Skip to main content
October 2026

CLI argument & Windows screenshot fixes

Patch release fixing CLI argument parsing, Windows browser discovery, scaffold deploy guidance, and Inspector chat input spacing, with dependency security updates.
  • Fix (@mcp-use/cli): plain key=value tool and prompt arguments preserve := inside the value, so code="x := 1" is sent as a string; key:=<json> still parses a typed JSON value (#2665)
  • Fix (@mcp-use/cli): on Windows, mcp-use screenshot also finds Chrome under Program Files (x86), Microsoft Edge, and Brave instead of failing with chrome_not_found when neither original Chrome location exists (#2725)
  • Fix (create-mcp-use-app): scaffold completion prints pnpm run deploy so pnpm runs the project’s deploy script instead of its built-in deploy command (#2701)
  • Fix (@mcp-use/inspector): multiline chat input stays clear of the bottom toolbar; see the Inspector changelog (#2735)
  • Update (server): update Hono to ^4.13.7 and raise workspace dependency security floors (#2746)
  • Documentation (@mcp-use/client): the AI SDK OpenAI example installs from a fresh checkout with a frozen lockfile and runs TypeScript directly on Node.js 22.22.2 or newer (#2672)
  • Documentation (create-mcp-use-app): the Connect to AI example configures its MCP server through MCPClient’s mcpServers map (#2727)
  • Update: Updated @mcp-use/inspector to v20.3.15; see the Inspector changelog
  • Update: Updated @mcp-use/cli to v4.2.1
  • Update: Updated create-mcp-use-app to v2.0.8
September 2026

OAuth UserInfo & stricter CLI flags

Patch release exposing optional OAuth UserInfo, plus a CLI minor that rejects inline values on boolean flags.
  • New (@mcp-use/client): useMcp and useMcpServer expose reactive OAuth UserInfo. Set oauth.fetchUserInfo: true to load the account after the connection is ready, or call getUserInfo(). userInfo is idle, loading, available, unavailable, or error; a UserInfo failure does not change state. See OAuth UserInfo (#2688)
  • Fix (@mcp-use/client): base64 MCP App HTML resources decode as UTF-8, so non-ASCII text renders correctly in React views (#2632)
  • Fix (@mcp-use/agent): array-valued Gemini tool results are wrapped in an object so function responses match the provider schema in streaming and non-streaming calls (#2675)
  • Fix (@mcp-use/agent): runToolLoopNonStreaming stops dispatching the rest of a turn’s tool calls when signal is aborted, matching runToolLoop (#2667)
  • Fix (server): proxied prompt requests receive the downstream cancellation signal (#2568)
  • Fix (@mcp-use/cli): an inline value on a boolean flag is rejected instead of ignored. mcp-use dev --tunnel=false used to open a public tunnel; it now fails with --tunnel does not take a value. The same applies to --no-open, --no-inspector, --with-inspector, --source-maps, --inline, --help, and --version. Flags that take a value still accept --flag value and --flag=value (#2521)
  • Fix (@mcp-use/cli): mcp-use servers env --help prints servers env help instead of the root servers help (#2690)
  • Fix (@mcp-use/inspector): the Express adapter aborts the upstream stream when the client disconnects during a response (#2394)
  • Enhancement (@mcp-use/inspector): the OAuth proxy allows GET to UserInfo endpoints advertised in authorization-server metadata (#2688)
  • Update: Updated @mcp-use/inspector to v20.3.14; see the Inspector changelog
  • Update: Updated @mcp-use/cli to v4.2.0
  • Update: Updated @mcp-use/client to v2.4.0
September 2026

View cancellation & client fixes

Patch release surfacing host tool cancellation in views, plus browser client and OAuth token expiry fixes.
  • Fix (server): views no longer stay pending when the host cancels the tool call that rendered them. useToolContext() switches to status: "error" with a new ToolCancelledError (exported from mcp-use/react) carrying the host’s reason; a cancellation after a result is still ignored. ToolContextError is now ToolError | ToolCancelledError, so narrow with instanceof ToolError before reading error.result (#2646)
  • Fix (@mcp-use/client): ViewRenderer no longer sends tool-cancelled when a tool call made by the view fails; that failure already rejects the view’s call (#2646)
  • Fix (@mcp-use/client): BrowserMCPClient expands the capabilities.views shorthand into the io.modelcontextprotocol/ui extension and forwards roots and defaultRequestOptions to the connector, matching the Node client (#2476)
  • Fix (@mcp-use/client): getOAuthTokenExpiry reads the JWT exp claim from Base64URL payloads containing - or _, which previously fell back to expires_in; the authTokens.expires_at docs now say milliseconds (#2660)
  • Documentation (@mcp-use/agent): RunOptions.messages is documented as native-agent only; the LangChain agent ignores it, so pass prior messages through externalHistory (#2658)
  • Documentation: the v2 migration guide shows a temporary middleware rewrite so ChatGPT apps that cached v1 widget URIs (ui://widget/…) can still read Views served at ui://views/… until the app is resubmitted (#2668)
  • Update: Updated @mcp-use/inspector to v20.3.13; see the Inspector changelog
  • Update: Updated @mcp-use/cli to v4.1.17
September 2026
Release 2.7.0

Mixed authentication

Minor release serving public, optional, and sign-in tools from one OAuth-enabled endpoint in Claude and ChatGPT, plus an OAuth provider setup hook.
  • New (server): mixedAuth: true lets clients connect and list tools, resources, and prompts without a token; it requires an oauth provider and makes nothing public on its own. See Mixed authentication (#2630)
  • New (server): tools accept a securitySchemes field in the shape ChatGPT reads on tools/list: [{ type: "noauth" }] (public), [{ type: "noauth" }, { type: "oauth2", scopes }] (optional), or [{ type: "oauth2", scopes }] (sign-in with extra scopes); omitting it means sign-in with the provider’s requiredScopes. The new ToolSecurityScheme type describes the entries (#2630)
  • New (server): a tool’s ctx.auth is typed from its literal securitySchemes: required when the tool needs sign-in, possibly undefined when it accepts noauth (#2630)
  • New (server): refused calls are answered before the callback runs, as HTTP 401/403 with WWW-Authenticate for Claude and spec clients, or as an isError result with _meta["mcp/www_authenticate"] for ChatGPT; invalid or expired tokens always get 401, even on public tools (#2630)
  • Enhancement (server): on a mixedAuth server, resources, resource templates, and prompts always require sign-in, while every tool’s view loads signed out so ChatGPT can read views during app creation; tool results stay gated (#2630)
  • Enhancement (server): tools advertise their resolved securitySchemes on tools/list, top level and in _meta.securitySchemes; a hand-written _meta.securitySchemes passes through unenforced, with a warning on mixedAuth servers or when it differs from the declared field. oauth2 scopes also work without mixedAuth, adding to the endpoint-wide requirement (#2630)
  • New (server): oauthCustomProvider accepts an optional synchronous setup(host) hook that runs once at mount to install mcp: middleware, register provider-owned tools, resources, resource templates, and prompts, validate app tools with listTools(), and rewrite instructions; host.mixedAuth reports signed-out access. A failed or async hook fails the mount. OAuthProviderHost<TUser> is exported from mcp-use/oauth (#2405)
  • Fix (server): ThemeProvider no longer remounts the view when the display mode switches between inline and fullscreen or pip, so local state and useCallTool results survive (#2641)
  • Fix (@mcp-use/cli): screenshot rejects --width and --height values Chrome cannot use (#2617)
  • Documentation: new Mixed authentication guide and setup hook docs for custom providers; the mixed-oauth example now uses mixedAuth and securitySchemes, covers every scheme shape, and runs behind mcp-use dev --tunnel for testing in Claude and ChatGPT (#2630, #2405)
  • Update: Updated @mcp-use/inspector to v20.3.12; see the Inspector changelog
  • Update: Updated @mcp-use/cli to v4.1.16
September 2026
Release 2.6.0

TanStack Start integration

Minor release adding Vite-powered MCP servers in TanStack Start, along with client, CLI, scaffold, and documentation updates.
  • New (server): mcp-use/vite, mcp-use/tanstack-start, and mcp-use/tanstack-start/vite mount an MCP server in a TanStack Start route; a dedicated Vite environment reloads server code, skills, and views during development and builds deployable assets for production (#2517)
  • Fix (server): the landing page hides the public chat button until public chat is available (#2612)
  • Fix (server): Vite integration base-path validation handles long paths with repeated slashes without slow regex matching
  • Fix (@mcp-use/client): sibling inline widgets preserve each other’s fullscreen and picture-in-picture document state, and MCP App iframes remain transparent in dark hosts (#2454, #2610)
  • Fix (@mcp-use/cli): whoami uses the account’s default organization when none is selected locally, and whitespace around skills.directory no longer breaks skill discovery (#2570, #2597)
  • Fix (create-mcp-use-app): template tsconfigs load Node types explicitly so new projects typecheck with TypeScript 7 (#2595)
  • Documentation: new cookbook recipes cover Daytona code execution, Next.js, Upstash rate limiting, Sentry error tracking, and TanStack Start; examples also show A2UI generative views (#2513, #2515, #2564, #2566, #2572, #2518)
  • Update: release CI checks SDK changesets and changelog entries (#2579)
  • Update: Updated @mcp-use/inspector to v20.3.11; see the Inspector changelog
  • Update: Updated @mcp-use/cli to v4.1.15
  • Update: Updated create-mcp-use-app to v2.0.7
September 2026

Scrollable Inspector app results

Patch release keeping tall MCP App tool results accessible in Inspector.
  • Fix (@mcp-use/inspector): tall MCP App results scroll within the tool result panel; see the Inspector changelog (#2598)
  • Update: Updated @mcp-use/inspector to v20.3.10
  • Update: Updated @mcp-use/cli to v4.1.14
September 2026

Agent step limits & client progress routing

Patch release fixing per-call agent budgets and SDK notification handling, with Inspector cloud model selection improvements.
  • Fix (@mcp-use/agent): maxSteps passed to run, stream, or streamEvents limits model calls for that invocation while preserving the constructor default for later calls (#2437)
  • Fix (@mcp-use/client): progress and cancellation notifications reach the SDK handlers with all required arguments; progress stays associated with the correct call across concurrent requests and multi-round retries (#2548)
  • Update (@mcp-use/agent): MCPServerConfig.auth_token is deprecated but retained for type compatibility; use authToken to send an authentication token (#2486)
  • Fix (@mcp-use/inspector): managed chat uses the selected model’s branding and a curated cloud provider picker; see the Inspector changelog (#2575, #2576)
  • Update (server): update Hono to ^4.13.5 and Next.js to ^16.3.3 (#2492, #2495)
  • Update: the TypeScript workspace no longer installs Husky Git hooks; contributors must run formatting and lint checks manually (#2582)
  • Update: Updated @mcp-use/inspector to v20.3.9
  • Update: Updated @mcp-use/cli to v4.1.13
September 2026
Release 2.5.0

Public chat CTA

Minor release adding a landing-page chat button plus client, CLI, and agent lifecycle fixes.
  • New (server): the HTML landing page shows a “Go to chat” button when public chat is ready (#2496)
  • Fix (server): proxied resources/list keeps upstream annotations and _meta (#2469)
  • Fix (server): a malformed createJwtVerifier resource option throws TypeError at startup instead of reporting invalid_token (#2412)
  • Fix (@mcp-use/client): concurrent connect and disconnect calls are coalesced; a later disconnect cancels in-flight reconnects (#2458)
  • Fix (@mcp-use/client): useMcp stabilizes clientInfo and proxyConfig dependencies so parent re-renders do not reconnect (#2403)
  • Fix (@mcp-use/client): ViewRenderer removes the sandbox listener and cancels the readiness wait on unmount (#2421)
  • Fix (@mcp-use/cli): servers list validates --limit and --skip before authenticating so bad pagination is a usage error instead of “Not logged in.” (#2448)
  • Fix (@mcp-use/cli): a malformed JSON argument to client or screenshot is a usage error (exit 2) (#2444)
  • Fix (@mcp-use/cli): --secret must be passed on every servers env set write; omitting it stores the value as non-sensitive (#2423)
  • Fix (@mcp-use/tunnel): standalone mcp-tunnel defaults localHostHeader to localhost (#2456)
  • Fix (@mcp-use/agent): OpenRouter BYOK requests to OpenAI models use the Responses API (#2501)
  • Update: replace the @mcp-use/ext-apps package alias with official @modelcontextprotocol/ext-apps 2.0.0 (#2498)
  • Fix (@mcp-use/inspector): standalone Inspector rebuilds with the agent OpenRouter fix and repaired peer metadata; see the Inspector changelog (#2504)
  • Documentation (@mcp-use/cli): CLI reference states that --secret must be passed on every servers env set write (#2423)
  • Update: Updated @mcp-use/inspector to v20.3.8
  • Update: Updated @mcp-use/cli to v4.1.12
September 2026

AI SDK adapter & stricter CLI deletes

Patch release adding a dependency-free Vercel AI SDK adapter and failing CLI deletes when the target does not exist.
  • New (@mcp-use/client): createAiSdkTools exposes MCP tools as AI SDK dynamic tools (v5–v7) without adding an AI SDK dependency; example at packages/client/examples/node/ai-sdk-openai (#2441)
  • Fix (@mcp-use/cli): servers env unset and client remove fail when the target does not exist instead of printing a success line (#2411)
  • Documentation: elicitation samples no longer teach the removed ctx.elicit API (#2409); custom JWT docs distinguish aud from the RFC 8707 resource request parameter (#2443)
  • Update: Updated @mcp-use/inspector to v20.3.7
  • Update: Updated @mcp-use/cli to v4.1.11
September 2026

Publish artifact preservation

Patch release keeping package builds intact while npm pack runs.
  • Fix: concurrent publishing no longer drops the Client build while its tarball is created, and packed artifacts are checked for declared files and entry points (#2428)
  • Update: Updated @mcp-use/inspector to v20.3.6
September 2026

OAuth loopback recovery & scaffold help

Patch release recovering Node OAuth after a failed loopback bind, dropping a dead scaffold flag, and fixing Inspector chat widget connections.
  • Fix (@mcp-use/client): Node OAuth rebinds the loopback listener after a failed bind instead of hanging until authTimeoutMs (#2393)
  • Fix (create-mcp-use-app): help no longer lists --no-git; scaffolding has not initialized a git repository since #820 (#2392)
  • Fix (@mcp-use/inspector): chat MCP Apps use the registered connection id while keeping the logical server id for chat state and storage; see the Inspector changelog (#2404)
  • Update: Updated @mcp-use/inspector to v20.3.5
  • Update: Updated @mcp-use/cli to v4.1.10
  • Update: Updated create-mcp-use-app to v2.0.6
September 2026
Release 2.4.0

