Skip to main content
AllMCPs
BrowseBestCategoriesStackCompareToolsGuidesBlog
Log in Submit MCP

Stay in the loop

Get new MCP servers and top picks in your inbox.

AllMCPs

The open directory for discovering and installing Model Context Protocol servers.

AllMCPs on GitHub (opens in a new tab)
Launched onTiny Startupstinystartups.com
Explore
  • Browse servers
  • Best MCP servers
  • Categories
  • MCP clients
  • Agent prompts
  • Stack Builder
  • Compare servers
  • Random discovery New
  • Submit a server
  • Pricing & Boost Boost
Learn
  • Guides hub
  • What is MCP?
  • Install guide
  • Build an MCP server
  • Deploy an MCP server
  • Security guide
  • Troubleshooting
  • MCP for SEO & AEO
  • Protocol versioning
  • Transports: stdio vs HTTP
  • State of MCP (stats)
  • Blog & updates
Tools
  • All developer tools
  • Config generator
  • Config validator
  • Config auditor
  • MCP playground
  • Token calculator
  • OpenAPI → MCP
  • Badge generator
For agents
  • REST API docs
  • Trust & traffic Live
  • Remote MCP server SSE ↗ (opens in a new tab)
  • llms.txt ↗ (opens in a new tab)
  • Catalog JSON ↗ (opens in a new tab)
Company
  • About
  • Advertise Sponsor
  • Contact
  • GitHub ↗ (opens in a new tab)
  • Terms
  • Privacy
AllMCPs VerifiedAllMCPs VerifiedFeatured on Nick LaunchesFeatured on Nick LaunchesLaunch Llama NewsletterLaunch Llama NewsletterVerified DR - allmcps.comVerified DR - allmcps.comFeatured on SaaSGrowFeatured on SaaSGrowFeatured on Twelve ToolsFeatured on Twelve ToolsFeatured on Saaspa.geFeatured on Saaspa.geFeatured on Findly.toolsFeatured on Findly.toolsFeatured on Startup FameFeatured on Startup FameFeatured on LaunchKiwiFeatured on LaunchKiwiFeatured on ScrollLaunchFeatured on ScrollLaunchFeatured on DailyPingsFeatured on DailyPingsFazier badgeFazier badgeFeatured on NewTool.siteFeatured on NewTool.siteFeatured on saasfame.comFeatured on saasfame.comDR Checker - Domain RatingDR Checker - Domain RatingListed on Turbo0Listed on Turbo0Launched on LaunchBoard - Product Launch PlatformLaunched on LaunchBoard - Product Launch PlatformList on SimilarlabsList on Similarlabshttps://codetrendy.comhttps://codetrendy.comListed on DevTool.ioFeatured on BuildlistFeatured on BuildlistLaunched on Tiny StartupsFeatured on ShowMeBestAIFeatured on ShowMeBestAIFind us on LaunchZoneFind us on LaunchZoneAllMCPs VerifiedAllMCPs VerifiedFeatured on Nick LaunchesFeatured on Nick LaunchesLaunch Llama NewsletterLaunch Llama NewsletterVerified DR - allmcps.comVerified DR - allmcps.comFeatured on SaaSGrowFeatured on SaaSGrowFeatured on Twelve ToolsFeatured on Twelve ToolsFeatured on Saaspa.geFeatured on Saaspa.geFeatured on Findly.toolsFeatured on Findly.toolsFeatured on Startup FameFeatured on Startup FameFeatured on LaunchKiwiFeatured on LaunchKiwiFeatured on ScrollLaunchFeatured on ScrollLaunchFeatured on DailyPingsFeatured on DailyPingsFazier badgeFazier badgeFeatured on NewTool.siteFeatured on NewTool.siteFeatured on saasfame.comFeatured on saasfame.comDR Checker - Domain RatingDR Checker - Domain RatingListed on Turbo0Listed on Turbo0Launched on LaunchBoard - Product Launch PlatformLaunched on LaunchBoard - Product Launch PlatformList on SimilarlabsList on Similarlabshttps://codetrendy.comhttps://codetrendy.comListed on DevTool.ioFeatured on BuildlistFeatured on BuildlistLaunched on Tiny StartupsFeatured on ShowMeBestAIFeatured on ShowMeBestAIFind us on LaunchZoneFind us on LaunchZone
© 2026 Jackalope Digital LLC. All rights reserved.
  1. Home
  2. Biology, Medicine and Bioinformatics
  3. Vaultbeat
Vaultbeat logo
Health: ActiveRecent health check succeeded.Last checked 9/22/2026, 5:17:10 PM

