Governed memory for AI agents. Memory with receipts. Local, plain files, zero network calls.
Copy the AI prompt to install this server into Claude Code, Cursor, or another agent β or use 1-click editor setup below.
We haven't yet run this listing's install command through our automated sandbox check. This isn't a red flag β we're steadily working through the catalog.
π‘ Paste the JSON block into your client's configuration file under mcpServers, then restart the application.
Tools gave your agent hands. MCP gave it a nervous system. Magnemo gives it a brain.
Governed memory for AI agents. Every entry with a receipt. Your agent writes the draft; nothing is kept until you say yes.
Open your AI (Claude Code, Cursor, Windsurf, or anything that speaks MCP) in any of your project folders, and paste this:
You'll know it worked β your AI will tell you who it is now.
For builders. Magnemo is an MCP server with four tools β retrieve, stage,
bootpack, handoff β and a CLI for your side: review, promote, reject.
It runs on your machine, in plain markdown files you own, with zero network calls
(the doctor line proves it). Every promotion is a person's click, recorded with
who wrote the entry, when, and through which gate β memory with a witness. Trust is
computed from that record, never asserted. It mounts beside any memory you already
run (a folder of notes, Obsidian, a RAG stack). Python 3.11+, zero dependencies,
Apache-2.0.
Fresh vault? THE CHARTER section will say it isn't promoted yet β that is the
governance speaking: Magnemo never fabricates canon. Stage a charter, review it,
promote it, and every boot thereafter serves it back verbatim.
(magnemo not found after install? pip's script folder isn't on PATH β
python3 -m magnemo always works.)
Open beta β read KNOWN_LIMITS.md before trusting it with anything you can't lose. Honest caveats, no fine print.
One server, said ten ways. Every block below is the same thing: uvx magnemo-mcp with MAGNEMO_VAULT pointing at
the folder your memory lives in (make one with magnemo init ./vault). Tested on this Mac where it says so;
the rest is from each client's own docs and marked untested β corrections welcome, open an issue.
Claude Code β tested.
(claude mcp list shows magnemo β¦ β Connected. Add -s project to write it into the repo's .mcp.json for your team.)
Claude Desktop β tested. Download the extension from the latest release β magnemo-0.6.4.post1.mcpb β and open it; Claude Desktop asks for the vault folder and does the rest. (The connectors directory listing follows once it is accepted.)
Cursor β untested here (not installed on this Mac); the link and the block follow Cursor's docs.
Or
~/.cursor/mcp.json (or .cursor/mcp.json in the project):
VS Code / Copilot β untested here; per VS Code's docs.
Or
.vscode/mcp.json in the workspace:
Windsurf β untested; ~/.codeium/windsurf/mcp_config.json:
Cline β untested; Cline β MCP Servers β Configure β cline_mcp_settings.json:
Continue β untested; ~/.continue/config.yaml (or a file in .continue/mcpServers/):
Gemini CLI β untested; ~/.gemini/settings.json:
Codex CLI β untested; ~/.codex/config.toml:
Zed β untested; settings.json β context_servers:
After the install, the loop is the same everywhere: your agent writes to staging, you review.
Anything that speaks MCP over stdio mounts the same way. The remote door (ChatGPT and hosted clients) is on its way in 0.7.0.
Agents get four MCP tools. Promotion is not one of them.
| Actor | Door | Can do |
|---|---|---|
| Agents | MCP server (stdio) | retrieve canonical memory Β· stage β staging only, the one write tool Β· bootpack on wake Β· handoff at the boundary |
| You | CLI + git (any editor) | review the queue Β· promote / reject Β· edit anything Β· own everything |
Every note is markdown with provenance frontmatter (author, written, source, status, reviewed_by, supersedes, strength). Provenance is the file format.
Magnemo runs on your machine and nowhere else. The vault is a folder of plain markdown
files you own and can read in any editor. The engine makes zero network calls β magnemo doctor proves it on every run β so nothing you or your agent writes leaves the computer.
There is no telemetry, no account, no phone-home; the only copies of your memory are the
ones you make yourself (magnemo chest), to places you own. The full page:
https://magnemo.ai/privacy
MAGNEMO_PARTITIONS); cross-partition = DENIED.Release by release, with the design notes that used to live here: CHANGELOG.md.
β Silver Valley Technologies Inc. Β· Phase 1 of 3 Β· The memory that learns is the memory that is governed.
mcp-name: ai.magnemo/magnemo Β· Source Β· Security Β· Privacy
Factual signals from GitHub, npm, and our automated checks β not a rating.
No reviews yet β be the first to share how this listing worked for you.
Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.
[](https://allmcps.com/mcp/magnemo)<a href="https://allmcps.com/mcp/magnemo"><img src="https://allmcps.com/api/badge/magnemo?style=directory" alt="Magnemo on AllMCPs" /></a>