Convex OAuth provider

Minor release adding a built-in Convex verifier, failing screenshots on MCP App init errors, and stopping client OAuth retries after disconnect.
  • New (server/oauth): oauthConvexProvider verifies Convex OAuth Provider JWTs and exports from mcp-use/oauth/convex (#2372)
  • Fix (@mcp-use/client): OAuth authorization retries stop after the client disconnects (#2367)
  • Fix (@mcp-use/client): listAllResources holds one client reference across pagination so a mid-list disconnect surfaces the transport error instead of TypeError (#2387)
  • Fix (@mcp-use/cli): mcp-use screenshot fails with view_load_failed instead of writing a PNG when the MCP App fails to initialize (#2355)
  • Enhancement (@mcp-use/inspector): RPC traffic shows request duration instead of wall-clock time; see the Inspector changelog (#2364)
  • Enhancement (@mcp-use/inspector): embedded client-side chats can configure up to 100 agent steps; see the Inspector changelog (#2401)
  • Documentation: Convex provider guide under v2 TypeScript authentication (#2372)
  • Documentation (@mcp-use/cli): CLI reference corrections for org use, logout --yes, deployments, client remove --json, and removal of non-existent deploy flags (#2376, #2379, #2380, #2382)
  • Update: Updated @mcp-use/inspector to v20.3.4
  • Update: Updated @mcp-use/cli to v4.1.9
August 2026

Compact request logs & OAuth-ready tokens

Patch release collapsing MCP request logs to one line, projecting React OAuth tokens before ready, and using native Windows file watching in mcp-use dev.
  • Enhancement (server): request logs collapse to one compact line per HTTP request (tools/call greet /mcp 200 client=… 12ms); default info omits payloads, debug/trace add detail, and colocated mcp-use dev prefixes server lines with [server] (#2351)
  • Fix (@mcp-use/client): useMcp exposes OAuth authTokens in the same render that marks an authenticated connection as ready (#2358)
  • Fix (@mcp-use/cli): mcp-use dev uses Vite’s native file watching on Windows instead of 100ms polling, so an edit during startup is not swallowed as the watch baseline (#2338)
  • Enhancement (@mcp-use/inspector): JSON-RPC traffic rows show response latency in the timing column; see the Inspector changelog (#2349)
  • Documentation (@mcp-use/cli): published package README so the npm page is no longer blank (#2350)
  • Update: Updated @mcp-use/inspector to v20.3.3
  • Update: Updated @mcp-use/cli to v4.1.8
August 2026

Safer session replacement & scaffolds

Patch release cleaning up replaced client sessions, fresh-project validation, and scaffold guidance.
  • Fix (@mcp-use/client): MCPClient.createSession() disconnects an existing session before replacing it, preventing unreachable stdio children and HTTP sessions from remaining open (#1964)
  • Fix (@mcp-use/cli): binding validation no longer loads the React Vite plugin for projects without views, eliminating first-build dependency-resolution warnings in fresh mcp-server, blank, and starter projects (#2307)
  • Fix (create-mcp-use-app): scaffold output sends its “Learn more” link to docs.mcp-use.com instead of Manufact dashboard documentation (#2328)
  • Enhancement (@mcp-use/inspector): chat warns when a server exceeds the documented 128-tool limit for OpenAI or Gemini models; see the Inspector changelog (#2333)
  • Update: Updated @mcp-use/inspector to v20.3.2
  • Update: Updated @mcp-use/cli to v4.1.7
  • Update: Updated create-mcp-use-app to v2.0.5
August 2026

Claude view compatibility & request diagnostics

Patch release restoring Claude’s resource-domain contract, exposing prompt request controls, and making Inspector RPC responses easier to diagnose.
  • Fix (server/views): resources/read rewrites authored view domains to the stable SHA-256-based *.claudemcpcontent.com domain expected by Claude clients, using per-request client identity with a legacy User-Agent fallback while leaving other clients and resources/list unchanged (#2326)
  • Enhancement (@mcp-use/client): prompt reads accept MCP RequestOptions through both MCPClientSession.getPrompt and the underlying connector (#2302)
  • Enhancement (@mcp-use/inspector): JSON-RPC response rows show the correlated request method and elapsed time and flag error responses; see the Inspector changelog (#2303)
  • Update: Updated @mcp-use/inspector to v20.3.1
  • Update: Updated @mcp-use/cli to v4.1.6
August 2026

Responsive server URLs & reusable connection settings

Patch release keeping long landing-page URLs contained and exposing Inspector connection controls for embedded consumers.
  • Fix (server): long MCP server URLs truncate inside the landing-page hero on narrow viewports while remaining available through the copy button (#2313)
  • Enhancement (@mcp-use/inspector): export ConnectionSettingsForm, useConnectionFormState, connection configuration types, and optional consumer URL validation from @mcp-use/inspector/client; see the Inspector changelog (#2319)
  • Update: Updated @mcp-use/inspector to v20.3.0
August 2026
Release 2.3.0

Scalekit OAuth provider

Minor release adding a built-in Scalekit verifier and improving Inspector chat usage and session isolation.
  • New (server/oauth): oauthScalekitProvider validates environment-root and resource-scoped issuers, binds the JWT audience to the Scalekit res_… resource identifier, and advertises Dynamic Client Registration and Client ID Metadata Document support (#2272)
  • Fix (@mcp-use/inspector): Anthropic cache-creation tokens survive usage aggregation and Inspector traces without double-counting OpenAI cache reads; see the Inspector changelog (#2127)
  • Fix (@mcp-use/inspector): chat state, persistence, streaming, and OAuth retry are isolated by session so New Chat can start while another session is streaming; see the Inspector changelog (#2232)
  • Update: Updated @mcp-use/inspector to v20.2.5
August 2026

Workspace package alignment

Patch release aligning the published workspace dependency versions.
  • Update: Updated @mcp-use/inspector to v20.2.4
  • Update: Updated @mcp-use/cli to v4.1.5
August 2026

Inspector protocol selection

Patch release exposing protocol version controls in Inspector connections.
  • Enhancement (@mcp-use/inspector): connection setup and settings expose MCP protocol version selection and make configuration options easier to find; see the Inspector changelog
  • Update: Updated @mcp-use/inspector to v20.2.3
August 2026

Workspace package alignment

Patch release aligning the published workspace dependency versions.
  • Update: Updated @mcp-use/inspector to v20.2.2
  • Update: Updated @mcp-use/cli to v4.1.4
August 2026

OAuth protected-resource compatibility

Patch release accepting secure parent-path resource metadata in OAuth discovery.
  • Fix (auth): protected-resource metadata may identify a same-origin, segment-aware parent of the MCP endpoint, matching the official MCP TypeScript SDK while still rejecting unsafe resource values
  • Update: Updated @mcp-use/inspector to v20.2.1
  • Update: Updated @mcp-use/cli to v4.1.3
August 2026
Release 2.2.0

Custom OAuth verification & remote development

Minor release exporting JWT verification primitives and making remote MCP App development more reliable.
  • New (server/oauth): export createJwtVerifier, JwtVerifierOptions, and VerifiedPayload from mcp-use/oauth for custom OAuth providers
  • Fix (server): restore zero-config OAuth provider setup through MCP_USE_OAUTH_* environment variables while preserving explicit overrides
  • Fix (@mcp-use/cli): route Vite assets and HMR through the configured public MCP origin, pre-bundle view runtime dependencies and Zod, and ignore managed dev-server logs so remote views mount and update reliably
  • Enhancement (@mcp-use/inspector): embedded Chat exposes CSP mode and audit commands and ships the canonical Inspector style contract; see the Inspector changelog
  • Fix (create-mcp-use-app): canary scaffolds install canary SDK and skill sources instead of falling back to stable branches
  • Update: Updated @mcp-use/inspector to v20.2.0
  • Update: Updated @mcp-use/cli to v4.1.2
  • Update: Updated create-mcp-use-app to v2.0.4
August 2026

Mixed-auth recovery & scaffold names

Patch release supporting optional OAuth without blocking anonymous MCP connections and fixing generated npm package names.
  • Enhancement (auth): detect mixed-auth servers without blocking anonymous connections, resume protected operations through the official SDK OAuth flow, and preserve multiple Set-Cookie headers through the Node bridge
  • Fix (auth): recover optional OAuth discovery and CLI login after transient failures, keep ready React connections stable, and avoid reporting user-cancelled Inspector tool calls as failures
  • Fix (server): disable reverse-proxy buffering for open-ended MCP SSE responses so subscription acknowledgements are delivered immediately
  • Fix (create-mcp-use-app): sanitize named projects into valid npm package names, including quoted names and names beginning with underscores
  • Enhancement (@mcp-use/inspector): mixed-auth tool calls pause for authentication and resume the same chat turn; see the Inspector changelog
  • Update: Updated @mcp-use/inspector to v20.1.1
  • Update: Updated @mcp-use/cli to v4.1.1
  • Update: Updated create-mcp-use-app to v2.0.3
August 2026
Release 2.1.0

Skills over MCP & v2 server tooling

Minor release adding experimental Skills over MCP authoring to the v2 server and completing the package split around the standalone CLI and Inspector.
  • Fix: MCP v2 server responses preserve tool JSON Schema dialects and accept input-required prompt results (#2147)
  • Fix: Modern connections remain ready when optional upstream identity metadata is absent, while anonymous direct-proxy upstreams report a clear namespace error
  • New: Experimental Skills over MCP authoring discovers skills/, supports explicit disable and directory configuration, SEP-2640 resource methods, development reloads, and build-time embedding
  • New: Authenticated WebSocket tunneling is published as a standalone package and bundled into mcp-use dev/start --tunnel, with bounded HTTP, streaming, MCP JSON-RPC, and public WebSocket forwarding
  • Enhancement: mcp-use dev reconciles server and v2 view changes as coherent project generations, so stale reload candidates cannot replace the active handler or publish outdated catalogs
  • Update (@mcp-use/cli): CLI implementation and tests now live in @mcp-use/cli while preserving the mcp-use command and server API; Windows path handling and bundled SDK/license packaging are covered
  • Enhancement (@mcp-use/cli): Skills over MCP discovery in Inspector filters invalid skills from fresh development snapshots
  • Fix: Next.js Turbopack builds resolve the Skills over MCP loader correctly (#2197)
  • Enhancement (@mcp-use/inspector): typed Skills operations, a capability-gated file explorer with integrity verification, the window.openai compatibility bridge, and related runtime fixes; see the Inspector changelog
  • Fix (create-mcp-use-app): clear unused TypeScript export surface flagged by Knip without changing published package entry APIs
  • Update: Updated @mcp-use/inspector to v20.1.0
  • Update: Updated @mcp-use/cli to v4.1.0
  • Update: Updated create-mcp-use-app to v2.0.2
August 2026
Patch release fixing absolute links in the published package documentation.
  • Fix: README images and repository links use stable absolute URLs so npm renders the published package documentation correctly
  • Update: Updated @mcp-use/inspector to v20.0.4
August 2026

Stable package README metadata

Patch release making the published package README reliable on npm.
  • Fix: Publish a package-root README and verify that it stays synchronized with the repository README before packing
  • Update: Updated @mcp-use/inspector to v20.0.3
August 2026

Safer Inspector proxy & clearer CLI feedback

Patch release hardening hosted Inspector proxy defaults and making successful CLI commands visible.
  • Fix (@mcp-use/inspector): embedded and hosted Inspector mounts block loopback OAuth proxy targets by default; standalone local development keeps loopback access unless running in production
  • Enhancement (@mcp-use/cli): mcp-use start --with-inspector prints the mounted Inspector URL, and successful mcp-use typecheck runs print a completion message with elapsed time
  • Update: runtime and bundled dependencies use patched stable releases with tightened transitive resolutions
  • Update: Updated @mcp-use/inspector to v20.0.1
  • Update: Updated @mcp-use/cli to v4.0.1
August 2026
Release 2.0.0

MCP SDK v2 & server tooling

Major release migrating the TypeScript stack to the official MCP SDK v2 and introducing the v2 server, views, CLI, and scaffold architecture.
  • Update: The client and agent stack moves to the official MCP SDK v2, with automatic protocol negotiation, redesigned OAuth handling, ESM-only packages, a Node.js 22.22.2+ floor, and removal of v1 API aliases
  • New: The v2 server exposes a fetch-native Hono surface with typed MCP middleware, observers, CORS, OpenAPI generation, a Next.js adapter, request-scoped helpers, and production build/start tooling
  • New: The v2 views runtime adds typed ToolRef/useCallTool registration, file-based views, external or inline assets, shared React runtime handling, and managed Inspector integration
  • Enhancement (@mcp-use/cli): the CLI becomes ESM, adds client connect --negotiate, automatic client SDK installation, mcp-use typecheck, device-code login, and production tunneling
  • Enhancement (create-mcp-use-app): v2 templates use mcp-server, views/, mcp-env.d.ts, Bun-aware installs, and opt-in source maps while retaining the starter template as a deprecated alias
  • Enhancement (@mcp-use/inspector): the v2 Inspector adds project-pinned relay/OAuth tooling, hosted and local chat, immutable CDN assets, and MCP Apps/fullscreen improvements; see the Inspector changelog
  • Update: Updated @mcp-use/inspector to v20.0.0
  • Update: Updated @mcp-use/cli to v4.0.0
  • Update: Updated create-mcp-use-app to v2.0.0
July 2026

Proxied OAuth fallback & token refresh

Last v1 patch before 2.0.0. Ships the unpublished 1.34.4/1.34.5 canary fixes on the [email protected] tag.
  • Fix: default useMcp auto-proxy fallback uses https://inspector.manufact.com/inspector/api/proxy instead of the retired inspector.mcp-use.com host, whose 301 broke CORS preflight
  • Fix: refresh expiring OAuth access tokens with the discovered protected-resource URL, retain rotated refresh tokens, and do not reuse an expired token after refresh fails
  • Fix: proxied browser OAuth resource validation succeeds, and discovery failures surface immediately instead of waiting for a popup timeout
  • Documentation: CLI client example and Inspector README drop dead documentation links
  • Update: Updated @mcp-use/inspector to v12.0.6
  • Update: Updated @mcp-use/cli to v3.6.7
July 2026
Patch release fixing the tunnel popover documentation link.
  • Documentation (@mcp-use/inspector): the tunnel popover now links to https://mcp-use.com/docs/tunneling instead of the removed Manufact URL
  • Update: Updated @mcp-use/inspector to v12.0.3
  • Update: Updated @mcp-use/cli to v3.6.4
July 2026

Backend-less Inspector CDN shell

Patch release improving the Inspector bundle used by the SDK v2 backend-less shell.
  • Fix (@mcp-use/inspector): CDN auto-connect reads the URL injected by the SDK v2 shell, while the version badge and MCP clientInfo fall back to the compile-time bundle version when runtime injection is absent
  • Update: Updated @mcp-use/inspector to v12.0.2
  • Update: Updated @mcp-use/cli to v3.6.3
July 2026

Hosted OAuth discovery through the proxy

Patch release fixing the Authenticate button on gateway-hosted OAuth servers when MCP traffic is proxied for CORS.
  • Fix (auth): BrowserOAuthClientProvider re-anchors proxy-origin .well-known OAuth discovery onto the actual MCP server. When MCP is tunneled through the inspector/gateway proxy, the SDK derived discovery URLs from the proxy origin whenever no WWW-Authenticate hint was available (SSE transport, token refresh) — discovery failed on the proxy origin and the server was misclassified as “does not support OAuth”. Lookups are now rewritten to the server origin (including the RFC 8414 §3.1 / RFC 9728 §3.1 path-insertion form), so MCP traffic can stay behind the proxy while OAuth still resolves (#1843)
  • Update: Updated @mcp-use/inspector to v12.0.1
  • Update: Updated @mcp-use/cli to v3.6.2
July 2026
Release 1.34.0