Vaultbeat

User RatingsBe the first to rate and review this MCP server! Enrichment pendingWe haven’t run our AI enrichment pass on this listing yet, so the overview, use cases, and FAQ below may be sparse or missing. We work through the catalog over time — check back soon.
View Repository2 GitHub StarsTotal stargazers on GitHub for the source repository (2 stars).Visit Website

Your AI agent reads your E2EE Apple Health data (sleep, HRV, cycle) — decrypted only locally

Quick Install

Automated & IDE Setup

Copy the AI prompt to install this server into Claude Code, Cursor, or another agent — or use 1-click editor setup below.

Add to CursorAdd to VS Code
Manual Client & Custom JSON ConfigExpand JSON ▾

Client Config & Setup

Remote HTTP
Choose your client or environment
Target File:~/Library/Application Support/Claude/claude_desktop_config.json
claude_desktop_config.json
{
  "mcpServers": {
    "vaultbeat": {
      "url": "http://127.0.0.1:8000/mcp"
    }
  }
}

💡 Paste the JSON block into your client's configuration file under mcpServers, then restart the application.

Install Tool Schemas (27) Directory Badge Claim listing Alternatives📂 More in Biology, Medicine and Bioinformatics

Capabilities & Tool Schemas (27) ~499 tokensApproximate context cost of this server’s tool schemas (~4 chars/token), before any tool is called. Actual usage depends on your client and model.Self-reported Self-reportedParsed from the repository README, not verified against a live server — may be incomplete or out of date.

Inspect callable tools, capabilities, and parameters exposed to AI agents by Vaultbeat.

vaultbeat_status

local binding state (no keys/tokens in the result)

vaultbeat_start_binding

generate a fresh QR binding payload

vaultbeat_poll_binding

poll once for the iOS authorization

vaultbeat_doctor

diagnose this install end to end, and report which data types

vaultbeat_sync_sleep

recent sleep records (incl. heart-rate samples) with per-day

get_sleep_detail

per-night HR+RR+stage timeline with stage intervals

Documentation Overview

Vaultbeat Local MCP Server

Your Apple Health data — sleep stages, cycle, HRV, resting heart rate, workouts, weight, VO₂ max, meals, lifts, notes — readable and writable by your own AI agent (Claude Code, Hermes, OpenClaw, anything MCP), end-to-end encrypted so that only your machine ever sees plaintext. The Vaultbeat iPhone app captures from HealthKit; this package is the local server that decrypts for the agent.

Technically: the local service program for Vaultbeat's encrypted health-data recipient flow. Published externally as Fino-wind/vaultbeat-apple-health (public package name vaultbeat-apple-health since 0.6.2; vaultbeat-mcp and vaultbeat-mcp-local remain back-compat console scripts). This directory is the source of truth — after any user-visible change here, re-export the public repo and update its README tool table + the website /mcp page (see CLAUDE.md "Sync duty").

It runs on the user's computer, generates the Curve25519 keypair used by the iOS app, shows a QR binding payload, receives a one-time server token from the cloud API, and then exposes decrypted health data — sleep, water, weight, cycle, activity, vitals — through the MCP server, and only through it. Read-only for health data: writes come from the iOS app or from this server's own log_* tools.

