The full upstream README, mirrored here for reference. Install config, tool schemas, adoption signals, and an original overview live on the Fyi Cli listing page.
A multi-jurisdiction Freedom-of-Information (FOI) client for Alaveteli-based platforms — track, submit, and archive official information requests across New Zealand, Australia, the UK, and any other Alaveteli deployment (foi-repository, WhatDoTheyKnow, FragDenStaat, and more), from a single privacy-focused CLI.
The project's core is a Rust workspace (fyi-core, fyi-cli, fyi-mcp); a legacy Python
package (fyi_system) remains available as a reference implementation but is no longer extended.
| Registry / catalog | Package / server | Status | Link |
|---|---|---|---|
| Official MCP Registry | io.github.edithatogo/fyi-mcp @ 0.1.2 | Live | registry.modelcontextprotocol.io · server.json |
| OpenAI plugin directory (Codex) | fyi-mcp plugin packet | Assets ready — external submission pending | packaging/ai-plugins/codex/ |
| Anthropic Claude Connectors | fyi-mcp connector packet | Assets ready — hosted HTTPS deployment and external submission pending | packaging/ai-plugins/anthropic/ |
| Glama | edithatogo/fyi-cli (fyi-mcp) | Live | glama.ai/mcp/servers/edithatogo/fyi-cli · scores |
| Smithery | edithatogo/fyi-mcp | Live (score pending) | smithery.ai/server/@edithatogo/fyi-mcp |
| PyPI | fyi-cli (legacy Python package) | Live | pypi.org/project/fyi-cli |
| Crates.io | fyi-cli / workspace crates | Published / release flow | crates.io/crates/fyi-cli |
| GitHub Releases | CLI + MCPB assets | Live | Releases |
| Awesome-MCP-Servers | Legal section entry | PR submitted | PR #9693 |
GitHub curated MCP (github.com/mcp) | — | Blocked external (manual onboarding) | Tracked in #32 |
Draft / not yet submitted: Scoop, WinGet, Homebrew, Chocolatey, GHCR multi-arch workflow, PulseMCP, mcp.so, Docker MCP Catalog, mcp-get, OpenTools, AUR, nixpkgs, Snap, Flatpak, asdf/mise, Debian/PPA, Fedora/COPR.
cargo-binstall is already assets-ready and wired in-repo, but still depends on matching GitHub Release assets before it can be treated as a live distribution path. Codex and Anthropic packets are assets-ready but still require external submission.
Full status matrix (including planned channels): docs/registry-distribution-matrix.md.
Full guide: QUICKSTART.md
Full guide (Rust-first, all channels): INSTALL.md · version 0.1.2 · homepage github.com/edithatogo/fyi-cli
| Path | Command / location | Notes |
|---|---|---|
| Cargo (clone) | cargo install --path crates/fyi-cli | Recommended |
| Cargo (crates.io) | cargo install fyi-cli | When published |
| cargo-binstall | cargo binstall fyi-cli | assets-ready — needs matching release assets |
| GitHub Releases | Releases | Prebuilt CLI / MCPB; check asset names per tag |
| PyPI (legacy) | pip install fyi-cli | Python fyi_system; not extended |
| MCP binary | cargo install --path crates/fyi-mcp | Or MCPB from Releases |
| MCP registries | Official / Glama / Smithery | live — see table above |
| Containers | ghcr.io/edithatogo/fyi-mcp | assets-ready — docs/containers.md |
| Scoop, WinGet, Homebrew, Chocolatey, AUR, nix, Snap, Flatpak, Debian, Fedora, asdf, mise | Drafts under packaging/ | Not claimed live — docs/installation-package-managers.md |
Live listings and draft status: Where fyi-cli / fyi-mcp is listed · full matrix: docs/registry-distribution-matrix.md · MCP catalog checklist: packaging/mcp-catalogs/SUBMISSION_CHECKLIST.md.
| Document | Description |
|---|---|
| Docs site | Full documentation (Astro + Starlight) |
| docs/cli-entrypoints-audit.md | Canonical cross-reference for Python CLI, Rust CLI, and Rust MCP surfaces |
| docs/upstream-relations.md | Alaveteli/instance operator etiquette and outreach log |
| docs/registry-distribution-matrix.md | MCP catalogs, package managers, containers status |
| docs/external-registry-followups.md | Smithery score + GitHub MCP onboarding playbook |
| docs/installation-package-managers.md | Draft package-manager install notes (Scoop, WinGet, brew, …) |
| docs/containers.md | fyi-mcp container / GHCR |
| QUICKSTART.md | 5-minute getting started guide |
| USER_GUIDE.md | Comprehensive user documentation |
| INSTALL.md | Installation guide (Rust-first; all channels) |
| API_KEY_SETUP.md | How to get and configure API key |
| CONFIGURATION.md | Configuration reference |
| TROUBLESHOOTING.md | Troubleshooting guide |
| FAQ.md | Frequently asked questions |
| CHANGELOG.md | Version history |
| CONTRIBUTING.md | How to contribute |
| CITATION.cff | Citation metadata for releases |
| .zenodo.json | Zenodo release metadata source |
Release metadata is versioned in CITATION.cff, .zenodo.json, and
artifacts/release/zenodo-mirror-manifest.json. DOI fields remain unset until the live Zenodo
record is verified for the tagged release.
Please do NOT report security vulnerabilities through public GitHub issues.
