HubSpot API: 1,000+ endpoints as safety-categorized, hub- and plan-aware MCP tools, stdio or HTTP.
Copy the AI prompt to install this server into Claude Code, Cursor, or another agent β or use 1-click editor setup below.
One-click editor setup isnβt available for this listing yet β we donβt have a confirmed install command, and weβd rather show nothing than point your editor at the wrong package or host. Follow the projectβs own setup instructions, linked above.
The most complete HubSpot MCP server there is. Run your entire HubSpot account in plain language from Claude, Cursor, or any other MCP client.
This Model Context Protocol server exposes the
whole public HubSpot API β all 1,076 endpoints across 102 APIs, in 687
tools β CRM, CMS, Marketing, Automation, Conversations, Commerce, Files,
Settings, Webhooks and more, generated straight from HubSpot's own OpenAPI
definitions. Endpoints HubSpot repeats per object type are one tool each
(crm_objects_search with objectType: "deals" instead of 32 separate search
tools), and every tool description says when to use it. Every tool is
safety-categorized (π’ read-only / π‘ write / π΄ destructive) and β unique to
this server β hub & plan aware: HubSpot publishes which hub and tier every
API needs (Free / Starter / Professional / Enterprise), and this server carries
that straight into each tool plus a live capability report for your
portal. It runs over stdio (Claude Desktop and other local launchers) or
Streamable HTTP (hosted in Docker), and ships with retries, client-side rate
limiting tuned to HubSpot's burst caps, and request timeouts so it holds up
against a live account.
Some MCP servers just forward a slice of the API. This one is built to be safe to hand to an LLM, complete, and easy to run for real:
| What you get | Why it matters |
|---|---|
| All 1,076 endpoints β the whole public API | Contacts, companies, deals, tickets, every engagement type, associations v4, properties, pipelines, lists, imports/exports, marketing emails & events, campaigns, forms, transactional email, sequences, workflows/actions, conversations & custom channels, CMS pages/posts/HubDB/source code, files, commerce (invoices, orders, carts, payments, subscriptions), settings, webhooks β nothing hand-picked or left behind. Most servers stop at ~30 CRM tools. |
| 687 tools, not 1,076 look-alikes | HubSpot repeats the same endpoints for 32 CRM object types, for landing and site pages, and for blog posts, authors and tags. Those are one tool each with a selector argument (objectType, pageType, blogResource), so crm_objects_search covers contacts, deals, tickets and custom objects. Every call still goes to exactly the endpoint it went to before, with that endpoint's scopes and plan hints. |
| Descriptions that say when to use a tool | Each description opens with what the tool does, then when to prefer a sibling (crm_objects_list points to crm_objects_search for filtering and crm_objects_batch_read for known IDs), what it changes, plan and scopes, and the endpoint it calls. Undocumented HubSpot parameters get a description. |
| Hub & plan awareness (nobody else has this) | HubSpot gates APIs by hub and tier β HubDB needs Content/Marketing Hub Professional, custom-object schemas need Enterprise, sequences need Sales/Service Professional. Every tool states its requirement, straight from HubSpot's own API index. |
| Access check at startup | When the server starts it reads the token's scopes and probes every paid-tier or beta API group with one cheap read. The model gets the result in the server instructions, search results say per tool whether this token can use it, and hubspot_get_capabilities explains each status with the scopes to add. No more walls of mystery 403s. |
| Curated safety categories π’ / π‘ / π΄ | Not naive "GET = safe": a POST β¦/search is a read-only query, merge is flagged irreversible, gdpr-delete is a permanent purge (vs. archive β recycle bin), list-membership calls are reversible links, POST /crm/v3/imports is a bulk import, and transactional email is sends messages. |
Machine-readable MCP annotations (readOnlyHint, destructiveHint) | Hosts that honor annotations (Claude included) can auto-trust reads and demand confirmation before anything destructive. |
| Actionable error hints | 403 with MISSING_SCOPES β the exact scopes to add and where; plain 403 on a gated API β the plan tier it needs; 401 β token type & expiry guidance; 429 β your limits. The model gets how to fix it, not just what broke. |