Commands

There are six, and none of them reads health data. Health data has exactly one exit — the MCP protocol — so the commands here only pair a machine, check that pairing, and start the server. See "Why the CLI cannot read health data" below.

bash
python -m pip install -e './mcp-local-server[qr]'

vaultbeat-apple-health bind      # pair this machine with the iOS app (QR)
vaultbeat-apple-health status    # local binding state
vaultbeat-apple-health doctor    # self-diagnose config, key, cloud reachability
vaultbeat-apple-health init      # generate a keypair + config without pairing
vaultbeat-apple-health poll      # poll once for a pending authorization

# run as an MCP server — this is how health data is read
vaultbeat-apple-health serve --transport stdio
vaultbeat-apple-health serve --transport http --host 127.0.0.1 --port 8000 --path /mcp
vaultbeat-apple-health --demo serve --transport stdio   # synthetic dataset, wired into a client
vaultbeat-apple-health --demo doctor

Why the CLI cannot read health data

Until 0.7.4 this package shipped fifteen data subcommands (sleep, water, weight, menstrual, hrv, …) that printed decrypted health JSON to stdout. They were removed, and nothing was lost: every one of them had an MCP tool doing the same job (sleep → vaultbeat_sync_sleep, water → get_water_intake, and so on), while the MCP side additionally carries whole capabilities the CLI never had — food, basal energy, total energy, VO₂ max, the metric-series tools, and every log_* writer.

The CLI half was not a second feature, it was a second door into the same room — and a door that skipped everything the MCP tools state about what they return: how many days are actually covered, why an empty result is not a zero, which plan clamps the window. Any agent with shell access could read a person's cycle history by running a command, bypassing all of it. One exit is the property worth having, so there is one exit.

--demo is a global flag, not a subcommand: it goes before the subcommand (vaultbeat-apple-health --demo serve), and VAULTBEAT_DEMO=1 does the same thing. It serves a deterministic synthetic dataset — the same records on every machine, every run — so demo output can be pasted into a bug report as a shared baseline. Nothing is fetched and nothing is decrypted; there is no private key involved at all. Every payload carries demo_mode: true plus a [SYNTHETIC DEMO DATA] banner, the tool descriptions say so, and the server lists itself as Vaultbeat Health [DEMO — SYNTHETIC DATA], so demo output cannot pass for a real export. Read tools only — the log_* write tools refuse, because writing needs a real key and a real account, and a write that pretends to succeed is worse than one that says it needs pairing. It applies to that one invocation and is never written to the config file.

http is a CLI alias for MCP's streamable-http transport. The default transport remains stdio for local desktop MCP clients.

The config file defaults to ~/.tether/mcp-local/config.json and is written with 0600 permissions. It contains the cloud-issued server token and your public key; do not commit or share it.

Where the private key lives

Not in config.json. It is looked for in three places, in order:

  1. VAULTBEAT_PRIVATE_KEY — read if set, never written back, for operators who inject it from systemd-creds / a vault / a KMS.
  2. The system keyring — the normal case on a desktop.
  3. ~/.tether/mcp-local/identity.key, mode 0600 — the automatic fallback on a machine with no keyring backend at all.

Keeping it out of config.json is a boundary, not tidiness: the server token alone can download your ciphertext but not read it, and the private key alone has nothing to decrypt. config.json is the file people cat into bug reports.

🔴 Never delete config.json to "start clean". The private key is not in it, so deleting does not clear a bad key — it mints a brand-new identity, and every record already encrypted for the old one becomes permanently unreadable. If a command reports missing key material, the error names all three locations and what was found in each; read that before removing anything.

Headless servers: if the keyring is unreachable, do not set PYTHON_KEYRING_BACKEND to the null backend. That backend accepts writes and stores nothing; since 0.4.3 every keyring write is verified by reading it back, so a null backend just lands the key in layer 3's identity.key file — the same outcome as having no keyring, with a keyring you might have reached hidden behind it. Either let layer 3 handle it (automatic when no backend exists) or, if a D-Bus session exists but this process cannot see it, pass DBUS_SESSION_BUS_ADDRESS through explicitly — XDG_RUNTIME_DIR on its own is not enough.

