MessagesBridge
Allows AI agents to search iMessage history, list recent threads, read conversations, and send iMessage messages to one recipient at a time.
Click on "Install Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@MessagesBridgeText Sarah that I'm running 10 minutes late."
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
π¬ MessagesBridge
Use your iMessage & Contacts inside ChatGPT β through your own Mac.
MessagesBridge is a Model Context Protocol (MCP) connector that lets ChatGPT work with your iMessage conversations and Contacts. It never uploads your messages to a third party β every action runs on your own Mac through a tiny local agent. The cloud piece is only a stateless relay that shuttles requests between ChatGPT and your Mac.
ChatGPT ββOAuthβββΊ MessagesBridge relay ββjob queueβββΊ apple-messages-agent βββΊ Messages.app + Contacts
(connector) (Vercel, stateless) (your Mac, polls & executes) (on your Mac)Your Mac is the only place your messages are ever read or contacts written. The relay stores only short-lived job payloads and your account record; it never sees a message unless a job is in flight, and jobs expire in seconds.
For users β 3 steps
1. Create your account at messagesbridge.vercel.app and generate a pairing code.
2. Install the Mac agent (needs Node 18+):
npx apple-messages-agent pair <YOUR-CODE> # link this Mac to your account
npx apple-messages-agent install # keep it running on every restartThe agent needs two macOS permissions, granted once: Full Disk Access so it can read your message history (System Settings β Privacy & Security β Full Disk Access), and Automation the first time it sends a message or reads Contacts β macOS asks "Terminal wants to control Messages" and to access Contacts; click OK.
3. Connect ChatGPT: Settings β Plugins β turn on Developer mode (Security & login) β Create a custom plugin β paste the MCP Server URL https://messagesbridge.vercel.app/mcp β Authentication OAuth β sign in & Allow.
That's it. In a new chat: "Search my messages for the dinner plans" or "Text Sarah that I'm running 10 minutes late." (You confirm every send before it goes out.)
Your Mac must be awake with the agent running.
npx apple-messages-agent installmakes it start automatically at login and restart if it ever crashes.
Managing the agent
npx apple-messages-agent status # is it paired & reachable?
npx apple-messages-agent logs # recent activity
npx apple-messages-agent uninstall # stop auto-startRelated MCP server: imessage-mcp
What ChatGPT can do
Tool | Action |
| Search your iMessage/SMS history by keyword |
| List recent conversations, newest first, with a last-message preview |
| Read one conversation in order (by phone, email, or chat id) |
| Send an iMessage to one recipient (you confirm first β no bulk) |
| Find people by name (returns their phones + emails) |
| Read one contact by name or id |
| Add a contact (name, optional phone/email) |
Reads come first; the only write tools are send_message and create_contact, and each is confirmed by you in ChatGPT before it runs. Sends always go to one recipient at a time β never in bulk.
Self-hosting
You can run your own relay so nothing depends on the hosted instance.
Prereqs: a Vercel account and a Supabase project (free tiers are fine).
Storage β in your Supabase project's SQL editor, run
supabase/schema.sql. It creates a tiny Redis-shaped KV + queue surface (nb_*functions) with RLS on.Deploy the
server/directory to Vercel.Set env vars (see
server/.env.example):SUPABASE_URL,SUPABASE_SERVICE_ROLE_KEYβ your project + service-role keyJWT_SECRETβopenssl rand -hex 32
Verify:
curl https://YOUR-APP.vercel.app/api/healthβredisConfigured,redisOk,jwtSecretSetalltrue.Point the agent at it:
npx apple-messages-agent pair <CODE> --server https://YOUR-APP.vercel.app.
How it works
Auth β OAuth 2.1 with PKCE and Dynamic Client Registration (RFC 7591). ChatGPT registers itself, the user signs in on the MessagesBridge consent page, and ChatGPT gets a scoped MCP access token. JWTs are HMAC-signed; three kinds (
session,agent,mcp) with distinct privileges. Optional email verification via Resend (RESEND_API_KEY); off unless configured, and enforcement is opt-in (REQUIRE_EMAIL_VERIFICATION).Relay β MCP tool call β job pushed to
jobs:<user>(TTL β€ the caller's wait window, so an abandoned job can't run late) β the Mac agent (holding a hanging long-poll) is handed the job within ~200ms, executes it, pushes the result β the MCP handler returns it. The long-poll means jobs are delivered on arrival rather than on a fixed interval, so relay overhead is ~300ms instead of ~1s. The agent is considered "online" only while it's actively connected.Agent β a dependency-free Node CLI. Read tools query the Messages
chat.dbdirectly (read-only SQLite); send and contact tools run via JXA (osascript -l JavaScript) against Messages.app and Contacts; arguments are passed as JSON over argv (never shell-interpolated). A macOS LaunchAgent keeps it alive across logins and crashes.
Repository layout
server/ Vercel functions: OAuth + MCP endpoint + relay (deploy this)
agent/ apple-messages-agent β the npm-published Mac CLI (users npx this)
kit/ Browser automations: register the dev-mode connector AND
fill the OpenAI directory submission (see kit/README.md)
supabase/ schema.sql for self-hosting the storage
test/ end-to-end OAuth + MCP integration testDevelopment
# server
cd server && cp .env.example .env.local # fill in, then: vercel dev
# end-to-end test against a live deployment (reads ../.env.local)
node test/e2e-oauth.mjs
# agent unit tests
node --test agent/test-agent-unit.mjsSecurity & privacy
Messages are read and sent, and contacts read and added, only on your Mac. The relay never persists message content β job payloads live in Redis-shaped storage with a short TTL and are deleted on delivery.
The agent token is stored at
~/.messagesbridge-agent.json(mode600).No secrets are committed; see
.gitignoreand the.env.examplefiles.Write tools are marked destructive so ChatGPT asks before it sends a message or adds a contact β every send goes to one confirmed recipient at a time, never in bulk.
License
MIT Β© Isaiah Dupree
This server cannot be installed
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Related MCP Servers
- Flicense-qualityFmaintenanceAn MCP server that provides safe access to your iMessage database through MCP, enabling LLMs to query and analyze iMessage conversations with proper phone number validation and attachment handlingLast updated79
- FlicenseAqualityCmaintenanceA read-only MCP server that exposes your iMessage data to Claude Code and Claude Desktop, with automatic contact name resolution.Last updated3
- Flicense-qualityDmaintenanceAn MCP server that exposes Apple iMessage as tools for AI assistants, enabling reading, searching, and sending iMessages through natural language.Last updated
- Alicense-qualityBmaintenanceMCP server for reading and sending iMessages on macOS. Exposes iMessage history and send capabilities through tools like list_conversations and send_imessage.Last updated20MIT
Related MCP Connectors
MCP connector that lets ChatGPT list, search, and run your Apple Shortcuts via a local Mac agent
Search, read, and write your Apple Notes from ChatGPT/Claude via a local Mac agent + MCP relay.
Search your AI chat history (ChatGPT, Claude, Codex) from any MCP client. Remote, private, read-only
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/IsaiahDupree/messages-bridge'
If you have feedback or need assistance with the MCP directory API, please join our Discord server