GitLab MCP Server

English | ํ๊ตญ์ด | ็ฎไฝไธญๆ
๐ Documentation โ Setup guides, environment variables, and the full tool reference live on the hosted docs site.

@zereight/mcp-gitlab
Agent-workflow-optimized GitLab MCP โ manage projects, merge requests, issues, pipelines, wiki, releases, tags, milestones, and more through stdio, SSE, and Streamable HTTP.
Supports PAT, OAuth, read-only mode, dynamic API URLs, and remote authorization for VS Code, Claude, Cursor, Copilot, and other MCP clients.
Why use this GitLab MCP?
- 261 tools +
discover_tools โ start with a small toolset; activate more at runtime without CQRS-style grouping
- MR 2-step review โ
list_merge_request_changed_files โ batched get_merge_request_file_diff
- Agent Skill built in โ workflow guidance in
skills/gitlab-mcp/
- Flexible auth โ Personal Access Token, local OAuth2 browser flow, MCP OAuth proxy, and per-request remote authorization
- Multiple transports โ stdio for local clients, SSE for legacy clients, and Streamable HTTP for modern remote deployments
- Client-friendly setup โ examples for Claude Code, Codex, Antigravity, OpenCode, Copilot, Cline, Roo Code, Cursor, Kilo Code, and Amp Code
- Self-hosted ready โ works with custom GitLab instances, proxy settings, and dynamic API URL routing
How we compare
| @zereight/mcp-gitlab | GitLab MCP A (community CQRS-style) |
|---|
| Best for | AI agent workflows | Enterprise multi-instance / grouped tools |
| Tool model | ~261 granular tools + discover_tools | ~50โ60 grouped browse_* / manage_* tools |
| MR review | 2-step batched diff | Varies |
| Node.js | >=18.17 | Often >=24 |
| License | MIT | Varies |
Full comparison โ
Quick start: choose either Personal Access Token or OAuth2 setup below, install @zereight/mcp-gitlab, and use zereight-mcp-gitlab in your MCP client configuration.
Client Setup Guides
Usage
Setup Overview
Authentication Methods
The server supports four authentication methods:
For local/desktop use (most common):
- Personal Access Token (
GITLAB_PERSONAL_ACCESS_TOKEN) โ simplest setup
- OAuth2 โ Local Browser (
GITLAB_USE_OAUTH) โ recommended for better security
For server/remote deployments:
- OAuth2 โ MCP Proxy (
GITLAB_MCP_OAUTH) โ for remote MCP clients such as Claude.ai
- Remote Authorization (
REMOTE_AUTHORIZATION) โ multi-user deployments where each caller provides their own token
Quick setup paths
For the simplest local setup, start with a Personal Access Token. For browser-based local auth, use OAuth2. For remote or multi-user deployments, continue to the MCP OAuth and Remote Authorization sections later in this README.
Install the server once:
brew tap zereight/gitlab-mcp https://github.com/zereight/gitlab-mcp
brew install zereight/gitlab-mcp/zereight-mcp-gitlab
Or with npm:
npm install -g @zereight/mcp-gitlab
Or with Nix, by adding this flake to your own:
# flake.nix
inputs.gitlab-mcp.url = "github:zereight/gitlab-mcp";
# wherever you configure your MCP client:
command = lib.getExe inputs.gitlab-mcp.packages.${system}.default;
The store path is pinned by your lock file; update it with nix flake update gitlab-mcp.
The examples use zereight-mcp-gitlab, a less collision-prone alias for the legacy mcp-gitlab binary. If your MCP client cannot find it, use the absolute path from which zereight-mcp-gitlab.
No global install? Pin npx to the previous stable release (the version these docs recommend), for example npx -y @zereight/mcp-gitlab@2.1.62. If you always want the newest release, use npx -y @zereight/mcp-gitlab@latest instead. The server prints a notice to stderr on startup when a newer version is available (disable with GITLAB_DISABLE_VERSION_CHECK=true).
Using CLI Arguments (for clients with env var issues)
Some MCP clients (like GitHub Copilot CLI) have issues with environment variables. Use CLI arguments instead:
{
"mcpServers": {
"gitlab": {
"command": "zereight-mcp-gitlab",
"args": ["--token=YOUR_GITLAB_TOKEN", "--api-url=https://gitlab.com/api/v4"],
"tools": ["*"]
}
}
}
Available CLI arguments:
--token - GitLab Personal Access Token (replaces GITLAB_PERSONAL_ACCESS_TOKEN)
--api-url - GitLab API URL (replaces GITLAB_API_URL)
--read-only=true - Enable read-only mode (replaces GITLAB_READ_ONLY_MODE, deprecated โ prefer --permission-mode=readonly)
--permission-mode - Permission level: readonly, modify (no delete tools), or full (replaces GITLAB_PERMISSION_MODE, default full)
--use-wiki=true - Enable wiki API (replaces USE_GITLAB_WIKI, legacy โ prefer GITLAB_TOOLSETS=wiki)
--use-milestone=true - Enable milestone API (replaces USE_MILESTONE, legacy โ prefer GITLAB_TOOLSETS=milestones)
--use-pipeline=true - Enable pipeline API (replaces USE_PIPELINE, legacy โ prefer GITLAB_TOOLSETS=pipelines)
--disable-version-check=true - Disable the startup new-version notice (replaces GITLAB_DISABLE_VERSION_CHECK)
--masking-enabled=true - Enable text-response masking (replaces GITLAB_MASKING_ENABLED)
--masking-config - Path to a masking configuration file (replaces GITLAB_MASKING_CONFIG)
--masking-policy-file - Path to a protected managed-policy file (replaces GITLAB_MASKING_POLICY_FILE)
--masking-workspace-dir - Directory used to resolve masking files (replaces GITLAB_MASKING_WORKSPACE_DIR)
CLI arguments take precedence over environment variables.
zereight-mcp-gitlab auth is a subcommand (not an MCP server flag). It runs GitLab device flow and exits. See CLI Arguments.