OAuth proxy URL & hosted auth reliability

Minor release wiring oauthProxyUrl for transparent OAuth-only proxying and fixing false “Server does not support OAuth” failures on gateway-hosted servers.
  • New (react): UseMcpOptions.oauthProxyUrl routes OAuth discovery, DCR, and token exchange through a transparent server-side proxy while MCP traffic stays direct — takes precedence over the URL derived from proxyConfig.proxyAddress, preserves RFC 8414 issuer validation, and fixes gateway-fronted servers where proxying MCP anchored OAuth discovery on the wrong origin (#1840)
  • Fix (react): when OAuth discovery already succeeded and preventAutoAuth is set, a later failure (token refresh, SSE fallback, metadata probe on transport origin) surfaces pending_auth with the Authenticate button instead of failed / “Server does not support OAuth” (#1840)
  • Enhancement (@mcp-use/inspector): picks up mcp-use v1.34.0 OAuth fixes — see inspector changelog
  • Update: Updated @mcp-use/cli to v3.6.1
  • Update: Updated @mcp-use/inspector to v12.0.0
June 2026
Release 1.33.0

MCP Apps runtime, Auto connections & monorepo deploy triggers

Minor release making MCP Apps the primary widget runtime (with an Apps SDK compatibility fallback), enforcing outputSchema at the tool return position, adding monorepo auto-deploy controls to the CLI, and improving Inspector connection fallback behavior. Inspector ships major v11.0.0 (see inspector changelog).
  • New (react): MCP Apps is now the primary widget runtime — useWidget connects the MCP Apps bridge in any hosted iframe (including ChatGPT) and applies host context style variables, while window.openai is kept for extension APIs such as file upload/download (#1739)
  • Fix (react): widgets on Apps SDK-only hosts no longer hang on the loading spinner — useWidget falls back to window.openai data and actions when the MCP Apps bridge does not connect, and a connected bridge still takes priority (#1794)
  • Fix (react/auth): OAuth proxy fetch is scoped to the selected server’s provider instead of mutating global fetch, so Via Proxy connections no longer affect Direct connections or unrelated requests (#1770)
  • Fix (react): automatic proxy fallback applies the runtime proxy config before deriving gateway URLs and headers, so fallback retries route through the configured Inspector proxy (#1795)
  • New (server): a tool’s outputSchema is now type-checked at the return position — returning a shape that does not match is a compile-time error, while content-only helpers (text(), markdown(), image(), …) stay allowed; the Apps SDK adapter auto-derives openai/widgetDescription from the widget description (#1772)
  • Enhancement (connectors): the stdio connector exposes a cwd argument for the spawned server process (#1785)
  • New (@mcp-use/cli): monorepo auto-deploy trigger config — mcp-use deploy gains --watch-paths and --wait-for-ci, and servers update gains --watch-paths, --deploy-branches, --wait-for-ci / --no-wait-for-ci, and --root-dir; servers get / update print the effective trigger config (#1793)
  • Enhancement (@mcp-use/cli): deploy surfaces the GitHub App installation URL up front when the app is not connected or lacks repo access, and exits cleanly in non-interactive contexts instead of hanging on a prompt (#1761)
  • Fix (@mcp-use/cli): deployments list preserves the API’s ordering instead of re-sorting by creation date client-side (#1752)
  • Fix (@mcp-use/cli): Codex skills install to .agents/skills instead of the unsupported .agent/skills path (#1756)
  • New (create-mcp-use-app): the starter and mcp-apps templates score 100% on the publishing checklist — tools declare a title and outputSchema and return matching structuredContent (#1772)
  • Enhancement (@mcp-use/inspector): new connections default to Auto mode, trying Direct first and falling back to the configured proxy when browser connection errors can be resolved through the proxy; see inspector changelog (#1795)
  • Documentation (@mcp-use/cli): the new monorepo deploy flags are documented in the CLI reference, deployment guide, and package README (#1793)
  • Update: Bumped hono to 4.12.25 (#1755) and vite to 8.0.16 (#1742)
  • Update: Updated @mcp-use/cli to v3.6.0
  • Update: Updated create-mcp-use-app to v0.14.17
  • Update: Updated @mcp-use/inspector to v11.0.0
June 2026

OAuth proxy callbacks, deploy fixes & hosted localhost chat

Patch release for OAuth proxy callback routing, server notification logs, dev-widget noise reduction, and CLI deploy/env fixes. Inspector ships v10.0.1 with hosted-localhost chat fallback and a chat scroll helper (see inspector changelog).
  • Fix (server/oauth): OAuth proxy mode brokers the upstream provider callback through the server’s own /oauth/callback, so providers only need one registered redirect URI per server while MCP clients keep their own redirect URI and state (#1728)
  • Fix (server/oauth): OAuth metadata discovery now mounts the RFC 8414 canonical /.well-known/oauth-authorization-server{issuer-path} route for authorization servers with path-suffix issuers (#1684)
  • New (server): outgoing notifications log sent and failed deliveries with session identifiers and error details (#1674)
  • Fix (server/widgets): dev mode no longer prints widget mounting, serving, or watcher logs when a project has no widgets; the watcher still detects widgets created later (#1730)
  • Enhancement (@mcp-use/cli): mcp-use deploy --dockerfile <path> selects a non-default Dockerfile relative to --root-dir or the repo root while keeping root Dockerfile auto-detection (#1746)
  • Enhancement (@mcp-use/cli): REPL/interactive tool calls support --screenshot, and resource subscription mode unsubscribes cleanly on Ctrl+C (#1592, #1687)
  • Fix (@mcp-use/cli): sensitive env vars returned without values render as <sensitive> and EnvVariable.value accepts null; remote API calls use the manufact.com base URL (#1717, #1745)
  • Fix (@mcp-use/cli): deploy repo-access checks use the backend’s authoritative per-installation repo endpoint, avoiding false “GitHub App cannot access repository” failures on large or multi-installation orgs (#1737)
  • Update: Bumped esbuild to v0.28.1 (#1734)
  • Update: Updated @mcp-use/cli to v3.5.2
  • Update: Updated @mcp-use/inspector to v10.0.1
June 2026
Release 1.32.0

OAuth token endpoint discovery

Minor release exposing the resolved OAuth token_endpoint and client credentials on useMcp().authTokens so backends can persist everything needed for proactive server-side token refresh.
  • New (auth): getTokenEndpoint() on BrowserOAuthClientProvider and OAuthSessionStore — resolves and caches the OAuth token endpoint via PRM → authorization-server metadata discovery; persisted in storage for consumers (#1714)
  • New (auth): getClientCredentials() returns stored client_id / client_secret from Dynamic Client Registration or a static client — most token endpoints require client_id on refresh (#1714)
  • Enhancement (react): useMcp().authTokens includes optional token_endpoint, client_id, and client_secret after auth — best-effort resolution that never blocks the auth flow (#1714)
  • Update: Updated @mcp-use/inspector to v10.0.0
June 2026

Servers update & branch-scoped deploy env

Patch release for workspace dependency alignment; @mcp-use/cli minor adds servers update and branch-scoped environment and deploy management.
  • New (@mcp-use/cli): mcp-use servers update <id-or-slug> mutates server config in place (production branch, name, description, build/start commands) without delete/recreate — preserving the URL slug and env vars; --branch maps to productionBranch; pass an empty string to --build-command/--start-command to clear overrides (#1711)
  • New (@mcp-use/cli): deploy --branch <name> defaults to the current git branch and scopes --env/--env-file sync to that branch’s preview environment (#1711)
  • Enhancement (@mcp-use/cli): servers env list/add/update/rm gain --branch for branch-scoped variables; update/rm accept a variable KEY (resolved within the branch scope) in addition to a UUID (#1711)
  • Enhancement (@mcp-use/cli): deployments restart gains --branch <name> (defaults to the deployment’s branch) (#1711)
  • Documentation (@mcp-use/cli): servers update and branch-scoped deploy/env flags in the package README and mcp-apps-builder deploy skill reference (#1711)
  • Update: Updated @mcp-use/cli to v3.5.0
  • Update: Updated @mcp-use/inspector to v9.0.1
June 2026
Release 1.31.0

OAuth popup reliability & credential lifecycle

Minor release fixing browser OAuth popup flows that stranded connections in “Authenticating…”, preserving credentials across routine React lifecycle churn, and clarifying platform-managed deploy feedback in the CLI. Inspector ships major v9.0.0 tracking the new peer dependency (see inspector changelog).
  • New: runAuthPopup() exported from mcp-use/auth — opener-owned popup runner that settles on a state-matched postMessage or BroadcastChannel result, popup close, a storage event for persisted tokens, or a timeout; close and timeout paths check storage before declaring cancelled so a missed message with landed tokens still succeeds (#1703)
  • Enhancement: runAuthPopup() keeps message and storage listeners alive for a grace window (default 20s) after popup.closed reports true without tokens — tolerates COOP browsing-context-group swaps that sever window.opener while the consent window is still open (#1703)
  • Fix (react): useMcp().authenticate() awaits runAuthPopup() and owns every terminal transition — success reconnects, cancelled/timeout return to pending_auth (re-enabling Authenticate), error fails the connection instead of hanging indefinitely (#1703)
  • Fix (auth): OAuth callback detects popup flow from stored flowType (not only window.name) and always broadcasts the result; result payloads carry the originating state and serverUrlHash so listeners scope to the right server and late failures do not clobber an already-ready connection (#1703)
  • Enhancement (auth): renderCloseWindowMessage() accepts an optional returnUrl link for tab-mode fallbacks when the popup cannot auto-close (#1703)
  • Fix (react): McpClientProvider.removeServer() no longer clears OAuth storage by default — pass { clearCredentials: true } for explicit logout; updateServer() and useMcp unmount no longer wipe credentials on routine lifecycle churn (#1703)
  • Fix: move chalk from optionalDependencies to dependencies — statically imported by server logging/lifecycle code, so pnpm install --no-optional no longer fails at module load (#1702)
  • Enhancement (@mcp-use/cli): after deploy --no-github, print a note that source lives in a private platform-managed repository and link to the dashboard to view or migrate to GitHub (#1703)
  • Enhancement (@mcp-use/cli): servers get shows mcp-use-managed (private) when the connected repo has no exposed GitHub full name (#1703)
  • Fix (@mcp-use/inspector): delete-server passes { clearCredentials: true } on explicit removal — see inspector changelog (#1703)
  • Update: Updated @mcp-use/inspector to v9.0.0
  • Update: Updated @mcp-use/cli to v3.4.2
June 2026

Chalk CJS compatibility

Patch release restoring CommonJS startup compatibility for server bundles on Node 22 and newer; Inspector ships v8.0.2 with the same mcp-use peer update.
  • Fix: downgrade chalk to v4 — chalk 5 is ESM-only and kept external by tsup, so the CJS bundle’s require("chalk") on Node 22 and newer returned the module namespace instead of the chalk instance, crashing CJS-built backends (e.g. the Next.js template) on startup with TypeError: import_chalk.default.gray is not a function (#1701)
  • Update: Updated @mcp-use/inspector to v8.0.2
  • Update: Updated @mcp-use/cli to v3.4.1
June 2026

Deploy without GitHub, device-code login & widget iframe fixes

Patch release for McpUseProvider zero-height collapse, useMcp disconnect/reconnect race fixes, and clearer not-ready errors; @mcp-use/cli minor adds tarball deploy without a user GitHub repo and non-interactive device-code login for web onboarding.
  • Enhancement (@mcp-use/cli): mcp-use deploy --no-github packs the local project into a tarball and uploads it to the platform-managed org so first deploy works without connecting GitHub; redeploys of a linked platform-managed server auto-detect from connectedRepository.isManaged (#1691)
  • New (@mcp-use/cli): mcp-use login --device-code <code> authenticates with a pre-approved OAuth device code for non-interactive flows (web onboarding), skipping the browser step (#1691)
  • Fix: McpUseProvider with autoSize now notifies zero height when a widget renders null, so host iframes collapse instead of keeping the last non-zero height (#1693)
  • Fix (react): useMcp stale disconnect() after a URL change or a manual disconnect racing a reconnect no longer nulls clientRef or resets hook state to discovering when superseded by a newer connect() (connectEpochRef) — fixes “MCP client is not ready (current state: ready)” and similar races in the inspector and other embeds (#1528)
  • Fix (client): BaseMCPClient.closeSession() only deletes a session slot when it still references the closing session, so a parallel createSession() from a reconnect is not wiped — fixes “No active session found” on the next tool call after reconnect (#1528)
  • Enhancement (react): clearer “MCP client is not ready” errors via formatMcpNotReadyReason, distinguishing a missing client (client disconnected) from a non-ready state (#1528)
  • Fix (@mcp-use/inspector): MCP Apps / Apps SDK status labels no longer intercept iframe pointer events - see inspector changelog (#1694, #1678)
  • Documentation: tip on <McpUseProvider /> for widgets that conditionally return null with autoSize
  • Documentation: deploy --no-github, login --device-code, and dual deploy paths in the CLI reference and Manufact Cloud deployment guide
  • Update: Updated @mcp-use/inspector to v8.0.1
  • Update: Updated @mcp-use/cli to v3.4.0
June 2026
Release 1.30.0

OpenAPI server generation & MCP instructions

Minor release adding MCPServer.fromOpenAPI() for generating MCP tools from OpenAPI documents, server-wide instructions returned during MCP initialization, idle session ref cleanup, and CLI fixes for paginated cloud lists and multi-installation GitHub repo access. Inspector ships major v8.0.0 tracking the new mcp-use peer dependency (see inspector changelog).
  • New: MCPServer.fromOpenAPI() - create an MCP server from a parsed OpenAPI document; each included operation registers as a tool with generated input schemas and HTTP request handling (baseUrl, bearer token, and static header auth supported); ships with an openapi server example against live api.weather.gov (#1583)
  • New: instructions option on MCPServer - server-wide model instructions returned during MCP initialization for cross-tool workflows and constraints that do not belong in individual tool descriptions (#1601)
  • New (create-mcp-use-app): starter and mcp-apps templates scaffold with an instructions placeholder (#1601)
  • Fix: idle session cleanup releases registered refs for expired sessions instead of leaving stale registrations behind (#1624)
  • Fix: escape backslashes before double quotes when converting Zod string literals and enums to TypeScript in zod-to-ts, so generated .d.ts output stays valid when literal values contain \ or " (#1661)
  • Update: bump hono to 4.12.23 for CVE-2026-47674 - non-canonical IPv6 forms could bypass static deny rules in the ip-restriction middleware (#1663)
  • Enhancement (@mcp-use/cli): servers list and deployments list handle paginated Cloud API responses with a default page size of 30 and next-page guidance (#1619)
  • Fix (@mcp-use/cli): deploy repo access check aggregates repos across all GitHub App installations linked to the organization instead of only the first one, so deploys no longer fail with “GitHub App doesn’t have access” when the repo belongs to a different installation (#1629, MCP-2358)
  • Documentation: OpenAPI server generation guide and examples/server/features/openapi (#1583)
  • Documentation: MCP server instructions in configuration, quickstart, and installation docs (#1601)
  • Update: Updated @mcp-use/inspector to v8.0.0
  • Update: Updated @mcp-use/cli to v3.3.2
  • Update: Updated create-mcp-use-app to v0.14.15
June 2026

