Files
Teknium 88369af1c7 refine(mcp): debloat the catalog batch — vendor-doc tool audit applied to every entry
Policy applied (per Teknium direction, matching the Cloudflare precedent):
raw tool surfaces only — no server-side code-mode/search-execute layers, no
vendor tool_search; bloat (telemetry, feedback, docs-lookup, static-guidance
pseudo-tools, plan-gated upsells, dupe batch/compat shims) pruned via
manifest defaults.

DROPPED (meta-tool gateway IS the server, no vendor off-switch):
zapier (discover/enable/execute over 40k actions), wix (CallWixSiteAPI
generic invoke), customer-io (cio_read/write/delete_api generic HTTP
executors), omnisend (4 generic verb executors), apify (dynamic
actor-mount + telemetry-on-by-default), ramp (undocumented SQL/ETL layer,
no tool list, money-moving approval tools)

URL-LEVEL DEBLOAT (vendor-documented switches):
postman -> /minimal variant; klaviyo -> ?core-tools-only=true&
disable-tools-with-user-generated-content=true (262 -> ~40 tools)

CURATED default_excluded (20 entries) / default_enabled (kiwi, motherduck):
monday (GraphQL escape hatch trio...), close (voice-agent cluster that
places real AI phone calls, search/fetch layer, 14 excl), betterstack
(Execute query SQL hatch, 8 instruction pseudo-tools, team mgmt, 14 excl),
mixpanel (6 guidance pseudo-tools, bulk dupes, 10 excl), neon (search/
fetch, docs pair, logs beta, auth product, 10 excl), miro (6 deprecated),
gamma (viewer-tracking analytics), robinhood (upsell+social), dropbox,
todoist, fireflies, calendly, plaid, attio, gitlab, circleci, buildkite
(secrets-exposing get_job_env), semgrep, globalping, prisma-postgres,
motherduck (9-tool core enable), kiwi (feedback tool pruned)

Clean after audit (no changes needed): canva, clickup, linear-class lean
servers, twelve-data (read-only), algolia (read-only, vendor-curated),
indeed, strava (vendor read-only, no tool list published), craft,
wordpress-com (user-side toggles documented), trivago, alltrails,
deepwiki, context7, microsoft-learn, aws-knowledge, wolfram, twilio-docs
2026-08-25 04:21:37 -07:00

55 lines
1.7 KiB
YAML

# Nous-approved MCP catalog entry.
# Presence in this directory = approval. Merged via PR review.
manifest_version: 1
name: close
description: 'Sales CRM: leads, opportunities, calls, and emails.'
source: https://help.close.com/docs/mcp-server
# Official vendor-hosted remote MCP (URL-only — Hermes never spawns a local
# process for this entry). Native OAuth 2.1 + Dynamic Client Registration
# (verified live: RFC 9728 protected-resource metadata -> AS metadata with
# registration_endpoint); Hermes's MCP client + mcp_oauth_manager handle
# discovery, PKCE, token exchange, and refresh.
transport:
type: http
url: https://mcp.close.com/mcp
auth:
type: oauth
# Excluded (107-tool surface): product-help search; generic search/fetch/
# paginate layer duplicating lead_search/activity_search; AI field
# enrichment; and the entire voice-agent cluster — schedule_voice_agent_call
# places REAL outbound AI phone calls to contacts. Re-enable any with
# `hermes mcp configure close`.
tools:
default_excluded:
- close_product_knowledge_search
- customized_builtin_labels
- search
- fetch
- paginate_search
- enrich_field
- schedule_voice_agent_call
- apply_voice_agent_update
- propose_voice_agent_update
- find_voice_agents
- find_agent_configs
- get_voice_agents
- get_voice_agent_overview_report
- get_voice_agent_performance_report
# Composer-suggestion triggers (desktop brand pills).
suggest:
keywords:
- close crm
hosts:
- close.com
post_install: |
On first connection Hermes opens a browser to authorize with
Close (or run `hermes mcp login close`). Approve access,
then restart the session so tools load.