Use GitHub's private vulnerability reporting: https://github.com/edithatogo/fyi-cli/security/advisories/new
Security Policy: SECURITY.md
Test Coverage: Rust workspace checks are the release gate. Python support tests remain available for legacy docs and archive tooling.
We welcome contributions! See CONTRIBUTING.md for guidelines.
See CONTRIBUTING.md for the full development setup, including the legacy
Python fyi_system package.
Please note that this project is released with a Contributor Code of Conduct. By participating in this project you agree to abide by its terms.
The project board for this repository is
fyi-cli Conductor Roadmap.
It mirrors the local .conductor/tracks.md registry and tracks completed
Conductor work, release-readiness items, and external MCP registry follow-ups.
The umbrella
Rare Insights on Open Policy from Aotearoa
project is synchronized at the item level. GitHub Projects does not support
nested projects, so synchronization is handled by
scripts/sync_github_projects.py and the
manual/scheduled project-sync workflow.
The workflow requires a repository secret named PROJECT_SYNC_TOKEN with
GitHub Projects access for user-level ProjectsV2 writes. The sync is
conservative: it adds missing fyi-cli issue/PR items to RIOPA, copies shared
status values, sets the RIOPA mirror source to other unless a fyi-cli option
exists, and never deletes umbrella-board items.
This project is actively evolving from an NZ-only tool into a multi-jurisdiction FOI/Alaveteli
platform built on the Rust workspace. Current work is tracked as
Conductor tracks under .conductor/tracks.md, mirrored to GitHub epic
issues (#37-#46) and their sub-issues. See the project board below for live status, and
CHANGELOG.md for released versions.
FYI CLI works with any Alaveteli-based platform. The embedded jurisdiction catalog currently includes:
| Platform | Region | URL |
|---|---|---|
| foi-repository | New Zealand | foi-repository |
| RightToKnow | Australia | https://www.righttoknow.org.au |
| WhatDoTheyKnow | United Kingdom | https://www.whatdotheyknow.com |
| MyRightToKnow | Ireland | https://www.myrighttoknow.org |
| Ma Da Da (CADA) | France | https://www.madada.fr |
| Tu Derecho a Saber | Spain | https://www.tuderechoasaber.es |
| FragDenStaat | Germany | https://fragdenstaat.de |
| Alaveteli | Any | Self-hosted instances |
See .conductor/tracks/jurisdiction-* for the rollout plan covering additional instances and
non-English localization.
The archive commands are read-only and do not require an API key.
discover-bodies keeps --base-url as the instance/capture URL. Use the
separate --catalog-url option only when the authority CSV is hosted at an
explicit alternate URL:
With --format jsonl, each output line contains only the stable downstream
contract fields url_name, name, and tags[]. The default JSON format also
includes retrieval provenance for audit records. Both modes are read-only,
robots-aware, and use the configured shared limiter.
The JSON output includes the effective catalog URL, whether the default or an override was used, retrieval time, HTTP status, row count, and a SHA-256 of the raw CSV payload. The override is read-only and still uses the catalog host's robots policy, contactable User-Agent, retry backoff, and shared rate limiter. Treat an override URL as trusted configuration: it can redirect discovery to a different authority set and should be reviewed and recorded alongside archive provenance.
Discovery uses a contactable User-Agent, checks robots.txt, and backs off on
transient 429/5xx responses. Keep live runs polite: use small date windows,
resume with checkpoints, and coordinate archive work with the ethics guidance in
the sibling fyi-archive repo at docs/ethics-and-compliance.md.
The Rust fyi-core network path is the primary resource-aware implementation:
it parses RateLimit-*/Retry-After, adapts pacing, enforces request/bytes/time
guardrails, persists load memory, caches safe GETs, and can emit secret-redacted
JSONL traces. Python remains a deliberately compatible discovery/capture path
and follows the same identity and retry etiquette.
For concurrent workers, point discover and backfill at the same SQLite
database with --db. That enables the shared cross-worker limiter, which
reserves one aggregate request slot across processes and records both normal
reservations and transient-failure backoff events. Inspect the current state
with fyi rate-limit-status --db fyi_system.db.
The full command and server cross-reference is maintained in docs/cli-entrypoints-audit.md. It covers the Python CLI entrypoints (fyi, fyi-cli, fyi-system), the Rust CLI binary (fyi-cli), and the Rust MCP server (fyi-mcp) with its published registry pages.
Opt-in live smoke test:
The AU RightToKnow smoke is bounded to one discovery page and at most five
request captures. It writes only to temporary test directories and remains
disabled unless FYI_LIVE_SMOKE=1 is explicitly set.
In the current live verification, RightToKnow returned HTTP 403 for the bounded JSON search request, so the smoke records an explicit external availability skip and does not attempt capture. This does not change default offline CI behavior or retry the denied request aggressively.
fyi capture stores the public request JSON, rendered HTML, and attachments as
WARC records, deduplicates attachment bytes by SHA-256, and maintains a derived
request view for downstream dataset tooling.
Capture layout:
Each daily WACZ is appendable: subsequent captures add another WARC segment under
archive/ and merge the resource metadata in datapackage.json. Replay tooling
that supports WACZ/WARC can open the package from dist/site_snapshots/; for
low-level inspection, unzip it and read the WARC segments with warcio.
Full CLI reference: See fyi --help or USER_GUIDE.md
This project is licensed under the MIT License - see the LICENSE file for details.
Made with ❤️ for transparency and privacy