OAuth transport auth hardening & security dependency bumps

Patch release hardening OAuth-protected MCP transport routes and resolving open Dependabot security advisories across the TypeScript workspace.
  • Fix: Harden authentication coverage for OAuth-protected MCP transport endpoints and advertise path-scoped protected-resource metadata where required by OAuth clients (#1628)
  • Update: Bump hono to ^4.12.18 and raise pnpm.overrides floors for axios, protobufjs, ws, uuid, fast-uri, postcss, langsmith, dompurify, qs, react-router, better-auth, and other flagged transitive deps so the lockfile resolves to patched versions within current majors (#1615, #1626)
  • Update: Updated @mcp-use/inspector to v7.0.1
  • Update: Updated @mcp-use/cli to v3.3.1
June 2026
Release 1.29.0

Public landing pages and Ollama chat support

Minor release adding a public browser landing page for OAuth-protected servers, a Supabase URL override for local/self-hosted instances, Claude UI-resource domain hashing, and a round of OAuth callback and React-provider hardening. Inspector ships a major v7.0.0 with local LLM (Ollama) chat and image tool results (see inspector changelog).
  • New: publicLandingPage option on MCPServer - keep the browser landing page (GET + Accept: text/html) reachable without authentication while the MCP endpoint stays OAuth-protected; ships with a public-landing-page server example (#1550)
  • New: supabaseUrl override on oauthSupabaseProvider - point the provider at a local or self-hosted Supabase (e.g. http://localhost:54321) instead of the hosted https://${projectId}.supabase.co; set via the supabaseUrl config option or MCP_USE_OAUTH_SUPABASE_URL, and projectId becomes optional when it is set (#1517)
  • New: Claude UI-resource domain hashing - when a Claude client requests a widget/UI resource that declares a ui.domain, the server rewrites it to a stable <sha256-prefix>.claudemcpcontent.com content domain (#1599)
  • Breaking: mcp-use/browser no longer exports the LangChain agents (MCPAgent, RemoteAgent, adapters, observability, AI SDK utils) - they moved to mcp-use/browser/agent, so client bundles that only need MCPClient no longer pull in @langchain/* (#1580)
  • Fix: browser OAuth popup callback edge cases in onMcpAuthorization() - popups whose window.opener was severed by COOP / cross-origin redirects now render an in-place close-window message and broadcast over a same-origin BroadcastChannel("mcp_auth_callback") so useMcp no longer hangs in authenticating; repeat invocations in one page load (HMR, strict-mode double render) reuse a cached promise instead of re-exchanging the code (#1580)
  • Fix: redact OAuth token-verification errors from client responses while logging the details server-side (#1573)
  • Fix: normalize the issuer trailing slash before appending /.well-known/oauth-authorization-server in the DCR-direct metadata proxy, fixing the double-slash 404 against providers like Auth0 (#1483)
  • Fix: normalize 0.0.0.0 and :: to localhost in the inspector autoConnect URL so OAuth-protected mcp-use dev flows match the published resource metadata and pass the SDK’s strict origin check (#1552)
  • Fix (react): McpClientProvider.removeServer / updateServer no longer trigger React’s “cannot update a component while rendering a different component” warning - teardown side effects (disconnect(), clearStorage()) now run after the state updaters instead of inside them (#1561)
  • Fix (react): treat name as a meaningful change in McpServerWrapper so alias-only edits propagate through onUpdate and the inspector tile heading updates immediately (#1539)
  • Fix: pin published dependency versions in mcp-use’s package.json (#1610)
  • New (@mcp-use/cli): mcp-use client screenshot auto-sizes captures to the widget’s natural rendered dimensions when --width/--height are omitted, and now handles external MCP server URIs like ui://excalidraw/mcp-app.html (flattened to <server>-<name>) that previously broke the preview route (#1579)
  • Fix (@mcp-use/cli): widget assets resolve correctly when MCP_URL is set at build time - Vite base and window.__getFile now point at ${MCP_URL}/mcp-use/widgets/{widget}/, matching the production static route (#1560)
  • Fix (create-mcp-use-app): move the mcp-apps template’s pnpm settings into pnpm-workspace.yaml so scaffolded apps install cleanly under pnpm 10 (#1602)
  • Enhancement (@mcp-use/inspector): local LLM provider (Ollama) chat, MCP image tool results forwarded as real image content, an MCP-server reconnect banner, and widget fullscreen / display-mode fixes (see inspector changelog)
  • Documentation: clarify the “Inspector: Skipped in production” log and the start CLI reference so users rebuild with mcp-use build --with-inspector instead of passing the flag to mcp-use start (#1505)
  • Chore: prune 187 unused exports and delete unused source files flagged by Knip across the workspace, and enforce Knip in CI (#1511, #1476, #1510, #1512)
  • Update: Updated @mcp-use/inspector to v7.0.0
  • Update: Updated @mcp-use/cli to v3.3.0
  • Update: Updated create-mcp-use-app to v0.14.13
May 2026
Release 1.28.0

Node OAuth & widget screenshot

Minor release adding a Node OAuth client provider and widget screenshot improvements.
  • New: mcp-use/auth/node entrypoint — NodeOAuthClientProvider, FileKVStore, the KVStore type, and re-exports of the SDK’s auth and UnauthorizedError; the provider owns a localhost OAuth loopback (preferred port 33418, walks up to 33427 on conflict) and persists tokens, client info, and code verifiers to ~/.mcp-use/oauth/<urlHash>/ with 0o600 perms and atomic-rename writes (#1452)
  • Refactor: OAuthSessionStore extracted from BrowserOAuthClientProvider — platform-neutral helper parameterised over a KVStore that owns token storage, JWT-expiry-driven refresh (with deduplication), client-info validation, code-verifier handling, and authorization-state persistence; the browser provider now delegates the SDK OAuthClientProvider methods to it, no behavior change (#1451)
  • Fix: forceRefresh() now actually exchanges the refresh token via OAuthSessionStore.forceRefresh() instead of zeroing access_token and re-reading via tokens() (which gated the refresh path on a truthy access_token and silently returned stale tokens); the loopback failure page also HTML-escapes error and error_description (#1452)
  • Documentation: MCPServer.tool() JSDoc @example blocks now include the matching import { ... } from "mcp-use/server" line and name the response helpers (text, object, image, markdown, html, error, widget, …); the create-mcp-use-app blank template’s commented tool/resource/prompt blocks gain the same import breadcrumbs (#1474)
  • Fix (@mcp-use/cli): tests no longer touch the developer’s real ~/.mcp-use directory — session-storage.test.ts mocks node:os.homedir and cli-integration.test.ts spawns the CLI with HOME/USERPROFILE set to per-test temp dirs (#1494)
  • Update (@mcp-use/cli): rename “mcp-use cloud” to “Manufact cloud” in mcp-use login --help and the body banner, matching the existing wording in logout and deploy (#1488)
  • Enhancement (@mcp-use/inspector): new ViewPreview component and /preview/:view route, dark-mode aware scrollbars (see inspector changelog)
  • Fix: resolved duplicate exports flagged by Knip — annotated the Tel alias for Telemetry with @alias, unified the canonical source path for telemetry exports in src/telemetry/index.ts (Node default, tsup substitutes the browser implementation in browser bundles), and removed the redundant default export of JsonRpcLoggerView in @mcp-use/inspector; named exports unchanged (#1453)
  • Chore: drop unused dependencies and devDependencies flagged by knip across the workspace; declare jsdom and @vitest/coverage-v8 as explicit devDependencies on mcp-use (@vitest/coverage-v8 pinned to ~4.0.18 to match vitest) (#1458, #1454)
  • Documentation: refreshed CLI references in the docs site (#1488)
  • Update: Updated @mcp-use/inspector to v6.0.0
  • Update: Updated @mcp-use/cli to v3.2.0
  • Update: Updated create-mcp-use-app to v0.14.12
May 2026

ChatGPT App metadata & inspector MCP App width fix

Patch release surfacing tool outputSchema in tools/list, adding tool annotations and outputSchema to the create-mcp-use-app mcp-apps template, and fixing MCP App width in inspector chat.
  • Fix: Forward outputSchema from tool definitions into the MCP SDK so tools/list exposes output JSON Schema for clients - required for ChatGPT App Store metadata validation (#1466)
  • New (create-mcp-use-app): MCP tool annotations (readOnlyHint, openWorldHint, destructiveHint) and widget outputSchema in the mcp-apps template; tool annotations in the starter template; MCP Apps docs aligned with ChatGPT App Store metadata expectations (#1466)
  • Fix (@mcp-use/inspector): MCP App width is pinned in chat - only height responds to widget-reported sizes, so the chat panel no longer collapses when a widget reports narrower content (#1462) (see inspector changelog)
  • Documentation: Clerk and WorkOS OAuth example READMEs now link to live pages - Clerk Dashboard /sign-in (200 instead of 404) and WorkOS /docs/authkit (#1470)
  • Update: Updated @mcp-use/inspector to v5.0.1
  • Update: Updated @mcp-use/cli to v3.1.4
  • Update: Updated create-mcp-use-app to v0.14.11
May 2026
Release 1.27.0

Clerk OAuth, pre-registered client IDs & inspector providers

Minor release adding a Clerk OAuth provider, pre-registered OAuth client credentials for proxy-mode flows, OpenRouter and OpenAI-compatible providers in the Inspector chat, browser-side telemetry env-var honoring, and a CLI fix for env propagation on redeploys.
  • New: oauthClerkProvider for using Clerk as an OAuth authorization server in MCP servers - DCR-direct mode where MCP clients register and authenticate directly with Clerk and the server verifies Clerk-issued JWTs via JWKS; default scopes are ["profile", "email", "offline_access"] and openid is excluded by default because it requires OIDC to be explicitly enabled in the Clerk Dashboard (#1429)
  • New: Pre-registered OAuth client credentials in proxy mode - UseMcpOptions / McpServerOptions accept oauth: { clientId?, clientSecret?, scope? }; with clientId set, BrowserOAuthClientProvider returns it from clientInformation() so the SDK skips Dynamic Client Registration (required for providers like Slack or WorkOS that strip registration_endpoint from metadata); with clientSecret set, the SDK auto-switches token-endpoint auth from none to client_secret_basic/client_secret_post (#1400)
  • Fix: MCP_USE_ANONYMIZED_TELEMETRY=false now disables the in-browser useMcp posthog-js init - the inspector server mirrors the env var into a per-page runtime flag (window.__MCP_USE_ANONYMIZED_TELEMETRY__) before the client bundle runs, so a single env var disables every telemetry path (Node-side, server-side proxy, and browser); the flag is page-scoped so unsetting the env var fully restores defaults on the next page load (#1443)
  • Fix (@mcp-use/cli): mcp-use deploy --env/--env-file propagates env vars on redeploys - previously only forwarded on initial server creation, now upserts each entry against the env-variables API (PATCH for existing keys, POST for new keys) before triggering the deployment (#1433)
  • Enhancement (@mcp-use/inspector): OpenRouter and OpenAI-compatible providers in chat configuration; Client ID / Client Secret / Scope fields in the Authentication dialog (see inspector changelog)
  • Update: Updated @mcp-use/inspector to v5.0.0
  • Update: Updated @mcp-use/cli to v3.1.3
April 2026

Debug log tiers & widget dev first render

Patch release adding tiered MCP_DEBUG_LEVEL logging for MCP servers, pre-warming Vite widget entries in dev to avoid first-render 504s, and Inspector 3.0.2 (see inspector changelog).
  • New: MCP_DEBUG_LEVEL environment variable on MCP servers - info (default), debug, or trace - tiered framework logging with clearer precedence than legacy truthy DEBUG (#1430)
  • Fix: Widget dev server pre-warms Vite entries before tool registration so the first widget render does not time out with HTTP 504 (#1425)
  • Fix (@mcp-use/inspector): Command palette e2e tests updated for the Settings dropdown trigger (#1428) (see inspector changelog)
  • Update: Updated @mcp-use/inspector to v3.0.2
  • Update: Updated @mcp-use/cli to v3.1.2
  • Update: Updated create-mcp-use-app to v0.14.10
April 2026

OAuth error handling, Supabase endpoints & CLI bundling

Patch release fixing OAuth error redirects, Supabase OAuth 2.1 endpoints, CLI bundling for Node ESM, bun build compatibility, create-mcp-use-app dot-directory init, and Inspector 3.0.1 (see inspector changelog).
  • Fix: OAuth callback redirects back to the inspector with error parameters when authorization fails (user denies, server error) instead of surfacing a raw error page with stack traces; the inspector surfaces these as a persistent toast (#1381)
  • Fix: SupabaseOAuthProvider endpoint getters now return OAuth 2.1 paths (/auth/v1/oauth/authorize, /auth/v1/oauth/token) instead of the legacy /auth/v1/authorize and /auth/v1/token (#1422)
  • Fix (@mcp-use/cli): mcp-use build is non-fatal under the bun runtime - detects bun, skips tsx/esm/api type-generation with a warning, wraps the build in try/catch, and runs tsc via process.execPath instead of hardcoded node (#1382)
  • Fix (@mcp-use/cli): bundle each server entry with esbuild (bundle: true, packages: "external") so extensionless relative TypeScript imports resolve under plain Node ESM without ERR_MODULE_NOT_FOUND (#1357)
  • Fix (create-mcp-use-app): allow . as project name to initialize in the current directory; errors if the directory is not empty (#1413)
  • Enhancement (@mcp-use/inspector): OAuth single-tab redirect, session-storage reconnect, Hono duck-type detection, widget z-index, free-tier embed UI, managed LLM embed chrome (see inspector changelog)
  • Update: Updated @mcp-use/inspector to v3.0.1
  • Update: Updated @mcp-use/cli to v3.1.1
  • Update: Updated create-mcp-use-app to v0.14.10
April 2026
Release 1.25.0

