OpenProject MCP Server
Provides tools to manage OpenProject from Codex, including searching, creating, updating, and commenting on work packages, as well as listing projects, using the OpenProject API v3.
OpenProject for Codex
Manage OpenProject from Codex — projects, work packages, attachments, relations, boards, users, watchers, and notifications. This free, open-source integration exposes 41 focused API v3 tools and is designed to work with OpenProject Community and Enterprise editions.
Why this project
Broad read and write coverage: manage projects and work packages, upload attachments, connect related tasks, inspect boards, and handle notifications.
Community Edition friendly: it uses the generally available OpenProject API v3 rather than requiring the OpenProject MCP Enterprise add-on.
Codex-native workflow: tools and guidance are packaged together so Codex can safely turn natural-language requests into explicit OpenProject actions.
Runs locally: credentials stay in a private file on your machine, and OpenProject remains the source of truth for permissions.
OpenProject also provides an official MCP server in Professional plans and above. As of July 2026, that server exposes read-only tools. This community project is a good fit when you need write operations, Codex-specific guidance, or support for Community Edition. See the official MCP documentation for the current capabilities of OpenProject's server.
Related MCP server: openproject-mcp
What it can do
Create, inspect, update, count, archive, and delete projects.
Search work packages with native filters, sorting, and pagination.
Create and update tasks, dates, estimates, progress, hierarchy, assignees, accountable users, priorities, statuses, and versions.
Read activity history, add comments, and delete work packages.
List, download, upload, and delete attachments with size limits.
Create and inspect work-package relations and manage watchers.
Find users and valid assignees, including without global user-list access.
Read and clear notifications and inspect Kanban-style boards.
Discover statuses, priorities, types, and project versions.
Read otherwise unsupported API v3 resources through a restricted GET-only escape hatch.
Guide Codex toward safe, explicit OpenProject write operations.
Example workflow
You: Find checkout-related tasks in the Storefront project.
Codex: I found #142 "Handle expired checkout sessions" and
#157 "Add payment retry telemetry".
You: Add a comment to #142 saying the API fix is ready for review.
Codex: Added the comment to work package #142.Codex resolves the request through MCP tools, while OpenProject remains the source of truth for permissions and work-package state.
Requirements
Bun 1.3 or newer
Codex CLI with MCP support
An OpenProject API token with access to the projects you want to manage
The plugin and its local MCP server run natively on macOS, Linux, and Windows. It uses stable OpenProject API v3 endpoints and does not require an OpenProject Enterprise add-on. If you use Community Edition, make sure API tokens are enabled in your instance.
Quick start
Clone the repository:
git clone https://github.com/alex13slem/openproject-codex-plugin.git
cd openproject-codex-pluginMCP clients that support npm packages can instead run the server with
npx -y openproject-codex-plugin and pass OPENPROJECT_URL and
OPENPROJECT_API_TOKEN as environment variables.
The standalone server is published under
io.github.alex13slem/openproject in the official MCP Registry. Marketplace
installations use the same API permissions and security boundaries as the
local installer.
macOS and Linux
Create a private environment file:
mkdir -p ~/.codex
cp .env.example ~/.codex/openproject.env
chmod 600 ~/.codex/openproject.envSet your OpenProject URL and API token in that file:
OPENPROJECT_URL=https://tasks.example.com
OPENPROJECT_API_TOKEN=your-api-tokenInstall the MCP integration:
./scripts/install.shWindows
From PowerShell, create the environment file:
$envDir = Join-Path $HOME ".codex"
New-Item -ItemType Directory -Force $envDir
Copy-Item .env.example (Join-Path $envDir "openproject.env")
notepad (Join-Path $envDir "openproject.env")Set OPENPROJECT_URL and OPENPROJECT_API_TOKEN, save it, then install:
.\scripts\install.ps1The installer passes paths as separate arguments, so repository and profile paths containing spaces work on every supported desktop OS.
Optional configuration
Variable | Default | Purpose |
|
| Default collection page size, from 1 to 100 |
|
| Request timeout, from 1 to 300 seconds |
|
| Use |
| Current working directory | Platform-separated directories from which upload tools may read files |
Existing configurations may use OPENPROJECT_BASE_URL and
OPENPROJECT_API_KEY as compatibility aliases.
Start using the plugin
Start a new Codex thread, then try prompts such as:
Show my active OpenProject tasks.Find work packages mentioning the checkout flow.Add a progress comment to work package 123.
