTTP with OAuth 2.0.
Authenticated MCP server for ClearPolicy policy and compliance workflows.
Remote MCP server exposing SMI Aware tools, resources, and skills over Streamable HTTP.
Governed MCP gateway: one endpoint for your tools, with credential custody and audit log.
Related MCP Servers
- FlicenseNot gradedqualityCmaintenanceExposes the Veridexa S2S API to MCP clients (e.g., ChatGPT) via Streamable HTTP, allowing document verification and report retrieval.-
- AlicenseNot gradedqualityAmaintenanceEnables local MCP clients to interact with an AuroraCloud workspace, supporting object listing, content reading, search, and task management through authenticated API calls.174Apache 2.0
- FlicenseNot gradedqualityBmaintenanceLocal Streamable HTTP MCP server that replaces the Steward Chrome extension, letting ChatGPT interact with Steward workspace data, manage drafting sessions, and generate documents via MCP tools.-
- FlicenseBqualityBmaintenanceEnables MCP clients to operate MedEval regulatory workspaces, including evidence retrieval, generation, evaluation, and immutable document revisions, all through a local, secure gateway.21-