Fine-grained tool filtering: use GITLAB_PERMISSION_MODE=modify to allow create/update while
blocking every delete tool (including delete mutations through execute_graphql and
push_files delete/move actions), or
GITLAB_PERMISSION_MODE=readonly for read-only access. You can also
enable toolset groups with GITLAB_TOOLSETS=<group,โฆ>, allow-list individual tools with
GITLAB_TOOLS=<tool,โฆ> (e.g. read-only groups plus a few specific write tools), and
deny-list by pattern with GITLAB_DENIED_TOOLS_REGEX. The legacy USE_GITLAB_WIKI /
USE_MILESTONE / USE_PIPELINE flags are kept for backward compatibility only.
See Tools Reference and
Environment Variables.
docker run -i --rm \
-e HOST=0.0.0.0 \
-e GITLAB_PERSONAL_ACCESS_TOKEN=your_gitlab_token \
-e GITLAB_API_URL="https://gitlab.com/api/v4" \
-e GITLAB_PERMISSION_MODE=readonly \
-e GITLAB_TOOLSETS=wiki,milestones,pipelines \
-e SSE=true \
-e SSE_AUTH_TOKEN=your_mcp_sse_token \
-p 3333:3002 \
zereight050/gitlab-mcp
{
"mcpServers": {
"gitlab": {
"type": "sse",
"url": "http://localhost:3333/sse",
"headers": {
"Authorization": "Bearer your_mcp_sse_token"
}
}
}
}
docker run -i --rm \
-e HOST=0.0.0.0 \
-e REMOTE_AUTHORIZATION=true \
-e GITLAB_API_URL="https://gitlab.com/api/v4" \
-e GITLAB_PERMISSION_MODE=readonly \
-e GITLAB_TOOLSETS=wiki,milestones,pipelines \
-e STREAMABLE_HTTP=true \
-p 3333:3002 \
zereight050/gitlab-mcp
{
"mcpServers": {
"gitlab": {
"type": "streamable-http",
"url": "http://localhost:3333/mcp",
"headers": {
"Authorization": "Bearer glpat-..."
}
}
}
}
Using MCP OAuth Proxy (GITLAB_MCP_OAUTH)
For server/remote deployments only. This mode requires the MCP server to be deployed with a publicly accessible HTTPS URL. For local/desktop use, see GITLAB_USE_OAUTH above.
For remote MCP clients that support the MCP OAuth specification (e.g. Claude.ai).
The server acts as a full OAuth 2.0 authorization server โ unauthenticated requests
receive a 401 + WWW-Authenticate response, which triggers the OAuth browser flow
automatically on the client side.
Remote MCP clients such as OpenCode, MCPJam, and Claude.ai can send their own
callback URL during authorization. If you cannot register every client callback
URL in GitLab, enable GITLAB_OAUTH_CALLBACK_PROXY=true. With callback proxy
mode, GitLab only needs one registered redirect URI: {MCP_SERVER_URL}/callback.
GITLAB_OAUTH_REDIRECT_URI is for local OAuth (GITLAB_USE_OAUTH) only. It does
not override remote MCP OAuth client callback URLs and should not be used to fix
remote Unregistered redirect_uri errors.
This variable exists because the local OAuth flow starts a browser on the same
machine as the MCP server and listens for the callback on a local HTTP server,
for example http://127.0.0.1:8888/callback.
Remote MCP OAuth is different. In GITLAB_MCP_OAUTH=true mode, the MCP client
provides its own callback URL during /authorize. GITLAB_OAUTH_REDIRECT_URI
does not replace that client-provided URL.
| Mode | Enable with | Callback variable | GitLab redirect URI |
|---|
| Local OAuth | GITLAB_USE_OAUTH=true | GITLAB_OAUTH_REDIRECT_URI | http://127.0.0.1:8888/callback or your local callback |
| Remote MCP OAuth | GITLAB_MCP_OAUTH=true | GITLAB_OAUTH_CALLBACK_PROXY=true | {MCP_SERVER_URL}/callback |
Use GITLAB_OAUTH_REDIRECT_URI only when the MCP server itself owns the local
browser callback. Use GITLAB_OAUTH_CALLBACK_PROXY=true when a remote MCP client
owns the callback URL.
How it works: You deploy this MCP server somewhere with a public HTTPS URL. MCP
clients connect to {MCP_SERVER_URL}/mcp. The server handles the OAuth 2.0 flow,
exchanging credentials with GitLab on behalf of the client.