OAuth DCR-direct, Next.js drop-in & CLI 3.1

Minor release refactoring built-in OAuth providers to DCR-direct by default, adding a Next.js MCP drop-in via --mcp-dir, CLI 3.1 with better org and session handling, and Inspector 3.0 (see inspector changelog).
  • New: oauthProxy helper for building proxy-mode providers (Google, GitHub, or any upstream authorization server that does not support Dynamic Client Registration) - complements the new DCR-direct default (#1321)
  • New: jwksVerifier helper for JWKS-based token verification inside custom providers (#1321)
  • New: Auth0 OAuth proxy example under examples/server/oauth/auth0-proxy demonstrating the new proxy pattern
  • Update: Built-in providers (Auth0, WorkOS, Supabase, Keycloak, Better Auth) now only support DCR-direct - clients talk to upstream authorization servers directly, and provider configurations no longer accept clientId / clientSecret (#1321)
  • Update: verifyToken is now a required function on custom providers (#1321)
  • Fix: OAuth authenticate() preserves the pathname component (for example /api/auth) when the authorization server uses a basePath, instead of collapsing the URL to its origin (#1360)
  • New: Next.js drop-in - mcp-use dev/build/start --mcp-dir <dir> lets a Next.js app colocate an MCP server (default src/mcp/), share @/* aliases, Tailwind, and the app’s component library; the CLI auto-shims Next.js server-runtime modules (server-only, client-only, next/cache, next/headers, next/navigation, next/server) when next is detected, loads the Next.js env cascade in the MCP server process, and widget builds fail fast when a widget transitively imports a server-only module (#1332)
  • New (@mcp-use/cli): mcp-use login --org <slug|id|name> for non-interactive org selection; login fails fast without a TTY and no --org instead of hanging on stdin (#1379)
  • New (@mcp-use/cli): ORG column in mcp-use deployments list output (#1378)
  • Fix (@mcp-use/cli): mcp-use deploy --org <org> now respects the flag when .mcp-use/project.json links to a server in a different org - CLI warns and creates a new server in the requested org instead of silently redeploying to the linked one (#1380)
  • Fix (@mcp-use/cli): mcp-use login validates the stored API key against the backend before short-circuiting with “already logged in”; expired or revoked keys drop into device-auth automatically, and authenticated commands (whoami, org, servers, deployments, env) funnel 401s through a shared handler with a “session expired - run npx mcp-use login” hint (#1383)
  • Fix (@mcp-use/cli): mcp-use start auto-discovers an available port when the default port is in use (#1377)
  • Enhancement (@mcp-use/inspector): Inline elicitation in the chat thread, Open Graph and Twitter Card meta tags on the hosted inspector (see inspector changelog)
  • Enhancement (create-mcp-use-app): Only copy the mcp-apps-builder skill into new projects; skip the deprecated mcp-builder and chatgpt-app-builder skills (#1375)
  • Documentation: New oauth-proxy provider guide and refactored provider pages (Auth0, WorkOS, Supabase, Keycloak, Better Auth, custom); new Next.js drop-in guide; updated CLI reference
  • Update: Updated @mcp-use/inspector to v3.0.0
  • Update: Updated @mcp-use/cli to v3.1.0
  • Update: Updated create-mcp-use-app to v0.14.9
April 2026
Patch release adding optional colorScheme on McpUseProvider, a server landing deeplink to the hosted inspector, stronger deploy behavior in @mcp-use/cli, cloud server environment-variable commands, and Inspector 2.2 (see inspector changelog).
  • New: colorScheme on McpUseProvider (default false) - when false, ThemeProvider does not set color-scheme on the document root so transparent iframe backgrounds stay transparent; opt in with true for native scrollbars / light-dark() in widgets
  • Fix: Server landing routes include a deeplink to open the MCP server in the hosted manufact inspector
  • New (@mcp-use/cli): mcp-use servers env subcommands to list, create, update, and delete environment variables on cloud servers (#1372)
  • Fix (@mcp-use/cli): mcp-use deploy surfaces failures from mutating git commands (init, commit, push), normalizes the default branch to main before push, verifies a commit exists, and shell-quotes commit messages (#1354)
  • Update (@mcp-use/cli): Deploy treats HTTP 401 as an invalid or expired API session and prompts re-authentication instead of misreporting GitHub App connection state (#1356)
  • Enhancement (@mcp-use/inspector): Hosted chat configuration, copy/export chat, inspector LLM stack without LangChain, OAuth popup close page, and related UX (see inspector changelog)
  • Update: Updated @mcp-use/inspector to v2.2.0
  • Update: Updated @mcp-use/cli to v3.0.2
April 2026

OAuth fetch cleanup when switching transports

Patch release fixing OAuth in the embedded inspector when switching from Via Proxy to Direct - BrowserOAuthClientProvider restores window.fetch when useMcp unmounts so a stale proxy interceptor cannot break direct flows.
  • Fix: Restore the window.fetch interceptor installed by BrowserOAuthClientProvider when useMcp unmounts - resolves “Protected resource does not match” after switching from Via Proxy to Direct
  • Fix (@mcp-use/inspector): Same fetch lifecycle in the inspector client (see inspector changelog)
  • Update: Updated @mcp-use/inspector to v2.1.0
  • Update: Updated @mcp-use/cli to v3.0.1
April 2026
Release 1.24.0

OAuth scopes, telemetry & CLI 3

Minor release for mcp-use with OAuth scope customization, telemetry, sub-path OAuth routing, and a Generative-AI JSON Schema fix; major @mcp-use/cli release with device-flow auth and manufact API alignment; Inspector 2.0 (see inspector changelog).
  • New: Configurable OAuth scopes - scopesSupported on shared OAuth config and built-in providers
  • Fix: CustomProviderConfig matches documented fields (jwksUrl, scopesSupported, userInfoEndpoint, clientId, clientSecret, mode, audience); optional getClientId(), getUserInfoEndpoint(), and getAudience() on OAuthProvider; OAuth routes use those accessors instead of unsafe casts
  • New: Telemetry support with browser and Node implementations and related dependency updates
  • New: defaultCallbackUrl on McpClientProvider so OAuth redirect URLs stay correct when the UI is mounted under a path basename (for example embedded inspector at /inspector)
  • Fix: Google provider tool schemas - use z.object({}).catchall() instead of z.record() so emitted JSON Schema omits propertyNames, which Google’s API rejects
  • Fix: Windows path handling in server and tooling code paths
  • Enhancement: Several internal log lines moved from info to debug to reduce noise in normal operation
  • Fix (@mcp-use/inspector): OAuth callback URL when the inspector basename is /inspector; thinking indicator after streamed assistant messages; tab persistence across refresh (see inspector changelog)
  • New (@mcp-use/cli): Device-flow authentication for login and session refresh against the cloud
  • Update (@mcp-use/cli): CLI refactored to new manufact cloud APIs across deploy, auth, organization, and server commands
  • Fix (@mcp-use/cli): Deployment flow when linking GitHub repositories (#1331)
  • Update: Updated @mcp-use/inspector to v2.0.0
  • Update: Updated @mcp-use/cli to v3.0.0
April 2026

Embedded inspector without LangChain

Patch release fixing embedded inspector when the agent graph is not installed, and clearer diagnostics when mounting the inspector UI fails.
  • Fix: Export telFetch from mcp-use/telemetry/tel-fetch (tsup build) so inspector server code does not import the root mcp-use entry, which eagerly loads the agent stack - fixes embedded inspector when langchain is not installed
  • Fix: Log inspector UI mount failures in development or when MCP_USE_DEBUG is set (production remains quiet)
  • Fix (@mcp-use/inspector): telFetch import uses the telemetry subpath (see inspector changelog)
  • Update: Updated @mcp-use/inspector to v1.0.1
  • Update: Updated @mcp-use/cli to v2.21.4
April 2026
Release 1.23.0

Better Auth, server metadata & Inspector 1.0

Minor release adding a Better Auth OAuth provider, metadata-only client updates, dependency hardening, and a major Inspector release.
  • New: Better Auth OAuth provider for MCP servers - see authentication docs and examples/server/oauth/better-auth
  • New: updateServerMetadata() on McpClientProvider updates display metadata without reconnecting; connection-affecting changes still use updateServer()
  • Fix: Windows-compatible ESM import paths for dev and tooling
  • Enhancement (@mcp-use/inspector): Stream protocol in chat, disabledTools, editable server aliases with shared display-name resolution, tab persistence and URL sync, tool-invocation serialization and screenshots (see inspector changelog)
  • Update: Vite 8.0.5, Hono 4.12.12, @hono/node-server 1.19.13 across the TypeScript workspace
  • Fix: Tighter pnpm overrides and lockfile refresh for pnpm audit; lodash override in the mcp-apps scaffold template for standalone installs
  • Documentation: updateServerMetadata in the useMcpClient API reference; authentication overview links to the Better Auth guide
  • Update: Updated @mcp-use/inspector to v1.0.0
  • Update: Updated @mcp-use/cli to v2.21.3
  • Update: Updated create-mcp-use-app to v0.14.8
March 2026

Inspector dependency & bundling alignment

Patch release adjusting how @mcp-use/inspector depends on mcp-use so bundling and shared types both work.
  • Fix (@mcp-use/inspector): Restore mcp-use as both a dependency and peerDependency - needed to bundle non-React subpaths (mcp-use/auth, mcp-use/browser) with transitive deps (e.g. LangChain), while peerDependency keeps mcp-use/react types aligned with the host app
  • Update: Updated @mcp-use/inspector to v0.26.1
  • Update: Updated @mcp-use/cli to v2.21.2
  • Update: Updated create-mcp-use-app to v0.14.7
March 2026

Type Compatibility & Peer Dependency Alignment

Patch release focused on pnpm peer-variant type compatibility, inspector dependency alignment, and template dependency cleanup.
  • Fix: Resolved TypeScript nominal type conflicts when mcp-use is installed as multiple pnpm peer-variant copies - moved internal client-init tracking off class surface to avoid .d.ts incompatibilities
  • Fix: Reverted stripInternal/@internal approach that degraded downstream tool handler type inference; keeps type safety while preserving consumer inference behavior
  • Fix (@mcp-use/inspector): Moved mcp-use from dependencies to peerDependencies so consumers share a single mcp-use type instance (addresses TS2322 duplicate-type scenarios)
  • Update (@mcp-use/inspector): Upgraded @mcp-ui/client to v7; replaced removed legacy renderer path with sandboxed iframe handling for ui:// resources and removed remote-dom usage
  • Update: Updated @mcp-use/inspector to v0.26.0
  • Update: Updated @mcp-use/cli to v2.21.1
  • Update: Updated create-mcp-use-app to v0.14.7
March 2026

CLI Organizations, Non-Interactive Deploy & Typed Middleware

Patch release with CLI org management, non-interactive deployments, improved middleware/tool context propagation, typed middleware ergonomics, and ErrorBoundary customization.
  • New (@mcp-use/cli): Organization commands - mcp-use org list, mcp-use org switch, mcp-use org current; login prompts for org selection when multiple; whoami shows active organization; org preference persisted in ~/.mcp-use/config.json
  • Enhancement (@mcp-use/cli): Deploy to a specific org with mcp-use deploy --org <slug-or-id>; all org-scoped API requests include x-profile-id
  • New (@mcp-use/cli): Non-interactive deploy with -y / --yes - skips confirmations; replaces “Press Enter” with polling; errors if not logged in (requires mcp-use login)
  • Fix: Context propagation into tool handlers - singleton AsyncLocalStorage via globalThis, safe Hono context extraction, and forwarding middleware ctx.auth / ctx.state into enhanced tool context
  • Fix: ctx.auth typing is now AuthInfo | undefined when OAuth isn’t configured (enables if (!ctx.auth) ... guards)
  • Enhancement: Typed MCP middleware context - server.use("mcp:tools/call" | "mcp:resources/read" | "mcp:prompts/get", ...) now narrows ctx.params to method-specific shapes; mcp:* remains generic
  • Enhancement: outputSchema tools can return response helpers (text(), markdown(), mix(), etc.) without type errors
  • Enhancement: server.resourceTemplate() supports an optional Zod schema to type params as z.infer<schema>
  • Enhancement: ErrorBoundary now supports fallback (node or (error) => node) and onError for reporting (default UI unchanged)
  • Update: Updated @mcp-use/inspector to v0.25.1
  • Update: Updated @mcp-use/cli to v2.21.0
March 2026
Release 1.22.0

Vite 8, MCP Middleware & Model Context

Minor release with Vite 8 across tooling, MCP operation middleware, files and model context APIs, elicit and adapter fixes, and Inspector tunnel controls.
  • New: MCP operation-level middleware - server.use("mcp:*", ...) and specific patterns (mcp:tools/call, mcp:tools/list, mcp:resources/read, mcp:resources/list, mcp:prompts/get, mcp:prompts/list) with typed MiddlewareContext (method, params, session, auth, state)
  • New: useFiles React hook with isSupported and modelVisible for file attachments; ModelContext component and modelContext imperative API for server-side model context injection
  • Enhancement: Vite 8.0 with Rolldown bundler and @vitejs/plugin-react 6 across packages, examples, and CLI/inspector tooling
  • Enhancement: Conformance client - pass reconnectionOptions so SDK-level SSE reconnection behaves correctly when autoReconnect is disabled
  • Fix: Elicit - map result.content to result.data for Zod validation; spec-compliant clients use content; backward-compatible fallback to data
  • Fix: LangChainAdapter - tool name collisions when exposing resources/prompts as tools; reserveName resolves prefixed names with a numeric suffix when needed; prompt names sanitized like resource names
  • Enhancement (@mcp-use/inspector): Start/stop the mcp-use dev tunnel from the Inspector (see inspector changelog)
  • Update: Updated @mcp-use/inspector to v0.25.0
  • Update: Updated @mcp-use/cli to v2.20.0
March 2026

Zod Peer Dep, Esbuild Build & Windows Fix

Patch release with Zod peer dependency, esbuild transpilation, TypeGen Zod v4 fixes, and Windows path handling.
  • Fix: Move zod from dependencies to peerDependencies - prevents duplicate type trees when users have a different Zod v4 version; avoids type errors or OOM during mcp-use build
  • Fix: TypeGen crash with Zod v4 enum schemas - zod-to-ts now handles Zod v4 ZodEnum (_def.entries), ZodDiscriminatedUnion; CLI reports success/failure of type generation instead of silently failing
  • Fix (@mcp-use/cli): Windows crash in mcp-use dev and mcp-use generate-types - use file:// URL in tsImport instead of raw OS paths (fixes ERR_UNSUPPORTED_ESM_URL_SCHEME)
  • Fix: Dependabot security alerts - updated flatted, tar, hono, express-rate-limit, dompurify, minimatch, rollup, form-data, lodash, and other transitive deps
  • Enhancement (@mcp-use/cli): mcp-use build uses esbuild for transpilation instead of tsc - avoids OOM on complex type graphs (Zod v4, Prisma); type checking runs separately via tsc --noEmit; add --no-typecheck to skip type checking for faster builds
  • Update: Updated @mcp-use/inspector to v0.24.5
  • Update: Updated @mcp-use/cli to v2.19.0
  • Update: Updated create-mcp-use-app to v0.14.6
March 2026

Request Context, CLI Build & README Fixes

Patch release fixing request context propagation, CLI build hang, and stale monorepo references.
  • Fix: ctx.auth and other request context properties were undefined in tool callbacks; mountMcp() now wraps transport.handleRequest() with runWithContext() so getRequestContext() is populated
  • Fix (@mcp-use/cli): mcp-use build no longer hangs - add process.exit(0) on success (tsImport creates active handles)
  • Fix: Update stale mcp-use-ts references in README badges, image URLs, eslint config to mcp-use monorepo
  • Update: Updated @mcp-use/inspector to v0.24.4
  • Update: Updated @mcp-use/cli to v2.18.3
March 2026

Inspector Sandbox Host Fix

Patch release fixing sandbox host derivation for cloud-embedded inspector pages.
  • Fix (@mcp-use/inspector): Sandbox host derivation for cloud-embedded pages - apex hosts (e.g. manufact.com) now resolve to sandbox-inspector.{domain} instead of sandbox-{domain}
  • Update: Updated @mcp-use/inspector to v0.24.3
  • Update: Updated @mcp-use/cli to v2.18.2
March 2026

