Skip to main content
Glama

BugSmash MCP

Local Model Context Protocol server that lets an LLM read and manage BugSmash reviewer feedback without ever seeing your BugSmash API key.

LLM (Claude) --MCP--> bugsmash-mcp --HTTPS + X-API-Key--> https://api.bugsmash.io/api/v2

Install

npm install -g @mxrcochxvez/bugsmash-mcp

Or run without a global install via npx (see connector config below).

Requires Node.js 18+.

Related MCP server: Gerrit MCP Server

Generate an API key

  1. Sign in at tools.bugsmash.io.

  2. Open your profile menu → Settings.

  3. Find the API Key section and copy the key.

  4. Treat it like a password. If it leaks, regenerate it immediately from the same settings page.

Official auth docs: docs.bugsmash.io/authentication

Set BUGSMASH_API_KEY (do not commit it)

Export the key in your shell — never put it in a committed file.

export BUGSMASH_API_KEY="your-key-here"

macOS / Linux (zsh), persist for your user:

echo 'export BUGSMASH_API_KEY="your-key-here"' >> ~/.zshrc
source ~/.zshrc

Confirm it is set (does not print the value):

test -n "$BUGSMASH_API_KEY" && echo "BUGSMASH_API_KEY is set"

Register as a user-level MCP connector

Use a user scope so the server is available in every project.

claude mcp add --scope user bugsmash --env BUGSMASH_API_KEY=$BUGSMASH_API_KEY -- npx -y @mxrcochxvez/bugsmash-mcp

If you installed globally:

claude mcp add --scope user bugsmash --env BUGSMASH_API_KEY=$BUGSMASH_API_KEY -- bugsmash-mcp

Claude Desktop

Edit your Claude Desktop config (macOS: ~/Library/Application Support/Claude/claude_desktop_config.json):

{
  "mcpServers": {
    "bugsmash": {
      "command": "npx",
      "args": ["-y", "@mxrcochxvez/bugsmash-mcp"],
      "env": {
        "BUGSMASH_API_KEY": "your-key-here"
      }
    }
  }
}

Prefer injecting the key from the environment your Desktop app inherits, rather than pasting it into a synced config file when possible.

Cursor

Add a similar MCP entry: command npx, args ["-y", "@mxrcochxvez/bugsmash-mcp"], and BUGSMASH_API_KEY under env.

Tools

Tool

BugSmash API

Purpose

list_projects

GET /projects

Paginated project list (find projectId)

get_project

GET /project/{projectId}

Project details + versions

list_feedback

GET /comments?projectId

All reviewer comments on a project

get_feedback

GET /comment/{commentId}

Single comment (+ replies)

update_feedback

PATCH /comment/{commentId}

Update text / status / priority / privacy

list_replies

GET /comment/{commentId}/replies

Thread replies

post_reply

POST /reply

Reply on a thread

Base URL: https://api.bugsmash.io/api/v2
Auth header: X-API-Key (never a tool argument).

Typical flow: list_projectslist_feedback → optionally update_feedback / post_reply.

Security note

  • The API key is read only from BUGSMASH_API_KEY.

  • It is never accepted as a tool parameter.

  • It must never be logged, printed, masked-partially in errors, or returned in tool responses.

  • On startup, a missing key exits with the generic message BUGSMASH_API_KEY is not set.

  • All HTTP calls go through one helper that attaches X-API-Key; request headers are not surfaced on errors.

Local development

git clone https://github.com/mxrcochxvez/bugsmash_mcp.git
cd bugsmash_mcp
npm install
npm run build
export BUGSMASH_API_KEY="your-key-here"
npm start
npm run typecheck   # tsc --noEmit
npm run pack:check  # preview files included in the npm tarball

API reference: docs.bugsmash.io

Install Server
A
license - permissive license
A
quality
C
maintenance

Maintenance

Maintainers
Response time
Release cycle
Releases (12mo)
Commit activity

Resources

Unclaimed servers have limited discoverability.

Looking for Admin?

If you are the server author, to access and configure the admin panel.

Related MCP Servers

  • A
    license
    A
    quality
    C
    maintenance
    A MCP server for interacting with FogBugz issue tracker through LLMs such as Claude. Supports both the XML API (/api.asp) and the JSON API (/f/api/0/jsonapi) with automatic version detection at startup. Works with on-premise and on-demand FogBugz installations.
    19
    7
    2
    MIT
  • F
    license
    -
    quality
    B
    maintenance
    Read-only MCP server that exposes Launchpad bug-tracking data for a single project to AI agents, enabling search and retrieval of bugs, milestones, and comments with canonical URLs.

View all related MCP servers

Related MCP Connectors

  • MCP server providing access to the Scorecard API to evaluate and optimize LLM systems.

  • MCP server for Pentest-Tools.com: run scans, manage findings and reports via your preffered LLM.

  • Hosted MCP server for LLM cost estimation, model comparison, and budget-aware routing.

View all MCP Connectors

Latest Blog Posts

MCP directory API

We provide all the information about MCP servers via our MCP API.

curl -X GET 'https://glama.ai/api/mcp/v1/servers/mxrcochxvez/bugsmash_mcp'

If you have feedback or need assistance with the MCP directory API, please join our Discord server