Prerequisites:
- A publicly accessible HTTPS server URL (
MCP_SERVER_URL) โ use ngrok for local testing
- A pre-registered GitLab OAuth application with
api (or read_api) scopes
โ Go to Admin area โ Applications, set Redirect URI to {MCP_SERVER_URL}/callback
| Environment Variable | Required | Description |
|---|
GITLAB_MCP_OAUTH | โ
| Set to true to enable |
GITLAB_API_URL | โ
| GitLab API base URL |
GITLAB_OAUTH_APP_ID | โ
| GitLab OAuth Application ID |
MCP_SERVER_URL | โ
| Public HTTPS URL of this MCP server |
STREAMABLE_HTTP | โ
| Must be true |
GITLAB_OAUTH_CALLBACK_PROXY | optional | Set to true to use the MCP server's fixed /callback URL |
GITLAB_OAUTH_SCOPES | optional | Comma-separated scopes (default: api,read_api,read_user) |
GITLAB_OAUTH_ALLOWED_GROUPS | optional | Comma-separated group full paths โ only members (and subgroup members) may obtain a token (replaces deprecated GITLAB_ALLOWED_GROUPS) |
When STREAMABLE_HTTP=true, server-side GitLab credentials (GITLAB_PERSONAL_ACCESS_TOKEN, GITLAB_JOB_TOKEN, GITLAB_AUTH_COOKIE_PATH, or GITLAB_USE_OAUTH) require REMOTE_AUTHORIZATION=true, GITLAB_MCP_OAUTH=true, or STREAMABLE_HTTP_AUTH_TOKEN.
Troubleshooting Unregistered redirect_uri
Check the redirect_uri in the browser URL. If it points to a client callback
such as http://127.0.0.1:xxxxx/.../callback, enable:
GITLAB_OAUTH_CALLBACK_PROXY=true
Do not fix remote MCP OAuth by changing GITLAB_OAUTH_REDIRECT_URI. That
variable is for local OAuth (GITLAB_USE_OAUTH) only.
docker run -i --rm \
-e HOST=0.0.0.0 \
-e GITLAB_MCP_OAUTH=true \
-e GITLAB_OAUTH_CALLBACK_PROXY=true \
-e STREAMABLE_HTTP=true \
-e MCP_SERVER_URL=https://your-server.example.com \
-e GITLAB_API_URL="https://gitlab.com/api/v4" \
-e GITLAB_OAUTH_APP_ID=your_app_id \
-p 3000:3002 \
zereight050/gitlab-mcp
MCP client configuration:
{
"mcpServers": {
"gitlab": {
"type": "http",
"url": "https://your-server.example.com/mcp"
}
}
}
Using Remote Authorization (REMOTE_AUTHORIZATION)
For server/remote deployments only. Each HTTP caller provides their own GitLab token directly in request headers โ no OAuth flow involved.
For multi-user or multi-tenant deployments where each caller provides their own
GitLab token in the HTTP request header. No OAuth flow โ the MCP server forwards
the token to GitLab on behalf of the caller.
Header priority: Private-Token > JOB-TOKEN > Authorization: Bearer
| Environment Variable | Required | Description |
|---|
REMOTE_AUTHORIZATION | โ
| Set to true to enable |
STREAMABLE_HTTP | โ
| Must be true |
ENABLE_DYNAMIC_API_URL | optional | Allow per-request GitLab URL via X-GitLab-API-URL header |
GITLAB_ALLOWED_HOSTS | optional | Comma-separated allowed X-GitLab-API-URL hosts; GITLAB_API_URL hosts are always allowed |
GITLAB_ALLOW_UNAUTHENTICATED_TOOL_DISCOVERY | optional | Allow unauthenticated initialize, notifications/initialized, tools/list, and server/discover only (tool calls still require auth) |
MCP_SERVER_URL / MCP_ALLOWED_HOSTS / MCP_ALLOWED_ORIGINS | optional | Allowed public /mcp host/origin values for DNS rebinding protection |
MCP_TRUST_PROXY | optional | Trust Forwarded / X-Forwarded-* headers behind a reverse proxy (download URLs, Express req.ip, /mcp IP rate limits, OAuth rate limits) |
GITLAB_ALLOW_UNAUTHENTICATED_TOOL_DISCOVERY=true is intended for MCP gateways
or admin UIs that need to inspect tool metadata before a user provides a GitLab
token. Leave it disabled unless the tool list is safe to expose in your deployment.
When MCP_SERVER_URL is not set, remote download URLs fall back to the local
server address. Set MCP_TRUST_PROXY=true only if the server is reachable through a
trusted reverse proxy and direct client access to the MCP server is blocked.
This enables Express trust proxy for Streamable HTTP and SSE, derives public
download URLs from Forwarded / X-Forwarded-Proto / X-Forwarded-Host /
X-Forwarded-Prefix, and keeps OAuth endpoint rate limiting working when
proxies send X-Forwarded-For with a client port (for example 1.2.3.4:5678).
Existing OAuth+proxy deployments must set this explicitly after the flag was
introduced.
Example request headers:
Private-Token: glpat-xxxxxxxxxxxxxxxxxxxx
or using a Bearer token:
Authorization: Bearer glpat-xxxxxxxxxxxxxxxxxxxx
โ ๏ธ REMOTE_AUTHORIZATION is not compatible with SSE transport. STREAMABLE_HTTP=true is required.