Inspector Proxy Fix for Embedded Servers

Patch release fixing inspector auto-connect when served from MCP server (Python, etc.).
  • Fix (@mcp-use/inspector): Skip proxy when inspector is served from the MCP server itself - auto-connect no longer routes through missing /inspector/api/proxy on embedded servers
  • Fix (@mcp-use/inspector): Detect proxy availability via runtime config injection; disable autoProxyFallback when no proxy is available
  • Update: Updated @mcp-use/inspector to v0.24.2
  • Update: Updated @mcp-use/cli to v2.18.1
March 2026

Session Persistence & CLI Improvements

Patch release with session recovery fix, CLI enhancements, and create-mcp-use-app install improvements.
  • Fix: Session recovery after restart returns 400 fix; distributed SSE stream routing via Redis Pub/Sub
  • Enhancement (@mcp-use/cli): mcp-use build runs tool registry type generation before TypeScript compilation when server file exists
  • Enhancement (@mcp-use/cli): --root-dir option for deploy command for monorepo support
  • Fix (create-mcp-use-app): Remove flickering behaviour from npm i
  • Update: Updated @mcp-use/inspector to v0.24.1
  • Update: Updated @mcp-use/cli to v2.18.0
  • Update: Updated create-mcp-use-app to v0.14.4
March 2026
Release 1.21.0

Proxy Servers & Client Completion

Minor release with server composition, client-side completion, user context, and Express middleware types.
  • New: MCPServer.proxy() for composing multiple MCP servers into a single aggregator - automatic orchestration, schema translation, namespacing, list-changed multiplexing
  • New: Client-side completion support - complete() on BaseConnector, MCPSession, and useMcp; refreshResourceTemplates(); prompt argument and resource template URI autocomplete
  • New: ctx.client.user() for per-invocation end-user metadata (subject, conversationId) from tools/call params
  • Enhancement: ctx.client.supportsApps() now correctly returns true for MCP Apps clients (fixed ClientCapabilitiesSchema extensions stripping)
  • Enhancement: autoReconnect options - configurable health check interval, reconnection delay, timeout via reconnectionOptions
  • Enhancement: sendFollowUpMessage accepts MessageContentBlock arrays (text, image, resource blocks) per SEP-1865
  • Enhancement: Host info and capabilities - hostInfo, hostCapabilities in useWidget; getHostInfo, getHostCapabilities on McpAppsBridge
  • Fix: Express middleware types - proper TypeScript types for server.use() with Express middleware (auto-detected and adapted)
  • Fix: Session isolation - findSessionContext no longer falls back to arbitrary session, preventing metadata leakage
  • Fix: Remove deprecated @types/tar; update tar to latest (cli, create-mcp-use-app)
  • Update: Updated @mcp-use/inspector to v0.24.0
  • Update: Updated @mcp-use/cli to v2.17.0
  • Update: Updated create-mcp-use-app to v0.14.3
  • Documentation: Per-server elicitation and sampling callbacks examples; proxy servers section
February 2026

CLI Tunnel Support

Patch release adding tunnel flag for ChatGPT HMR.
  • New (@mcp-use/cli): Support for --tunnel flag with full ChatGPT HMR
  • Update: Updated @mcp-use/inspector to v0.23.1
  • Update: Updated @mcp-use/cli to v2.16.0
February 2026

Inspector Embedded Chat

Patch release with inspector embedded chat improvements.
  • Enhancement (@mcp-use/inspector): Improved embedded chat
  • Update: Updated @mcp-use/inspector to v0.23.0
  • Update: Updated @mcp-use/cli to v2.15.4
February 2026

Inspector Standalone Deployment Fix

Patch release fixing inspector standalone deployment version import.
  • Fix (@mcp-use/inspector): Standalone deployment was importing the version from the wrong path
  • Update: Updated @mcp-use/inspector to v0.22.3
  • Update: Updated @mcp-use/cli to v2.15.3
February 2026

Health Monitoring & MCPAgentOptions

Patch release with dynamic auth headers for health checks and MCPAgentOptions for chat agent.
  • Enhancement: getAuthHeaders parameter to startConnectionHealthMonitoring for customizable authentication headers during health checks; HEAD requests allowed without authentication
  • Enhancement: exposeResourcesAsTools and exposePromptsAsTools options in MCPAgentOptions (both default to true); inspector chat tab sets both to false so agent only exposes actual MCP tools
  • Update: Updated @mcp-use/inspector to v0.22.2
  • Update: Updated @mcp-use/cli to v2.15.2
February 2026

Widget Status Texts & CSP Handling

Patch release with widget metadata enhancements and CSP improvements.
  • New: invoking and invoked properties in widget metadata for customizable status messages during tool execution
  • Breaking: McpUseProvider no longer includes BrowserRouter; add it explicitly if your widget uses react-router
  • Enhancement: MCPAppsDebugControls CSP mode violation indicators; sandbox-proxy strips existing CSP meta tags before injecting permissive CSP
  • Fix (create-mcp-use-app): Unify logo display across all CLI entry paths
  • Update: Updated @mcp-use/inspector to v0.22.1
  • Update: Updated @mcp-use/cli to v2.15.1
February 2026
Release 1.20.0

Widget Debug & CSP Improvements

Minor release with Iframe Console enhancements, MCP Apps debug controls, and CSP handling.
  • New: CLI update check notifies when a newer mcp-use release is available
  • Fix: CLI TSC build uses node with increased heap; avoid npx installing wrong package
  • Fix: CLI fallback MCP_URL when tunnel is unavailable
  • New (create-mcp-use-app): @types/react and @types/react-dom in template devDependencies
  • Enhancement: Slim down generated READMEs; improve mcp-apps template (Carousel, product-search-result widget); include .mcp-use in tsconfig; fix postinstall script
  • Fix: create-mcp-use-app product-search-result template styling and CSP metadata
  • Enhancement: Iframe Console with expandable logs, level filter, search, resizable height
  • New: Widget debug context for chat; MCP Apps debug controls (tool props JSON view, required props hint, SEP-1865 semantics)
  • New: CDN build for inspector; CSP violations panel with clear action; widget re-execution on CSP mode change; CSP mode for Apps SDK
  • Fix: useSyncExternalStore first-render handling; reconnect logic; Tools tab only sends explicitly set fields; resource annotations include _meta
  • Fix: mcp-use widget CSP fallback from tool metadata; protocol and mount-widgets-dev improvements
  • Enhancement: useWidget merges props from toolInput and structuredContent per SEP-1865
  • New: updateModelContext and useMcp clientOptions
  • Fix: WorkOS subdomain config to accept full AuthKit domain (e.g., name.authkit.app)
  • Update: Updated @mcp-use/inspector to v0.22.0
  • Update: Updated @mcp-use/cli to v2.15.0
February 2026

CLI Skills & Template Updates

Patch release with CLI skills commands and create-mcp-use-app template improvements.
  • New (@mcp-use/cli): mcp-use skills add and mcp-use skills install commands to install AI agent skills (Cursor, Claude Code, Codex) from the mcp-use repository
  • Enhancement (create-mcp-use-app): Add @types/react and @types/react-dom to template devDependencies
  • Update: Updated @mcp-use/inspector to v0.21.1
  • Update: Updated @mcp-use/cli to v2.14.0
February 2026

Tool Schema & Type Testing Improvements

Patch release with nested input schema fixes and compile-time type regression testing.
  • Fix: Correctly convert nested input schema args for tools
  • New: Added everything-server example for compile-time type regression testing
  • Update: Updated @mcp-use/inspector to v0.21.0
  • Update: Updated @mcp-use/cli to v2.13.10
February 2026

MCPApps & Widget Loading Enhancements

Patch release improving widget loading logic and iframe handling.
  • Enhancement: Improved MCPAppsRenderer loading logic with better state management
  • Enhancement: Enhanced useWidget for iframe handling
  • Update: Updated @mcp-use/inspector to v0.20.1
  • Update: Updated @mcp-use/cli to v2.13.9
February 2026
Release 1.19.0

Client Conformance & Type Safety Improvements

Minor release with full MCP client conformance, direct stdio connector support, and type inference fixes.
  • New: Client implementation is now 100% conformant with the MCP spec
  • Enhancement: Node.js client handles stdio connector directly with command/argument configuration
  • Fix: error() return type now compatible with tool callbacks using outputSchema
  • Fix: Fixed TypedCallToolResult type inference with explicit properties instead of Omit
  • Fix: Enhanced prompt() method generic type inference to match tool() pattern
  • Enhancement: Console output routes through Logger class with improved consistency; added tests for logLevel
  • Enhancement: Added support for additional Vitest file extensions in config
  • Fix: Correct MIME type for mcp_apps resource counting; disabled telemetry in local tests
  • Update: Updated @mcp-use/inspector to v0.20.0
  • Update: Updated @mcp-use/cli to v2.13.8

@mcp-use/cli v2.13.8

  • Enhancement: Improved loading states with spinner component
  • Fix: Correct MIME type for mcp_apps resource counting

create-mcp-use-app v0.13.0

  • New: Interactive prompts for optional skills installation (claude-code, cursor, codex)
  • New: --install and --no-install CLI flags for non-interactive mode
  • Fix: Corrected template reference in test-cli.sh
February 2026
Release 1.18.0

DNS Rebinding Protection & Deferred Client Callbacks

Minor release adding DNS rebinding protection and deferred React client callbacks.
  • New: allowedOrigins configuration on MCPServer for DNS rebinding protection and host validation; docs and example (curl tests) added
  • Enhancement: McpClientProvider defers onServerAdded and onServerStateChange callbacks via queueMicrotask to avoid render-phase updates and improve stability
  • Update: Updated @mcp-use/inspector to v0.19.0
  • Update: Updated @mcp-use/cli to v2.13.7
February 2026

Widget Resource Propagation & Log Noise Reduction

Patch release improving HMR reliability for widget resources and reducing dev server log noise.
  • Fix: Reduced noisy logs in the dev server
  • Fix: Propagated widget resources and resource templates to already-connected MCP sessions during HMR to avoid Resource ui://widget/... not found errors without reconnecting
  • Update: Updated @mcp-use/inspector to v0.18.9
  • Update: Updated @mcp-use/cli to v2.13.6
February 2026

Inspector Reliability Alignment

Patch release aligning TypeScript packages with the latest inspector reliability fixes.
  • Enhancement: Pulled in inspector fixes for widget readiness resets and safer iframe global update handling
  • Update: Updated @mcp-use/inspector to v0.18.8
  • Update: Updated @mcp-use/cli to v2.13.5
February 2026

UI Resource Metadata & CSP Injection Fixes

Patch release improving server-origin metadata enrichment for UI resources.
  • Fix: UI resource metadata enrichment now guarantees metadata initialization before applying origin-based updates
  • Enhancement: Server origin is now consistently injected into widget CSP fields (resourceDomains, connectDomains, baseUriDomains)
  • Update: Updated @mcp-use/inspector to v0.18.7
  • Update: Updated @mcp-use/cli to v2.13.4
February 2026

useWidget Type Inference Improvements

Patch release improving useWidget typing precision for pending vs ready states.
  • Enhancement: UseWidgetResult now uses a discriminated union on isPending for more accurate TypeScript inference
  • Enhancement: Added UseWidgetResultBase to separate shared fields from pending-state-specific props
  • Update: Updated @mcp-use/inspector to v0.18.6
  • Update: Updated @mcp-use/cli to v2.13.3
February 2026
Release 1.17.0

Resource Template Completion & Reverse Proxy Support

Minor release adding resource template variable completion, custom route HMR, and comprehensive reverse proxy support.

Resource Template Completion

  • New: Resource template variable completion - templates can define callbacks.complete per variable (string array or callback) for client-side autocomplete of URI template variables
  • New: toResourceTemplateCompleteCallbacks utility for normalizing completion definitions
  • New: MCP servers now publish completion capabilities

HMR & Reverse Proxy Improvements

  • New: Custom HTTP route HMR - routes registered via server.get(), server.post(), etc. now hot-swap without restart
  • New: Widget tool protection during HMR - tools tagged with _meta["mcp-use/widget"] preserved during sync
  • New: Dynamic widget creation - resources/ directory auto-created, dev server watches for new widgets even if none exist at startup
  • New: Vite HMR WebSocket proxy for hot-reload through reverse proxies (ngrok, E2B, Cloudflare tunnels)
  • New: MCP_URL environment variable can be pre-set by users for external proxy URLs; CLI will not overwrite it
  • New: window.__mcpServerUrl global injected into widget HTML for dynamic API URL construction
  • Enhancement: List-changed notifications now fire on removal, not just add/update
  • Enhancement: Pre-initialized request handlers prevent -32601 Method not found errors on dynamic tool registration
  • Enhancement: Widget type default changed to mcpApps (dual-protocol) instead of appsSdk

Dependencies

  • Update: Updated @mcp-use/inspector to v0.18.5
  • Update: Updated @mcp-use/cli to v2.13.2
February 2026
Release 1.16.4

HMR Improvements & Widget Enhancements

Patch release with Hot Module Reload improvements, widget lifecycle enhancements, and CLI build system improvements.

HMR & Server Improvements

  • Fix: Tool schema preservation during HMR now uses Zod schemas directly instead of converting to params
  • Fix: Empty schema changed from {} to z.object({}) to ensure safeParseAsync works correctly
  • Enhancement: Prompts now support tool response helpers (text(), object(), image(), etc.) via automatic conversion to GetPromptResult
  • Enhancement: Resources now support tool response helpers via automatic conversion to ReadResourceResult
  • Enhancement: Widget resources (ui://widget/*) and resource templates preserved during HMR
  • Enhancement: Enhanced prompt conversion to handle edge cases (single content objects, bare content items, mixed content arrays)

CLI Build Improvements

  • New: Build manifest with entryPoint tracking written to dist/mcp-use.json for reliable server location
  • Enhancement: Support for multiple TypeScript output paths (dist/index.js, dist/src/index.js, custom paths)
  • Enhancement: Start command reads entryPoint from manifest for accurate server location
  • Enhancement: Clear error messages when no built server file is found, listing all attempted locations

Widget Improvements

  • Fix: Widget pending state now correctly emulated to reflect ChatGPT behavior
  • Enhancement: Immediate widget rendering during pending states
  • Enhancement: Enhanced widget lifecycle management with better tool output handling
  • New: Delayed weather tool example (get-weather-delayed) in conformance server for testing widget lifecycle

Dependencies

  • Update: Updated @modelcontextprotocol/sdk to v1.26.0 (with Zod 4 compatibility patch)
  • Update: Updated @mcp-use/inspector to v0.18.4
  • Update: Updated @mcp-use/cli to v2.13.1
  • Update: Updated create-mcp-use-app to v0.12.3
February 2026
Release 1.16.3

CLI Manufact Rebrand

Minor release with CLI branding updates and authentication improvements.