The first two prompts are read-only. Write tools are used only for explicit, unambiguous requests and return a direct link to the affected work package.
To keep the environment file elsewhere, pass its absolute path during installation on any desktop OS:
bun scripts/install.ts --env-file /secure/path/openproject.env.\scripts\install.ps1 --env-file C:\secure\openproject.envTools
The 41 tools form one consistent OpenProject API surface:
Area | Read tools | Write tools |
Projects |
|
|
Work packages |
|
|
Attachments |
|
|
Relations |
|
|
Users |
| — |
Watchers |
|
|
Notifications |
|
|
Boards |
| — |
Reference data |
| — |
Advanced |
| — |
List tools return pagination metadata. Native filter objects use field,
operator, and string values; count tools should be preferred when only a
total is needed. get_openproject_api accepts only relative GET paths under
/api/v3 and cannot call another host.
Write operations use the permissions of the API-token owner. Prefer a token with only the access you need, never commit it, and keep the environment file readable only by your user. File uploads read only explicitly supplied paths under configured upload roots, resolve symlinks before enforcing that boundary, and reject files above the requested size limit. Delete operations are separately marked destructive so MCP clients can require confirmation.
Codex plugin marketplace
The repository includes a plugin manifest and a marketplace definition at
.agents/plugins/marketplace.json. Codex installations with plugin marketplace
support can add the repository as a local marketplace. The Bun installer and
its shell wrappers are the portable fallback when only MCP configuration is
available.
OpenProject's MCP server compared
Capability | This project | OpenProject MCP server |
Community Edition | Yes | Enterprise add-on |
Search and read | Yes | Yes |
Create, update, comment, relate, and attach | Yes | Read-only as of July 2026 |
Codex workflow guidance | Included | Client-independent |
Deployment | Local Bun process | Built into OpenProject |
The official server may be preferable for centrally administered, multi-user OAuth deployments. This project is aimed at individual Codex users who want a portable integration and write-capable workflows.
Documentation
Community
Ask setup questions and share workflows in GitHub Discussions.
Report reproducible bugs with the bug template.
Propose focused improvements with the feature template.
Please do not include API tokens, private instance URLs, or customer data in public posts.
Development
cd plugins/openproject
bun install --frozen-lockfile
bun run checkGenerate a local coverage report with:
bun run test:coverageThe API module is covered by tests for request authentication, HAL collection handling, search filters, update payloads, and error responses. See CONTRIBUTING.md before opening a pull request.
Project layout
plugins/openproject/
├── .codex-plugin/plugin.json # Plugin metadata
├── .mcp.json # MCP process definition
├── scripts/
│ ├── server.ts # MCP tools and orchestration
│ └── openproject-api.ts # Tested API client and payload helpers
├── skills/openproject/ # Codex workflow guidance
└── tests/ # Bun unit testsPlanned work is tracked in the project roadmap. Contributions and well-scoped feature proposals are welcome.
Uninstall
macOS and Linux:
./scripts/uninstall.shWindows PowerShell:
.\scripts\uninstall.ps1Project status
This project is community-maintained and is not affiliated with or endorsed by OpenProject GmbH or OpenAI. OpenProject is a trademark of OpenProject GmbH.
If this integration saves you time, consider starring the repository to help other OpenProject users discover it. Bug reports, tested-version reports, and focused contributions are equally valuable.
License
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Related MCP Servers
- Flicense-qualityDmaintenanceEnables interaction with self-hosted OpenProject instances through the MCP protocol, supporting CRUD operations for projects and tasks (work packages) with pagination and filtering capabilities.Last updated8
- AlicenseAqualityBmaintenanceExposes the OpenProject REST API as MCP tools for project management, including creating and managing projects, work packages, relations, attachments, users, notifications, watchers, boards, and reference data.Last updated3722MIT
- Flicense-qualityDmaintenanceA comprehensive MCP server for integrating with OpenProject API, enabling AI assistants to manage projects, work packages, time tracking, and users.Last updated20
- Flicense-qualityDmaintenanceEnables AI agents to manage OpenProject projects, work packages, activities, and wiki pages through the Model Context Protocol.Last updated
Related MCP Connectors
MCP-native open-source Notion alternative: read & write pages, databases and kanban boards.
MCP server for generating rough-draft project plans from natural-language prompts.
The everything Zotero MCP server — Web API v3 + local API, safe writes, citations, search.
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/alex13slem/openproject-codex-plugin'
If you have feedback or need assistance with the MCP directory API, please join our Discord server