Environment Variables
Use the dedicated reference for the full environment variable list:
Most users only need one of these starting sets:
- Local PAT:
GITLAB_PERSONAL_ACCESS_TOKEN, GITLAB_API_URL
- Local OAuth:
GITLAB_USE_OAUTH=true, GITLAB_OAUTH_CLIENT_ID, GITLAB_OAUTH_REDIRECT_URI, GITLAB_API_URL
- Remote multi-user HTTP:
STREAMABLE_HTTP=true, REMOTE_AUTHORIZATION=true (or GITLAB_MCP_OAUTH=true), MCP_TRUST_PROXY=true (behind a reverse proxy), MAX_REQUESTS_PER_MINUTE=300, MCP_SERVER_URL or MCP_ALLOWED_HOSTS, HOST, PORT
- Multiple side-by-side deployments: set a distinct
MCP_SERVER_NAME per instance (e.g. gitlab-selfhosted-readonly) so clients, logs, and telemetry can tell them apart
- Multi-pod HPA (stateless): above +
OAUTH_STATELESS_MODE=true, OAUTH_STATELESS_SECRET (same across all pods). See Stateless Mode.
Commonly referenced variables:
GITLAB_API_URL
GITLAB_PERSONAL_ACCESS_TOKEN
GITLAB_USE_OAUTH
REMOTE_AUTHORIZATION
MCP_TRUST_PROXY
MAX_REQUESTS_PER_MINUTE
MAX_SESSIONS
MCP_ALLOWED_HOSTS
MCP_ALLOWED_ORIGINS
GITLAB_MCP_OAUTH
GITLAB_OAUTH_CALLBACK_PROXY
OAUTH_REGISTER_RATE_LIMIT_PER_HOUR
OAUTH_STATELESS_MODE
OAUTH_STATELESS_SECRET
The reference document also covers:
- auth and OAuth variables
- MCP OAuth proxy variables
- project and tool filtering variables
- dynamic tool discovery via
discover_tools (on-demand toolset activation)
- transport and session variables
- proxy and TLS variables
For callback proxy mode details, see GitLab MCP OAuth Callback Proxy.
Remote Authorization Setup (Multi-User Support)
When using REMOTE_AUTHORIZATION=true, the MCP server can support multiple users, each with their own GitLab token passed via HTTP headers. This is useful for:
- Shared MCP server instances where each user needs their own GitLab access
- IDE integrations that can inject user-specific tokens into MCP requests
Setup Example:
docker run -d \
-e HOST=0.0.0.0 \
-e STREAMABLE_HTTP=true \
-e REMOTE_AUTHORIZATION=true \
-e GITLAB_API_URL="https://gitlab.com/api/v4" \
-e GITLAB_PERMISSION_MODE=readonly \
-e SESSION_TIMEOUT_SECONDS=3600 \
-p 3333:3002 \
zereight050/gitlab-mcp
Client Configuration:
Your IDE or MCP client must send one of these headers with each request:
Authorization: Bearer glpat-xxxxxxxxxxxxxxxxxxxx
or
Private-Token: glpat-xxxxxxxxxxxxxxxxxxxx
The token is stored per session (identified by mcp-session-id header) and reused for subsequent requests in the same session.
Remote Authorization Client Configuration Example with Cursor
{
"mcpServers": {
"GitLab": {
"url": "http(s)://<your_mcp_gitlab_server>/mcp",
"headers": {
"Authorization": "Bearer glpat-..."
}
}
}
}
Important Notes:
- Remote authorization only works with Streamable HTTP transport
- Each session is isolated - tokens from one session cannot access another session's data
Tokens are automatically cleaned up when sessions close
- Session timeout: Auth tokens expire after
SESSION_TIMEOUT_SECONDS (default 1 hour) of inactivity. After timeout, the client must send auth headers again. The transport session remains active.
- Each request resets the timeout timer for that session
- Rate limiting:
/mcp requests are limited to MAX_REQUESTS_PER_MINUTE per client IP, and per MCP session when using OAuth or remote authorization (default 60). See environment-variables.md.
- Capacity limit: Server accepts up to
MAX_SESSIONS concurrent sessions (default 1000)
MCP OAuth Setup (Claude.ai Native OAuth)
When using GITLAB_MCP_OAUTH=true, the server acts as an OAuth proxy to your GitLab
instance. Claude.ai (and any MCP-spec-compliant client) handles the entire browser
authentication flow automatically โ no manual Personal Access Token management needed.
Prerequisites:
A pre-registered GitLab OAuth application is required. GitLab restricts dynamically
registered (unverified) applications to the mcp scope, which is insufficient for API
calls (need api or read_api).
- Go to your GitLab instance โ Admin Area > Applications (instance-wide) or User Settings > Applications (personal)
- Create a new application with:
- Confidential: unchecked
- Scopes:
api, read_api, read_user (or whichever scopes you intend to request via GITLAB_OAUTH_SCOPES)
- Save and copy the Application ID โ this is your
GITLAB_OAUTH_APP_ID
How it works:
- User adds your MCP server URL in Claude.ai
- Claude.ai discovers OAuth endpoints via
/.well-known/oauth-authorization-server
- Claude.ai registers itself via Dynamic Client Registration (
POST /register) โ handled locally by the MCP server (each client gets a virtual client ID)
- Claude.ai redirects the user's browser to GitLab's login page using the pre-registered OAuth application
- User authenticates; GitLab redirects back to
https://claude.ai/api/mcp/auth_callback
- Claude.ai sends
Authorization: Bearer <token> on every MCP request
- Server validates the token with GitLab and stores it per session
Server setup:
docker run -d \
-e STREAMABLE_HTTP=true \
-e GITLAB_MCP_OAUTH=true \
-e GITLAB_OAUTH_APP_ID="your-gitlab-oauth-app-client-id" \
-e GITLAB_API_URL="https://gitlab.example.com/api/v4" \
-e MCP_SERVER_URL="https://your-mcp-server.example.com" \
-p 3002:3002 \
zereight050/gitlab-mcp
For local development (HTTP allowed):
MCP_DANGEROUSLY_ALLOW_INSECURE_ISSUER_URL=true \
STREAMABLE_HTTP=true \
GITLAB_MCP_OAUTH=true \
GITLAB_OAUTH_APP_ID=your-gitlab-oauth-app-client-id \
MCP_SERVER_URL=http://localhost:3002 \
GITLAB_API_URL=https://gitlab.com/api/v4 \
node build/index.js
Claude.ai configuration:
{
"mcpServers": {
"GitLab": {
"url": "https://your-mcp-server.example.com/mcp"
}
}
}
No headers field is needed โ Claude.ai obtains the token via OAuth automatically.