CLI Rebrand

  • Enhancement: Updated CLI branding from “mcp-use” to “Manufact”
  • Enhancement: Changed default web URL from mcp-use.com to manufact.com for login flow
  • Fix: Fixed 431 “Request Header Fields Too Large” error by increasing callback server header limit to 16KB
  • Enhancement: Updated dashboard, inspector, and settings URLs to use manufact.com domain
  • Enhancement: Gateway domain remains run.mcp-use.com for backward compatibility with existing deployments

Dependencies

  • Update: Updated @mcp-use/cli to v2.13.0
  • Update: Updated @mcp-use/inspector to v0.18.3
January 2026

Widget Behavior Fix

Patch release fixing widget pending state emulation.
  • Fix: Widget pending state now correctly emulated to reflect ChatGPT behavior
  • Update: Updated @mcp-use/inspector to v0.18.2
  • Update: Updated @mcp-use/cli to v2.12.6
January 2026

Widget CSP Enhancement

Patch release fixing widget Content Security Policy configuration.
  • Fix: Auto-inject server origin into connectDomains CSP
  • Enhancement: Widgets can now make fetch/XHR/WebSocket calls back to the MCP server without explicitly declaring the domain
  • Fix: Corrected oversight where CHANGELOG mentioned connectDomains injection but it was not implemented
January 2026
Release 1.16.0

Prompt Autocomplete & Dynamic CSP

Minor release introducing prompt argument autocomplete and dynamic CSP domain injection for widgets.

New Features

  • New: completable() helper for prompt argument autocomplete
  • New: Dynamic CSP domain injection for widgets at tools/list time

Enhancements

  • Enhancement: Request origin (from X-Forwarded-Host or Host header) now automatically added to connectDomains and resourceDomains in tool metadata
  • Enhancement: Widgets now work correctly when accessed through proxies like ngrok, Cloudflare tunnels, or other reverse proxies
  • Enhancement: Server origin automatically enriched in widget CSP metadata

Dependencies

  • Update: Updated @mcp-use/inspector to v0.18.0
  • Update: Updated @mcp-use/cli to v2.12.4
January 2026

HMR & Theme Fixes

Patch release fixing Hot Module Reloading edge cases and theme functionality.
  • Fix: HMR not working when server starts with 0 tools initially
  • Fix: Dark mode can now be enabled through theme URL parameter
  • Update: Updated @mcp-use/inspector to v0.17.3
  • Update: Updated @mcp-use/cli to v2.12.3
January 2026

HMR File Watcher Fix

Patch release fixing file watcher resource exhaustion in containerized environments.
  • Fix: HMR file watcher exhausting inotify limits by properly ignoring node_modules
  • Fix: Prevented ENOSPC errors in containerized environments caused by watching files inside node_modules/ despite ignore patterns
  • Update: Updated @mcp-use/inspector to v0.17.2
  • Update: Updated @mcp-use/cli to v2.12.2
January 2026

CLI Deployment Enhancement

Patch release with CLI deployment improvements.
  • Enhancement: CLI getMcpServerUrl() function for improved deployment URL handling
  • Update: Updated @mcp-use/cli to v2.12.1
  • Update: Updated @mcp-use/inspector to v0.17.1
January 2026
Release 1.15.0

MCP Apps Support & Landing Pages

Major release introducing MCP Apps support with dual-protocol widget rendering and HTML landing pages for MCP server endpoints.

MCP Apps Support

  • New: Dual-protocol support enabling widgets to work with both MCP Apps and ChatGPT Apps SDK
  • New: MCPAppsRenderer component for advanced debugging and visualization
  • New: MCPAppsDebugControls component for widget debugging
  • New: Sandboxed iframe support with console logging and safe area insets for isolated widget rendering
  • New: Widget adapters (MCP Apps, Apps SDK) with protocol helpers for seamless cross-protocol compatibility
  • New: MCP Apps documentation and example server

Landing Pages

  • New: generateLandingPage() function that generates styled HTML landing pages for browser GET requests
  • New: Connection instructions for Claude Code, Cursor, VS Code, VS Code Insiders, and ChatGPT on landing pages
  • Enhancement: Browser host normalization for server connections in CLI

Bug Fixes & Security

  • Fix: MCP server landing now shows the external URL instead of the internal URL
  • Fix: Zod JIT compilation to prevent CSP violations in sandboxed environments
  • Security: Fixed vulnerabilities in dependencies

Dependencies

  • Update: Updated @mcp-use/inspector to v0.17.0
  • Update: Updated @mcp-use/cli to v2.12.0
January 2026

Widget Rendering & Session Management Improvements

Patch release with widget rendering fixes, session timeout adjustments, and CLI deployment enhancements.

Widget Rendering & Session Management

  • Fix: Widget iframe reload by adding timestamp query parameter to force refresh when widget data changes
  • Fix: Retry logic with exponential backoff for dev widget fetching to handle Vite dev server cold starts
  • Fix: Default session idle timeout changed from 5 minutes to 1 day (86400000ms) to prevent premature session expiration
  • Fix: Session lastAccessedAt tracking now updates both persistent store and in-memory map
  • Fix: _meta merging now preserves existing fields (e.g., openai/outputTemplate) when updating tools and widgets
  • Enhancement: Support for frame_domains and redirect_domains in widget CSP metadata

CLI Improvements

  • Fix: Environment variables, build command, start command, and port configuration now properly passed during redeployment

Documentation

  • Fix: Updated sessionIdleTimeoutMs default value documentation from 5 minutes to 1 day across multiple files
January 2026

Dependency Updates

Patch release with dependency updates.
  • Update: Updated dependencies to @mcp-use/inspector v0.16.1 and @mcp-use/cli v2.11.1
January 2026
Release 1.14.0

Server Metadata & Widget Enhancements

Release introducing server metadata configuration and enhanced widget development experience.

Server Metadata & Configuration

  • New: Server metadata support with title, websiteUrl, and icons fields in MCP server configuration
  • New: Inspector UI displays server website URLs and icons for better branding
  • Deprecated: autoCreateSessionOnInvalidId config option - use sessionStore for persistent sessions
  • Enhancement: Dynamic project name support in server configurations

Widget & Development Experience

  • Enhancement: HMR support for widget tool management - widgets update immediately without server restart
  • Enhancement: Parallel widget building for improved development performance
  • Enhancement: ReDoS attack prevention in widget name slugification with input length validation
  • Enhancement: Improved widget lifecycle documentation with loading state guidance

CLI Improvements

  • New: MCP_URL environment variable automatically set in server process for easy access to server URL
  • Enhancement: Server process environment now includes MCP_URL in both development and production modes
  • Enhancement: CLI now displays all 4 package versions (@mcp-use/cli, mcp-use, @mcp-use/inspector, create-mcp-use-app) in dev and build commands with mcp-use highlighted for clarity

API & Protocol

  • New: HEAD request support in mountMcp function
  • Enhancement: Improved input schema handling in tool registration with better defaults

MCP Proxy Middleware

  • Enhancement: Improved error logging with better context for debugging
  • Enhancement: Connection refused errors now logged as warnings instead of errors
  • Enhancement: Error responses include target URL to help identify failing proxy requests
  • Enhancement: More detailed error messages for proxy request failures

Bug Fixes

  • Fix: Anthropic tool_use.id error resolved with LangChain package updates
  • Fix: Telemetry shutdown method compatibility with posthog-node v5.22.0
  • Fix: Input schema initialization now defaults to empty object when not provided

Dependencies

  • Update: @langchain/anthropic to 1.3.10 (fixes tool_call ID generation)
  • Update: @langchain/core to 1.1.15
  • Update: langchain to 1.2.10
  • Update: react-resizable-panels to 4.4.1
January 2026

CLI Documentation Enhancement

Patch release adding comprehensive CLI documentation.
  • Enhancement: Added .gitignore file to CLI package to exclude .mcp-use directory from version control
  • Enhancement: Added CLAUDE.md to CLI package with comprehensive guidance on usage, development commands, architecture details, and deployment instructions
  • Enhancement: Improved CSRF protection in authentication flow
  • Enhancement: Enhanced error handling for GitHub integration in deploy command
January 2026

OAuth Proxy URL Handling Improvements

Patch release improving OAuth proxy URL handling and connection logic.
  • Refactor: Changed connectionUrl from let to const to enforce immutability
  • Enhancement: Enhanced logic for deriving oauthProxyUrl from callback URL, including handling cases where callback is at root path
  • Enhancement: Updated comments to clarify distinction between oauthProxyUrl and connectionUrl
  • Fix: Removed clearing of OAuth storage before connecting to maintain valid tokens across sessions
January 2026

Telemetry & Inspector Enhancements

Patch release with telemetry improvements and inspector URL validation enhancements.
  • Fix: Enhanced localStorage checks in Telemetry class to verify both existence and functional methods (getItem, setItem, removeItem)
  • Enhancement: Added error handling to throw exception if localStorage is not available or functional
  • Enhancement: Inspector now automatically prepends “https://” to URLs without protocol for better user experience
  • Enhancement: Improved error handling for invalid URLs in Inspector dashboard and server connection modal
  • Enhancement: Added localStorage clearing functionality in Inspector for troubleshooting
January 2026

Dependency Updates & CLI Enhancements

Minor release with dependency updates and CLI improvements for deployment workflows.
  • Fix: Updated dependency hono to 4.11.4
  • Enhancement: CLI login command with improved error handling and user feedback
  • Enhancement: CLI deployment command now prompts for login if not authenticated
  • Enhancement: Added git uncommitted changes check before deployment
  • Fix: Removed fromSource option from CLI deployment command
  • Enhancement: Simplified authentication UI in Inspector
January 2026

Edge Runtime Fix

Patch release improving edge runtime compatibility.
  • Fix: Enable JSON response in stateless mode for edge runtimes (Deno, Cloudflare Workers)
  • Enhancement: Improved reliability of API in various deployment scenarios
January 2026
Release 1.13.0

Hot Module Reloading & OAuth Enhancements

Release introducing Hot Module Reloading for development and enhanced OAuth capabilities.

Hot Module Reloading (HMR)

  • New: HMR support for mcp-use dev command - tools, prompts, and resources update instantly without server restart
  • New: Connected clients receive list_changed notifications and auto-refresh
  • New: Syntax errors during reload caught gracefully without crashing server
  • New: Comprehensive test suite for HMR functionality with integration tests
  • Enhancement: CLI uses chokidar to watch file changes with automatic module re-import
  • Enhancement: Session persistence during HMR - no client disconnections

OAuth & Client Info

  • New: Enhanced OAuth proxy to support gateway/proxy scenarios (e.g., Supabase MCP servers)
  • New: clientInfo configuration prop for OAuth registration with client metadata (name, version, icons, website)
  • New: Server metadata caching with CachedServerMetadata interface for instant display on reconnect
  • Enhancement: OAuth metadata URL rewriting from gateway URLs to actual server URLs
  • Enhancement: Client info displayed on OAuth consent pages
  • Enhancement: Extended StorageProvider interface with metadata methods

Inspector & Favicon

  • Enhancement: Enhanced favicon detector to try all subdomain levels (e.g., mcp.supabase.com → supabase.com)
  • Enhancement: Detection of default vs custom favicons using JSON API response
  • Enhancement: Improved logging middleware for API routes
  • Enhancement: X-Forwarded-Host support for proxy URL construction in dev

Bug Fixes

  • Fix: Remove import from “mcp-use” which causes langchain import in server
  • Fix: Enhanced synchronization for tools, prompts, and resources during HMR
January 2026

Connection Fix

Patch release fixing autoconnect configuration parsing.
  • Fix: Autoconnect now correctly parses config objects in addition to string URLs
January 2026

Security Fixes & OAuth Improvements

Patch release addressing multiple security vulnerabilities and fixing OAuth flow issues.

Security Fixes

  • Security: Fixed 13 vulnerabilities (3 moderate, 10 high)
  • Security: Updated langchain to 1.2.3 (fixes serialization injection vulnerability)
  • Security: Updated @langchain/core to 1.1.8 (fixes serialization injection vulnerability)
  • Security: Updated react-router to 7.12.0 (fixes XSS and CSRF vulnerabilities)
  • Security: Added override for qs to >=6.14.1 (fixes DoS vulnerability)
  • Security: Added override for preact to >=10.28.2 (fixes JSON VNode injection)

OAuth & Connection Improvements

  • Fix: Resolved OAuth flow looping issue by removing duplicate fallback logic
  • Enhancement: Simplified connection handling with consolidated state management
  • Enhancement: Enhanced OAuth authentication flow with improved connection settings
  • Enhancement: Improved auto-connect functionality with better proxy handling and error management
  • Enhancement: Enhanced theme toggling with dropdown menu for better UX and accessibility
January 2026
Release 1.12.2

Automatic Proxy Fallback & API Improvements

Release with automatic proxy fallback, OAuth proxy support, and API naming improvements.

Breaking Changes (with Deprecation Warnings)

  • Breaking: Renamed customHeaders to headers across all APIs for consistency. Old name still works but shows deprecation warnings.
  • Breaking: Renamed samplingCallback to onSampling for consistency with event handler patterns. Old name still works but shows deprecation warnings.
  • Deprecated: clientConfig option in favor of deriving configuration from clientInfo

New Features

  • New: Automatic Proxy Fallback - autoProxyFallback option automatically retries failed connections through proxy on CORS/4xx errors
  • New: Provider-level proxy defaults with defaultProxyConfig and defaultAutoProxyFallback props in McpClientProvider
  • New: OAuth Proxy Support - oauthProxyUrl configuration to route OAuth discovery and token requests through backend proxy
  • New: Configurable clientInfo for MCP connection initialization with full metadata (name, title, version, description, icons, website URL)
  • New: Reconnect functionality for failed connections with reconnect button in Inspector UI

Improvements

  • Enhancement: Better detection of OAuth discovery failures, CORS errors, and connection issues
  • Enhancement: OAuth provider uses original target URL for discovery, not proxy URL
  • Enhancement: Improved session cleanup to avoid noisy warning logs
  • Enhancement: Type safety with deprecation notices in TypeScript types
  • Enhancement: Proxy header support - proxyConfig now accepts a headers field for custom headers

Bug Fixes

  • Fix: Custom headers now correctly included when copying connection configuration from saved tiles
  • Fix: HttpConnector automatic reconnection disabled, shifting responsibility to higher-level logic

Refactoring

  • Refactor: Removed oauth-helper.ts (521 lines), consolidated into browser-provider.ts
  • Refactor: Major useMcp hook refactor with automatic retry, better error handling, and proxy fallback support
January 2026

Security Update

Patch release with security fixes and build improvements.
  • Security: Updated @modelcontextprotocol/sdk to 1.25.2 (fixes ReDoS vulnerability in UriTemplate regex patterns)
  • Fix: Updated building script to correctly export types for inspector/client components
January 2026
Release 1.12.0

Browser Compatibility & Multi-Server Support

Release focusing on browser compatibility, multi-server management, and improved React architecture.

Breaking Changes

  • Breaking: Removed winston dependency. The logging system now uses a simple console logger that works in both browser and Node.js environments.