.tether, not .vaultbeat — that is deliberate, do not "fix" it. The app was renamed but this path is frozen at the pre-rename location, because the Keychain username embeds the resolved config path (_keychain_username in store.py). Moving the directory orphans the bound config and its private-key Keychain entry for every existing install. Until 2026-07-28 this README wrote ~/.vaultbeat/..., which does not exist — so anyone who came here to destroy their credentials rm -rf'd an empty path, got no error, and left the real key in place.

When using HTTP transport, the server binds to 127.0.0.1:8000 and serves MCP at /mcp by default, and requires a bearer token (see "Authenticating HTTP transport" below). Binding a non-loopback address fails closed unless you pass both a token and --allow-remote; always front a network-exposed server with TLS (a reverse proxy).

Binding Flow

  1. vaultbeat-apple-health bind generates a fresh pollID and prints a QR payload: {"pollID":"...","publicKeyBase64":"...","serverName":"..."}
  2. The iOS app scans that payload and calls the mcp-bind-local Edge Function.
  3. The local service polls the mcp-poll-binding Edge Function.
  4. Once bound, the local config stores serverID and serverToken.
  5. Every read tool calls the mcp-sync Edge Function, decrypts the returned envelopes locally, and returns plaintext JSON to the agent. (All privileged routes are Supabase Edge Functions at /functions/v1/<name>.)

Troubleshooting: the QR code looks wrong (Windows / non-UTF-8 terminals)

A QR code is drawn with block characters, and some encodings cannot represent them — GBK (the default on simplified-Chinese Windows) is missing two of the four outright. Since 0.7.2 the code is written as UTF-8 bytes underneath the terminal's own encoder, so this is usually invisible: agents and modern terminals decode UTF-8 and get an intact code.

If you do see mojibake, or rows of uneven length:

  • The pairing is still live and still waiting. Do not re-run bind — that mints a new pollID and invalidates anything already scanned. Leave it polling.
  • Render the payload (printed as plain JSON just above the code) as an image — qrencode -o pair.png '<payload>', or any QR library — send it to your phone, and use import from Photos in the app's scanner rather than the camera.
  • Or run chcp 65001 and try again in a fresh terminal.
  • Or use bind --no-qr to get the payload as text only.

Troubleshooting: vaultbeat-apple-health doctor

If binding or reads fail, run the self-diagnosis:

bash
vaultbeat-apple-health doctor          # human-readable [OK]/[FAIL] checklist with hints
vaultbeat-apple-health doctor --json   # machine-readable, for agents

It checks, in order: config file → identity key (Keychain) → cloud reachability → binding state → a real fetch-and-decrypt round trip, and prints a targeted hint for the first thing that's broken (e.g. "codes expire after 10 minutes — re-run bind for a fresh QR", or "the stored key can no longer decrypt your data — delete this server in the iOS app and bind again"). Exit code 0 = all healthy, 1 = something needs the hint above.

MCP Tools (33)

Read the full README →View source on GitHub →

Related MCP Servers

View all in Biology, Medicine and Bioinformatics View all alternatives
  • Vaultbeat Apple Health logoVaultbeat Apple Health

    Your AI agent reads your Apple Health data: sleep, HRV, cycle, workouts. Decrypted on your machine

    Biology, Medicine and Bioinformatics0 views
    Compare vs Vaultbeat Apple Health →
  • Oura Ring MCP logoOura Ring MCP

    Connect your Oura Ring to Claude AI assistants. Health metrics with smart analysis tools.

    Biology, Medicine and Bioinformatics2 views
    Compare vs Oura Ring MCP →
  • Fulcra Context MCP logoFulcra Context MCP

    MCP server for accessing personal health and biometric data including sleep stages, heart rate, HRV, glucose, workouts, calendar, and location via the Fulcra Life API with OAuth2 consent.