Environment variables:
| Variable | Required | Description |
|---|
GITLAB_MCP_OAUTH | Yes | Set to true to enable |
GITLAB_OAUTH_APP_ID | Yes | Client ID of the pre-registered GitLab OAuth application |
MCP_SERVER_URL | Yes | Public HTTPS URL of your MCP server; also allowed for /mcp Host/Origin checks |
GITLAB_API_URL | Yes | Your GitLab instance API URL (e.g. https://gitlab.com/api/v4) |
STREAMABLE_HTTP | Yes | Must be true (SSE is not supported) |
GITLAB_OAUTH_SCOPES | No | Comma-separated GitLab scopes to request (e.g. api,read_user). Defaults to api (or read_api when GITLAB_READ_ONLY_MODE=true). The pre-registered application must be configured with at least these scopes. |
OAUTH_REGISTER_RATE_LIMIT_PER_HOUR | No | Per-IP rolling limit for Dynamic Client Registration (POST /register). Default 20/hour; range 1โ1000. Raise when clients (e.g. multiple IDE windows) hit registration throttling. Not a GitLab API limit. |
MCP_DANGEROUSLY_ALLOW_INSECURE_ISSUER_URL | No | Set true for local HTTP dev only |
Important Notes:
- MCP OAuth only works with Streamable HTTP transport (
SSE=true is incompatible)
- Each user session stores its own OAuth token โ sessions are fully isolated
- Session timeout, rate limiting, and capacity limits apply identically to the
REMOTE_AUTHORIZATION mode (SESSION_TIMEOUT_SECONDS, MAX_REQUESTS_PER_MINUTE,
MAX_SESSIONS)
- DCR rate limiting:
POST /register is limited to OAUTH_REGISTER_RATE_LIMIT_PER_HOUR
per client IP (default 20/hour). Separate from /mcp limits and GitLab API quotas.
See environment-variables.md.
- Header auth fallback: when
Private-Token or JOB-TOKEN request headers are
present, OAuth validation is skipped and the raw token is used directly for that
session. This allows PATs and CI job tokens to be used alongside the OAuth flow on
the same server instance. Authorization: Bearer is always treated as an OAuth
token โ use Private-Token for PAT-based header auth.
Agent Skill Files
Pre-built skill files are available in skills/gitlab-mcp/ for AI agents that support skill/instruction loading (Claude Code, GitHub Copilot, Cursor, etc.).
- SKILL.md โ Core guide (~800 tokens) with toolset overview, key workflows, and parameter hints
- reference/ โ Detailed workflow docs for code review, merge requests, issues, pipelines, and vulnerability triage
Install with the skills CLI:
npx skills add zereight/gitlab-mcp --skill gitlab-mcp-skill
Register the skill directory in your AI client to get optimal tool usage guidance without relying solely on the full ListTools response.
Click to expand
merge_merge_request - Merge a merge request
approve_merge_request - Approve a merge request
unapprove_merge_request - Unapprove a merge request
get_merge_request_approval_state - Get merge request approval details including approvers
get_merge_request_conflicts - Get the conflicts of a merge request
list_merge_request_pipelines - List pipelines for a merge request with pagination
execute_graphql - Execute a GitLab GraphQL query
create_or_update_file - Create or update a file in a GitLab project
search_repositories - Search for GitLab projects
create_repository - Create a new GitLab project
create_group - Create new group or subgroup
get_file_contents - Get contents of a file or directory from a GitLab project
push_files - Push multiple files in a single commit
create_issue - Create a new issue
create_merge_request - Create a new merge request
fork_repository - Fork a project to your account or specified namespace
create_branch - Create a new branch
get_branch - Get branch details (commit, protection status)
list_branches - List branches in project with search filter
delete_branch - Delete branch from project
list_protected_branches - List protected branches in a project, supports search filter
get_protected_branch - Get details of a single protected branch (access levels, force push settings)
protect_branch - Protect a repository branch (set push/merge/unprotect access levels)
unprotect_branch - Remove protection from a previously protected branch
update_default_branch - Change the default branch of a project
get_merge_request - Get details of a merge request (mergeRequestIid or branchName required). Set include_summaries=true for deployment/commit/approval summaries
get_merge_request_diffs - Get the changes/diffs of a merge request (mergeRequestIid or branchName required)
list_merge_request_changed_files - List changed file paths in a merge request without diff content (mergeRequestIid or branchName required)
list_merge_request_diffs - List merge request diffs with pagination (mergeRequestIid or branchName required)
get_merge_request_file_diff - Get diffs for specific files from a merge request (mergeRequestIid or branchName required)
list_merge_request_versions - List all versions of a merge request
get_merge_request_version - Get a specific version of a merge request
get_branch_diffs - Get diffs between two branches or commits
update_merge_request - Update a merge request (mergeRequestIid or branchName required)
create_note - Create a new note (comment) to an issue or merge request
create_merge_request_thread - Create a new thread on a merge request
resolve_merge_request_thread - Resolve a thread on a merge request
mr_discussions - List discussion items for a merge request
delete_merge_request_discussion_note - Delete a discussion note on a merge request
update_merge_request_discussion_note - Update a discussion note on a merge request
create_merge_request_discussion_note - Add a new discussion note to an existing merge request thread
create_merge_request_note - Add a new note to a merge request
delete_merge_request_note - Delete an existing merge request note
get_merge_request_note - Get a specific note for a merge request
get_merge_request_notes - List notes for a merge request
update_merge_request_note - Modify an existing merge request note
get_draft_note - Get a single draft note from a merge request
list_draft_notes - List draft notes for a merge request
create_draft_note - Create a draft note for a merge request
update_draft_note - Update an existing draft note
delete_draft_note - Delete a draft note
publish_draft_note - Publish a single draft note
bulk_publish_draft_notes - Publish all draft notes for a merge request. Optionally sets reviewer_state and posts a summary note (GitLab 19.2+). Can set reviewer_state even with no drafts.