Browser Runtime Support

  • New: Full browser compatibility - removed Node.js-specific dependencies from browser builds
  • New: Enhanced browser.ts entry point with improved browser-specific utilities
  • New: Browser utilities:
    • utils/favicon-detector.ts - Detect and extract favicons from URLs
    • utils/proxy-config.ts - Proxy configuration utilities for browser environments
    • utils/mcpClientUtils.ts - MCP client utilities moved from client package
  • New: MCPAgent exported for browser usage with BrowserMCPClient instance or through RemoteAgent
  • Enhancement: Comprehensive test suite to ensure mcp-use/react and mcp-use/browser do not import Node.js dependencies

Multi-Server Support

  • New: McpClientProvider component to manage multiple MCP server connections in React applications
  • New: Pluggable storage system with LocalStorageProvider and MemoryStorageProvider for flexible server configuration persistence
  • New: Dynamic addition and removal of servers in React applications
  • New: Multi-server React example demonstrating new capabilities
  • Enhancement: Refactored useMcp hook for better multi-server support
  • Enhancement: Removed obsolete McpContext (replaced with McpClientProvider)

Server Middleware

  • New: MCP Proxy Middleware (server/middleware/mcp-proxy.ts) - Hono middleware for proxying MCP server requests with optional authentication and request validation

Inspector Enhancements

  • Enhancement: Improved UI responsiveness with enhanced mobile and tablet layouts and adaptive component visibility
  • Enhancement: Better server management with refactored server connection handling, improved icon display, and status tracking
  • Enhancement: Enhanced debugging with detailed logging in Layout and useAutoConnect components for better monitoring of server connection states
  • Enhancement: Simplified connection settings by removing deprecated transport types
  • Enhancement: Enhanced inspector components for better browser compatibility
  • Enhancement: Improved server icon support and component interactions
  • Enhancement: Added embedded mode support
  • Enhancement: Better configuration handling and MCP proxy integration

RPC Logging

  • New: Enhanced RPC logging with new rpc-logger module and filtering capabilities to reduce noisy endpoint logging (telemetry, RPC streams).

Architecture Improvements

  • Refactor: Separated telemetry into telemetry-browser.ts (browser) and telemetry-node.ts (Node.js) for better environment-specific implementations
  • Refactor: Replaced Winston with SimpleConsoleLogger that works across all environments. See the ServerConfig API reference for server environment settings.
  • Refactor: Updated tsup.config.ts to exclude Node.js-specific dependencies (winston, posthog-node) from browser builds
  • Refactor: Updated components across inspector for cleaner architecture and imports

Bug Fixes

  • Fix: Prevent rendering loop when autoretry is true in React hooks
  • Fix: Respect options timeout in HTTP connector (reduced default timeout from 30 seconds to 10 seconds)
  • Fix: Add client SDKs to add to client dropdown in inspector
  • Fix: Server connection retrieval in OpenAIComponentRenderer to directly access connections array
  • Fix: Linux patch for watch mode
  • Fix: Query URL handling in built mode to preserve arguments
  • Fix: Enhanced Zod version mapping in TypeScript PR preview workflow
  • Fix: Pinned Zod version to 3.24.4 for compatibility with modelcontextprotocol/sdk
  • Fix: Updated modelcontextprotocol-sdk references to new package name

Documentation

  • New: Added troubleshooting section for Zod version conflicts in Supabase deployment
  • Enhancement: Updated Supabase deployment documentation with improved compatibility information
December 2025

Documentation Updates - Enhancement: Updated examples and documentation

to use preferred methods and APIs
December 2025

Bug Fixes - Fix: Widget props not picked up when using Zod schemas

December 2025
Release 1.11.0

Session Management Architecture

Release introducing distributed session management with Redis support.

Breaking Changes

  • Breaking: WebSocket transport support removed. Use streamable HTTP or SSE transports instead.
  • Breaking: LangChain adapter moved from main entry point to mcp-use/adapters subpath. @langchain/core and langchain are now optional peer dependencies.
  • Deprecated: autoCreateSessionOnInvalidId server config option. Now follows MCP spec strictly (returns 404 for invalid sessions).

Session Management Features

  • New: Pluggable session management architecture separating metadata storage (SessionStore) from active connections (StreamManager)
  • New: RedisSessionStore for persistent, distributed session metadata storage
  • New: RedisStreamManager for cross-server notifications via Redis Pub/Sub
  • New: FileSystemSessionStore (dev mode default) persists sessions to .mcp-use/sessions.json for hot reload support
  • New: InMemorySessionStore and InMemoryStreamManager (production defaults)
  • New: Automatic 404 handling and re-initialization in clients per MCP spec
  • New: Convenience methods: sendToolsListChanged(), sendResourcesListChanged(), sendPromptsListChanged()
  • Enhancement: Auto-detection of stateless/stateful mode based on client Accept header
  • Enhancement: Sessions survive server restarts in dev mode with filesystem storage
  • Enhancement: Auto-cleanup of expired sessions (>24 hours)

Client Improvements

  • New: Auto-refresh tools/resources/prompts when receiving list change notifications
  • New: Manual refresh methods: refreshTools(), refreshResources(), refreshPrompts(), refreshAll()
  • New: Automatic 404 handling and re-initialization per MCP spec
  • Enhancement: Deprecated sse transport type in React (use http or auto)

Additional Features

  • New: CommonJS module support - full compatibility with require() syntax
  • New: Favicon support for widget pages with automatic serving and long-term caching
  • New: Enhanced session methods: callTool() defaults args to empty object, new requireSession() method
  • New: Session architecture documentation with ARCHITECTURE.md
  • New: Comparison guide with other MCP implementations (tmcp, FastMCP, xmcp, official SDK)
  • New: Comprehensive environments guide (Node.js, Browser, React)

Documentation

  • New: Session Management guide with storage provider documentation (Memory, FileSystem, Redis)
  • New: Environments guide explaining usage across different JavaScript runtimes
  • New: Comparison documentation analyzing mcp-use vs other implementations
  • Enhancement: Major documentation restructuring for better organization
  • Enhancement: Removed/consolidated outdated guides (direct-tool-calls, sandbox, connection-types)
  • Enhancement: Updated agent documentation with improved examples

Widget Improvements

  • Enhancement: Automatic cleanup of stale widget directories in .mcp-use folder
  • Enhancement: Dev mode watches for widget file/directory deletions and cleans up build artifacts
  • Fix: Fixed widget styling isolation - widgets no longer pick up mcp-use styles
  • Fix: Fixed favicon URL generator for proper asset resolution
  • Fix: Fixed transport cleanup when session becomes idle

Testing & Quality

  • New: Comprehensive test suite for session stores (498 lines)
  • New: Stream managers test suite (478 lines)
  • New: Widget data flow tests (496 lines)
  • New: CLI integration tests (242 lines)
  • New: CommonJS compatibility tests (256 lines)
  • New: Documentation example tests (agent, prompts, tools)
  • New: Client 404 re-initialization tests
  • Enhancement: Improved test coverage across all major features

Dependencies & Compatibility

  • Enhancement: Added support for Node.js >= 18
  • Enhancement: CommonJS builds for all entry points
  • Enhancement: Migrated from react-router-dom to react-router for better compatibility
  • Enhancement: Repository metadata added to package.json
  • Enhancement: Dependency updates and optimizations

Fixes

  • Fix: Agent access to resources and prompts
  • Fix: Import paths in CLI to avoid mixing dependencies
  • Fix: UUID generation and URL handling improvements
  • Fix: Various formatting and linting improvements
December 2025

Deno stateless mode

Patch release fixing stateless server mode when running on Deno.
  • Fix: stateless mode works correctly on Deno
  • Update: Updated @mcp-use/inspector to v0.12.6
  • Update: Updated @mcp-use/cli to v2.5.6
December 2025
Release 1.10.0

API Improvements & Session Management

Enhanced APIs with better type safety and improved session management capabilities.

Breaking Changes

  • Breaking: Renamed createMCPServer() factory function to MCPServer class constructor. Factory function still available for backward compatibility but new code should use new MCPServer({ name, ... }).
  • Breaking: Replaced session.connector.tools, session.connector.callTool(), etc. with direct session methods: session.tools, session.callTool(), session.listResources(), session.readResource(), etc.
  • Breaking: Standardized OAuth environment variables to MCP_USE_OAUTH_* prefix (e.g., AUTH0_DOMAIN → MCP_USE_OAUTH_AUTH0_DOMAIN).

New Features

  • New: Client Capabilities API with ctx.client.can() and ctx.client.capabilities() to check client capabilities in tool callbacks
  • New: Session Notifications API with ctx.sendNotification() and ctx.sendNotificationToSession() for sending notifications from tool callbacks
  • New: Session Info API with ctx.session.sessionId to access current session ID in tool callbacks
  • New: Resource Template Flat Structure support with uriTemplate directly on definition (in addition to nested structure)
  • New: Resource Template Callback Signatures now support multiple signatures: (), (uri), (uri, params), (uri, params, ctx)
  • New: Type Exports for CallToolResult, Tool, ToolAnnotations, PromptResult, GetPromptResult types

Improvements

  • Enhancement: Enhanced type inference for resource template callbacks with better overload support
  • Enhancement: Server now captures and stores client capabilities during initialization
  • Enhancement: Added convenience methods to MCPSession for all MCP operations (listResources, readResource, subscribeToResource, listPrompts, getPrompt, etc.)
  • Enhancement: Major documentation refactoring and restructuring for better organization

Fixes (v1.10.1 - v1.10.6)

  • Fix: Stateless mode for Deno runtime
  • Fix: Added CORS support to getHandler() method
  • Fix: Deno 5 compatibility improvements
  • Fix: Deno 3 compatibility fixes
  • Fix: Zod error handling improvements
  • Fix: Zod import in official SDK
  • Fix: Clear transport when session becomes idle
  • Fix: Allow agent to access resources and prompts
  • Enhancement: Added repository metadata in package.json
December 2025
Release 1.9.0

Elicitation Support

Added comprehensive elicitation support following MCP specification, enabling servers to request user input through clients.
  • New: Simplified API with ctx.elicit(message, zodSchema) and ctx.elicit(message, url) with automatic mode detection
  • New: Form Mode for structured data collection with Zod schema validation and full TypeScript type inference
  • New: URL Mode to direct users to external URLs for sensitive operations (OAuth, credentials)
  • New: Server-side validation with automatic Zod validation and clear error messages
  • New: Client support via elicitationCallback to MCPClient and onElicitation to React useMcp hook
  • Enhancement: Type-safe return types automatically inferred from Zod schemas
  • Enhancement: Configurable timeout with 5-minute default for user interactions
  • Fix: Transport bug fixes
November 2025
Release 1.8.0

Sampling Support

Added sampling support in inspector with improved timeout handling for long-running requests.
  • New: LLM sampling capabilities in inspector
  • Fix: Long running sampling requests no longer timeout after 60 seconds
  • Enhancement: Better handling of extended sampling operations
November 2025
Release 1.7.0

OAuth Authentication System

Complete OAuth 2.0 support with built-in providers and enhanced server capabilities.
  • New: Complete OAuth 2.0 authentication framework with built-in providers (Auth0, WorkOS, Supabase, Keycloak)
  • New: OAuth middleware and routes for server-side OAuth flow handling with automatic token management
  • New: OAuth callback component in inspector for authentication flows
  • New: Context storage with async local storage for request-scoped context in servers
  • New: Response helpers for standardized HTTP responses and error handling
  • New: Runtime detection utilities for Node.js, Bun, and Deno environments
  • New: Server authentication examples for Auth0, WorkOS, and Supabase
  • Enhancement: Enhanced useMcp hook with improved connection management and OAuth support
  • Enhancement: Enhanced inspector dashboard with OAuth configuration UI
  • Enhancement: Better authentication flow handling with OAuth integration
  • Enhancement: Enhanced HTTP connectors with OAuth token handling
  • Fix: Dependency optimizations and AI SDK updates
November 2025
Release 1.6.0

Notifications & Sampling

Bidirectional notification support and LLM sampling capabilities.
  • New: Bidirectional notification support between clients and servers with handler registration
  • New: LLM sampling allowing MCP tools to request completions from connected clients
  • New: Widget build ID support for cache busting in widget UI resources
  • New: Inspector notifications tab with real-time display
  • New: Server capabilities modal showing supported MCP features
  • Enhancement: Refactored HTTP transport to reuse sessions across requests with configurable idle timeout
  • Enhancement: Session management with tracking and automatic cleanup
  • Enhancement: Roots support in connectors and session API
  • Enhancement: Session event handling API for notification registration
  • Enhancement: Server methods for session management and targeted notifications
  • Enhancement: Enhanced search_tools with metadata (total_tools, namespaces, result_count)
  • Enhancement: RPC message logging support in inspector
October 2025
Release 1.5.0

OpenAI Apps SDK Integration

Release with comprehensive OpenAI Apps SDK support and widget system.
  • New: McpUseProvider component combining React setup (StrictMode, ThemeProvider, BrowserRouter, ErrorBoundary)
  • New: WidgetControls component with debug overlay and view controls (fullscreen, PIP)
  • New: useWidget hook for type-safe React adapter to OpenAI Apps SDK API
  • New: ErrorBoundary component for graceful error handling
  • New: Image component handling data URLs and public file paths
  • New: ThemeProvider for consistent theme management
  • New: WidgetInspectorControls for inspector-specific debugging
  • New: Console proxy toggle for iframe console logs
  • New: Product search result widget template with carousel and accordion components
  • New: Folder-based widget support with automatic detection
  • New: Public folder support for static assets
  • Enhancement: Enhanced SSR configuration with proper Vite settings
  • Enhancement: Improved OpenAI component renderer with better height calculation
  • Enhancement: Enhanced tool result display with multiple content types
  • Enhancement: Resizable panels with collapse support
  • Enhancement: Better widget security headers and CSP configuration
October 2025
Release 1.4.0

Code Mode

Introduced code execution capabilities for agents.
  • New: Code Mode feature allowing agents to execute code using MCP tools
  • New: VMCodeExecutor for local execution environments
  • New: E2BCodeExecutor for remote execution in cloud sandboxes
  • New: CodeModeConnector for tool discovery and execution
  • Enhancement: Enhanced MCPClient with code execution configuration
  • Enhancement: Comprehensive tests for code execution functionality
October 2025
Release 1.3.0

Edge Runtime Support

Migrated to Hono framework for edge runtime compatibility.
  • Major: Migrated from Express to Hono framework for edge runtime support (Cloudflare Workers, Deno Deploy, Supabase)
  • New: Runtime detection for Deno and Node.js environments
  • New: Connect middleware adapter for compatibility
  • New: getHandler() method for edge deployment
  • New: Supabase deployment documentation and templates
  • Enhancement: Improved MCPAgent message detection with robust helpers for different LangChain formats
  • Enhancement: Fixed server base URL handling for proper connection and routing
  • Enhancement: Better auto-connection logic with error handling and retry mechanisms
  • Enhancement: Enhanced useMcp hook with improved connection state management
October 2025
Release 1.2.0

LangChain 1.0.0 Support

Updated to support LangChain 1.0.0 with improved compatibility.
  • Major: Support for LangChain 1.0.0
  • Fix: Model type compatibility for LangChain 1.0.0
  • Fix: Apps SDK metadata setup from widget build
  • Enhancement: Set CLI and inspector as dependencies
October 2025
Release 1.1.0

Apps SDK Initial Integration

First integration of OpenAI Apps SDK support.
  • New: OpenAI Apps SDK integration with UI resource type
  • New: Enhanced MCP-UI adapter for Apps SDK metadata
  • New: Resource URI format supporting ui://widget/ scheme
  • New: Tool definitions with Apps SDK-specific metadata
  • Enhancement: Comprehensive test suite for Apps SDK resources
  • Refactor: Renamed fn to cb in tool and prompt definitions for consistency
  • Refactor: Updated resource definitions to use readCallback