    Biology, Medicine and Bioinformatics4 views
    Compare vs Fulcra Context MCP →
  • Medical Terminologies MCP logoMedical Terminologies MCP

    Unified MCP server for ICD-11 (WHO), LOINC, RxNorm, MeSH (NLM), ATC, CID-10 (Brazilian DataSUS), and optional SNOMED CT. 28 tools (34 with SNOMED) with structuredContent + outputSchema on every default tool. Hosted on Cloudflare Workers, listed on Smithery, and on npm.

    Biology, Medicine and Bioinformatics2 views
    Compare vs Medical Terminologies MCP →

Adoption & maintenance

Factual signals from GitHub, npm, and our automated checks — not a rating.

GitHub stars
2
Stargazers on the source repository.
Last commit
9d ago
Most recent push to the default branch.
Tools exposed
27
Callable tools this server registers over MCP.
Directory activity
2 views
Config copies, upvotes, and views on AllMCPs.

Reviews

No reviews yet — be the first to share how this listing worked for you.

Frequently Asked Questions about Vaultbeat

vaultbeat is a hosted MCP server. Add it as a remote server in your client's config: "mcpServers": { "vaultbeat": { "url": "http://127.0.0.1:8000/mcp" } }

AllMCPs Directory Badge

Full Badge Customizer

Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.

Badge Style:
Live Dynamic SVG PreviewVaultbeat AllMCPs Directory Badge
Markdown (GitHub README)
[![AllMCPs](https://allmcps.com/api/badge/vaultbeat?style=directory)](https://allmcps.com/mcp/vaultbeat)
HTML Embed
<a href="https://allmcps.com/mcp/vaultbeat"><img src="https://allmcps.com/api/badge/vaultbeat?style=directory" alt="Vaultbeat on AllMCPs" /></a>

Technical Specs & Signals

Category📂Biology, Medicine and Bioinformatics
More technical detailsExpand ▾
TransportSSE (Remote)
Last updatedSep 15, 2026
15/15 checks healthy over the last 45d
Views2
Unique ViewsTotal visits recorded for this listing page on AllMCPs.
Installs0
Installs & Copy ActionsTotal times users copied install commands or configuration snippets for this server.
GitHub stars2
GitHub Star CountTotal stargazers on GitHub representing community popularity (2 stars).
Last commit9d ago
Last Repository CommitThe most recent commit or push recorded for this server's GitHub repository.Last commit on Sep 15, 2026
53Quality signal: Good · 53/100How this signal is calculated ▾
Server availabilityNot measured

Not scored for repo-hosted servers — we can't reach the running server, only its GitHub page. Hosted MCP endpoints are health-checked live.

Verified ownership10/20
Documentation & tools25/30
Adoption & activity5/15
Community engagement0/10

A guidance signal from public completeness & health data — not a user rating. New listings start lower and rise as they add docs, get verified, and grow adoption. Signals we can't observe for a listing are skipped, not counted against it.

Supply-chain signal

No high-severity advisories surfaced by our automated scan.

Critical 0High 0Medium 0Low 0

Scanned 8/18/2026 via OSV.dev · http://127.0.0.1:8000/mcp (PyPI)

★ FeaturedMoxie Docs MCP logo

Moxie Docs MCP

MCP & Agent Skills for Automated Documentation, and codebase conventions + context

Explore Server →

Own this project?

This directory is pre-filled from public sources. Claim via GitHub README, site badge, or DNS TXT to unlock edit access and the Official badge — proof is checked automatically, then reviewed by our team.

Free dofollow backlink: add your website and place the AllMCPs badge on it — no claim needed. We detect it automatically and keep it verified as long as the badge stays live.

Claim & get free dofollow

Share & Embed

Add our SVG badge (dark/light directory styles) or embeddable widget to your site.

Explore more

More in Biology, Medicine and Bioinformatics →Alternatives to Vaultbeat →Install in Claude DesktopInstall in CursorInstall in VS CodeSetup guides for all 13 MCP clients