list_merge_request_emoji_reactions - List all emoji reactions on a merge request
list_merge_request_note_emoji_reactions - List all emoji reactions on a merge request note. Pass discussion_id for discussion thread replies.
create_merge_request_emoji_reaction - Add an emoji reaction to a merge request (e.g. thumbsup, rocket, eyes)
delete_merge_request_emoji_reaction - Remove an emoji reaction from a merge request
create_merge_request_note_emoji_reaction - Add an emoji reaction to a merge request note. Pass discussion_id for discussion thread replies.
delete_merge_request_note_emoji_reaction - Remove an emoji reaction from a merge request note. Pass discussion_id for discussion thread replies.
update_issue_note - Modify an existing issue thread note
create_issue_note - Add a note to an issue, optionally replying to a discussion thread
list_issue_emoji_reactions - List all emoji reactions on an issue
list_issue_note_emoji_reactions - List all emoji reactions on an issue note. Pass discussion_id for discussion thread replies.
create_issue_emoji_reaction - Add an emoji reaction to an issue (e.g. thumbsup, rocket, eyes)
delete_issue_emoji_reaction - Remove an emoji reaction from an issue
create_issue_note_emoji_reaction - Add an emoji reaction to an issue note. Pass discussion_id for discussion thread replies.
delete_issue_note_emoji_reaction - Remove an emoji reaction from an issue note. Pass discussion_id for discussion thread replies.
list_issues - List issues (default: created by current user; use scope='all' for all)
my_issues - List issues assigned to the authenticated user
get_issue - Get details of a specific issue. Returns a slim milestone by default; set full_response=true for the complete milestone object
update_issue - Update an issue. Returns a slim confirmation by default; set full_response=true for the complete updated issue object
update_issue_description_patch - Apply a patch (search/replace or unified diff) to an issue description. Reduces token usage by allowing small changes without sending the full description. Supports dry_run to preview changes and create_note to summarize updates.
delete_issue - Delete an issue
list_todos - List GitLab to-do items for the current user
mark_todo_done - Mark a GitLab to-do item as done
mark_all_todos_done - Mark all pending GitLab to-do items as done for the current user
list_issue_links - List all issue links for a specific issue
list_issue_discussions - List discussions for an issue
get_issue_link - Get a specific issue link
create_issue_link - Create an issue link between two issues
delete_issue_link - Delete an issue link
list_namespaces - List all namespaces (users and groups) available to the current user. Filter by kind='group' for groups only.
get_namespace - Get details of a namespace (user or group) by ID or path. Groups are namespaces with kind='group'.
verify_namespace - Verify if a namespace path exists. Use parent_id to scope the check to a specific parent namespace โ required for nested namespaces where the same path may exist under different parents.
get_project - Get details of a specific project
list_projects - List projects accessible by the current user
update_project - Update project settings such as description, visibility, default branch, and feature access levels
list_project_members - List members of a GitLab project
list_group_members - List members of a GitLab group with optional name or username search
list_labels - List labels for a project
get_label - Get a single label from a project
create_label - Create a new label in a project
update_label - Update an existing label in a project
delete_label - Delete a label from a project
list_group_projects - List projects in a group
list_wiki_pages - List wiki pages in a project
get_wiki_page - Get details of a specific wiki page
create_wiki_page - Create a wiki page in a project
update_wiki_page - Update a wiki page in a project
delete_wiki_page - Delete a wiki page from a project
list_group_wiki_pages - List wiki pages in a group
get_group_wiki_page - Get details of a specific group wiki page
create_group_wiki_page - Create a wiki page in a group
update_group_wiki_page - Update a wiki page in a group
delete_group_wiki_page - Delete a wiki page from a group
get_repository_tree - List files and directories in a repository
list_pipelines - List pipelines with filtering options
get_pipeline - Get details of a specific pipeline
get_pipeline_variables - Get variables configured for a pipeline
get_pipeline_test_report - Get pipeline test report
get_pipeline_test_report_summary - Get pipeline test report summary
delete_pipeline - Delete a pipeline. Requires the project Owner role, cannot be undone, and does not automatically delete child pipelines.