| Read-only mode & group filtering | Expose only the 302 π’ read-only tools (HUBSPOT_READ_ONLY=true), or narrow to the groups you use (HUBSPOT_INCLUDE_GROUPS=contacts,deals,cms:*). Area wildcards included. |
| Discovery mode by default | Out of the box the model sees 6 tools (~2k tokens): search, inspect and invoke over all 687 endpoint tools, plus the capability, GraphQL and raw-request tools. HUBSPOT_TOOL_MODE=all exposes every endpoint tool directly. Read-only mode applies either way. |
| Real file uploads | The multipart endpoints (Files, CRM imports, HubDB import, CMS source code) actually work β pass file content inline or as base64. Most generated servers can't do multipart at all. |
| Automatic retries with backoff | Transient 429 / 5xx responses are retried with jittered exponential backoff, honoring HubSpot's Retry-After header. |
| Built-in rate limiting | Self-throttles under HubSpot's burst caps (default 100 req / 10 s) with a separate limiter for the /search endpoints (~5 req/s cap). A burst of tool calls won't trip a 429. |
| Response-size guard | Optionally cap huge list responses (HUBSPOT_MAX_RESPONSE_CHARS) so one call can't blow the model's context window. |
| CRM GraphQL passthrough | HubSpot's GraphQL endpoint is query-only, so it's a π’ tool here β fetch a contact, its company and that company's deals in one round-trip. |
| Raw-request escape hatch | hubspot_api_request reaches brand-new or beta endpoints the moment HubSpot ships them β auth, throttling and retries still handled server-side. |
| Two transports: stdio and Streamable HTTP | Use it locally in Claude Desktop, or run one always-on server that any number of MCP clients reach over HTTP. |
| Docker + docker-compose, health check, auto-restart | Production-style deployment out of the box: docker compose up and it stays up. |
| Optional bearer-token auth on the HTTP endpoint | Put the server behind a shared secret the moment it's reachable beyond localhost. |
| Your token never reaches the model | The access token lives in the server's environment and is injected on every request β the assistant only ever sees tool inputs and API responses. |
| Drop-in spec updates | npm run fetch-specs pulls HubSpot's latest OpenAPI definitions (and their hub/tier metadata) from HubSpot's public index β new endpoints become new tools on rebuild, no code changes. |
There are a few ways to reach HubSpot from an AI assistant today. Here's how this server stacks up against the alternatives:
| This server | Official HubSpot MCP | shinzo-labs hubspot-mcp | mcp-hubspot (buryhuang) | CData MCP | |
|---|---|---|---|---|---|
| Approx. tools | ~690 (all 1,076 endpoints) | ~7 curated (remote) | 100+ | ~7 | 3 (generic SQL) |
| Whole public API (CRM and CMS Β· Marketing Β· Automation Β· Commerce Β· Files Β· Settings Β· Webhooks) | β | β CRM + some content reads | β CRM-centric | β | β |
| Hub & plan-tier awareness per tool | β | β | β | β | β |
| Account capability report (scopes Β· usage Β· unlocks) | β | β | β | β | β |
| Reads and writes | β | β | β | β partial | β read-only |
| Curated π’ / π‘ / π΄ safety categories | β | β | β | β | n/a |
readOnlyHint / destructiveHint annotations | β | β | β | β | β |
| Read-only mode + group filtering | β | β | β | β | always read-only |
| File uploads (multipart) | β | β | β | β | β |
| GraphQL passthrough | β | β | β | β | β |
Rate limiting + auto-retry (429/5xx) | β | β | β | β | β |
stdio transport | β | β local package | β | β | β |
| Streamable-HTTP transport | β | β hosted remote | β | β | β |
| Docker + compose + health check | β | β | β Dockerfile | β image only | β |
| Self-hosted on your own infra | β | β vendor cloud | β | β | β |
| Language | TypeScript | TypeScript | TypeScript | Python | Java |
| License | MIT | β | MIT | MIT | MIT |
β = yes Β· β = partial / not documented Β· β = no. Compiled from each project's public documentation; this is an unofficial project, not affiliated with HubSpot or the projects listed. Tool counts are approximate and move as APIs evolve.
No reviews yet β be the first to share how this listing worked for you.
Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.
[](https://allmcps.com/mcp/hubspot-2)<a href="https://allmcps.com/mcp/hubspot-2"><img src="https://allmcps.com/api/badge/hubspot-2?style=directory" alt="HubSpot on AllMCPs" /></a>