update_pipeline_metadata - Update pipeline metadata
list_deployments - List deployments with filtering options
get_deployment - Get deployment details, including approval_summary, approvals, and pending_approval_count when GitLab provides them
create_deployment - Create a deployment
update_deployment - Update a deployment status
delete_deployment - Delete a deployment
list_deployment_merge_requests - List merge requests shipped with a deployment
approve_deployment - Approve or reject a protected-environment deployment
list_environments - List environments in a project
get_environment - Get details of a specific environment
update_environment - Update an environment
delete_environment - Delete a stopped environment
stop_environment - Stop an environment
stop_stale_environments - Stop eligible stale environments; protected environments are excluded and environments are stopped, not deleted
delete_review_app_environments - Schedule deletion of stopped review-app environments one week later; dry_run defaults to true and actual scheduling requires dry_run=false
list_pipeline_triggers - List project pipeline trigger tokens
get_pipeline_trigger - Get a project pipeline trigger
create_pipeline_trigger - Create a project pipeline trigger
update_pipeline_trigger - Update a project pipeline trigger
delete_pipeline_trigger - Delete a project pipeline trigger
trigger_pipeline - Trigger a pipeline with a pipeline trigger token
list_pipeline_jobs - List all jobs in a specific pipeline
list_pipeline_trigger_jobs - List trigger jobs (bridges) in a pipeline
get_pipeline_job - Get details of a GitLab pipeline job number
get_pipeline_job_output - Get the output/trace of a pipeline job with optional pagination
validate_ci_lint - Validate provided GitLab CI/CD YAML content for a project
validate_project_ci_lint - Validate an existing .gitlab-ci.yml configuration for a project
list_ci_catalog_resources - List GitLab CI/CD Catalog resources/components visible to the user
get_ci_catalog_resource - Get details for a GitLab CI/CD Catalog resource, including versions and components
create_pipeline - Create a new pipeline for a branch or tag
retry_pipeline - Retry a failed or canceled pipeline
cancel_pipeline - Cancel a running pipeline
list_pipeline_schedules - List pipeline schedules in a project, optionally filtered to active or inactive
get_pipeline_schedule - Get details of a specific pipeline schedule, including its variables and last pipeline
list_pipeline_schedule_pipelines - List the pipelines that a pipeline schedule has triggered
create_pipeline_schedule - Create a new pipeline schedule for a branch or tag
update_pipeline_schedule - Update an existing pipeline schedule
delete_pipeline_schedule - Delete a pipeline schedule
play_pipeline_schedule - Run a pipeline schedule immediately
take_ownership_pipeline_schedule - Take ownership of a pipeline schedule
get_pipeline_schedule_variable - Get a single variable of a pipeline schedule
create_pipeline_schedule_variable - Create a variable for a pipeline schedule
update_pipeline_schedule_variable - Update a variable of a pipeline schedule
delete_pipeline_schedule_variable - Delete a variable from a pipeline schedule
play_pipeline_job - Run a manual pipeline job
play_pipeline_jobs - Play multiple manual pipeline jobs sequentially
retry_pipeline_job - Retry a failed or canceled pipeline job
cancel_pipeline_job - Cancel a running pipeline job
erase_pipeline_job - Erase a pipeline job log and artifacts
wait_for_pipeline - Wait for a pipeline to reach a terminal status
wait_for_job - Wait for a job to reach a terminal status
list_job_artifacts - List artifact files in a job's archive
download_job_artifacts - Download job artifact archive (zip) and save to a local path
get_job_artifact_file - Get content of a single file from a job's artifacts
list_merge_requests - List merge requests (without project_id: user's MRs; with project_id: project MRs)
list_group_merge_requests - List merge requests across all projects of a group and its subgroups
list_milestones - List milestones with filtering options
get_milestone - Get details of a specific milestone
create_milestone - Create a new milestone
edit_milestone - Edit an existing milestone
delete_milestone - Delete a milestone
get_milestone_issue - Get issues associated with a specific milestone
get_milestone_merge_requests - Get merge requests associated with a specific milestone
promote_milestone - Promote a milestone to the next stage
get_milestone_burndown_events - Get burndown events for a specific milestone
list_group_milestones - List group milestones with filtering options
get_group_milestone - Get details of a specific group milestone
create_group_milestone - Create a new group milestone
edit_group_milestone - Edit an existing group milestone
delete_group_milestone - Delete a group milestone
get_group_milestone_issue - Get issues associated with a specific group milestone
get_group_milestone_merge_requests - Get merge requests associated with a specific group milestone
get_group_milestone_burndown_events - Get burndown events for a specific group milestone
get_users - Get GitLab user details by usernames
get_user - Get user details by ID
whoami - Get current authenticated user details
list_commits - List repository commits with filtering options
get_commit - Get details of a specific commit
get_commit_diff - Get changes/diffs of a specific commit
get_file_blame - Get git blame for a file at a given ref. Each entry maps a contiguous range of source lines to the commit that last changed them (id, author, authored_date, message). Use range_start/range_end to limit blame to specific lines.
list_commit_statuses - List statuses for a commit
create_commit_status - Create or update the status of a commit
list_group_iterations - List group iterations with filtering options
upload_markdown - Upload a file for use in markdown content
download_attachment - Download an uploaded file from a project (images returned as base64; use local_path to save to disk)
health_check - Verify server status and authentication. Always reports the MCP server version (mcp_server_version). When authenticated, also reports the GitLab instance version from GET /api/v4/version (version, revision, enterprise). Version lookup failures do not fail the health check โ those fields are omitted.
list_events - List events for the authenticated user (before/after: YYYY-MM-DD)
get_project_events - List events for a project (before/after: YYYY-MM-DD)
list_releases - List all releases for a project
get_release - Get a release by tag name
create_release - Create a new release
update_release - Update an existing release
delete_release - Delete a release (does not delete the tag)
create_release_evidence - Create release evidence (Premium/Ultimate)
download_release_asset - Download a release asset file by direct asset path
list_tags - List repository tags for a project
get_tag - Get a repository tag by name
create_tag - Create a new repository tag
delete_tag - Delete a repository tag
get_tag_signature - Get the X.509 signature of a signed tag (404 if unsigned)
get_work_item - Get a work item with full details including status, hierarchy, type, and widgets
list_work_items - List work items with filters (type, state, search, assignees, labels)
create_work_item - Create a work item (issue, task, incident, epic, etc.) with full field support
update_work_item - Update a work item (title, description, labels, assignees, state, parent, custom fields, etc.)
convert_work_item_type - Convert a work item to a different type
list_work_item_statuses - List available statuses for a work item type (Premium/Ultimate)
list_custom_field_definitions - List custom field definitions for a work item type
move_work_item - Move a work item to a different project
list_work_item_notes - List notes and discussions on a work item
create_work_item_note - Add a note to a work item (supports Markdown, internal notes, threads)
list_work_item_emoji_reactions - List all emoji reactions on a work item
list_work_item_note_emoji_reactions - List all emoji reactions on a work item note (comment, thread, or thread reply)
create_work_item_emoji_reaction - Add an emoji reaction to a work item (e.g. thumbsup, rocket, eyes)
delete_work_item_emoji_reaction - Remove an emoji reaction from a work item
create_work_item_note_emoji_reaction - Add an emoji reaction to a work item note (comment, thread, or thread reply)
delete_work_item_note_emoji_reaction - Remove an emoji reaction from a work item note (comment, thread, or thread reply)
get_timeline_events - List timeline events for an incident
create_timeline_event - Create a timeline event on an incident
list_webhooks - List webhooks for a project or group
create_webhook - Create a webhook on a project or group
update_webhook - Update an existing project or group webhook
delete_webhook - Delete a project or group webhook
list_webhook_events - List recent webhook events (past 7 days)
get_webhook_event - Get full details of a specific webhook event
search_code - Search for code across all projects (requires advanced search or Zoekt)
search_project_code - Search for code within a specific project (requires advanced search or Zoekt)
search_group_code - Search for code within a specific group (requires advanced search or Zoekt)
list_project_variables - List CI/CD variables for a project
get_project_variable - Get a single CI/CD variable from a project
create_project_variable - Create a CI/CD variable for a project
update_project_variable - Update an existing CI/CD variable in a project
delete_project_variable - Delete a CI/CD variable from a project
list_group_variables - List CI/CD variables for a group
get_group_variable - Get a single CI/CD variable from a group
create_group_variable - Create a CI/CD variable for a group
update_group_variable - Update an existing CI/CD variable in a group
delete_group_variable - Delete a CI/CD variable from a group
get_dependency_proxy_settings - Get dependency proxy settings for a group
update_dependency_proxy_settings - Update dependency proxy settings for a group (enable/disable, credentials for authenticated Docker Hub pulls)
list_dependency_proxy_blobs - List cached dependency proxy blobs for a group
purge_dependency_proxy_cache - Schedule purge of all cached dependency proxy blobs for a group
list_project_vulnerabilities - List vulnerabilities for a project with optional state, severity, and report type filters (GraphQL-backed, cursor pagination)
get_vulnerability - Get full details of a specific vulnerability
dismiss_vulnerability - Dismiss a vulnerability with a reason (acceptable_risk, false_positive, used_in_tests, mitigating_control, not_applicable) and optional comment
confirm_vulnerability - Confirm a vulnerability as a real finding requiring remediation
orbit_query - Execute a GitLab Orbit graph query over the indexed SDLC knowledge graph
orbit_get_schema - Fetch the current GitLab Orbit graph schema (node and edge types)
orbit_get_status - Check GitLab Orbit indexing status for the enabled scope
orbit_list_tools - List the MCP tool definitions exposed by GitLab Orbit
discover_tools - Discover and activate additional tool categories for this session. Available categories: merge_requests, issues, repositories, branches, projects, labels, ci, groups, pipelines, milestones, wiki, releases, tags, users, workitems, webhooks, search, variables, dependency_proxy, vulnerabilities, orbit. Already-active categories are listed in the response.
Wiki page titles vs. slugs
GitLab derives a wiki page's slug (its URL, /-/wikis/<slug>) from the page title. Passing title to update_wiki_page / update_group_wiki_page therefore renames the page and changes its URL โ for nested pages it can also move the page to a different path โ which breaks existing links.
To change only the displayed title while keeping the URL stable, do not pass title. Instead, store the display title in the page content's YAML front matter and update the content:
---
title: My Custom Display Title
---
Page bodyโฆ
GitLab keeps the slug/URL untouched and shows the front-matter title in the UI. Read it back with get_wiki_page using render_html: true, which populates the front_matter field โ the plain title field always reflects the slug-derived value.
Testing ๐งช
The project includes comprehensive test coverage including remote authorization:
npm test
npm run test:remote-auth
npm run test:all
npm run test:integration
All remote authorization tests use a mock GitLab server and do not require actual GitLab credentials.