MCP server
Connect Claude Code and other MCP clients to your mentions. Sign in with OAuth or use an API key.
Rumoro's Model Context Protocol server is hosted, so there is nothing to install. Once your MCP client is connected, your agent can search and triage mentions, manage keywords and your company profile, read analytics, and set up alerts, people and segments. It follows the same rules as the dashboard.
https://mcp.rumoro.dev/mcp- Hosted, streamable HTTP, no session. There is nothing to install. Clients must accept both
application/jsonandtext/event-streamanswers. - OAuth or an API key. Clients that support MCP authorization sign you in through the browser. Others send a key as a Bearer header. With
readaccess the client sees only the read tools, withwriteit sees all. - 55 tools that match the REST API. They are listed under Tools.
Quick start
Add the server
In Claude Code, run
claude mcp add --transport http rumoro https://mcp.rumoro.dev/mcpThen type /mcp, choose rumoro and Authenticate. Sign in and approve the access the client asks for. If you belong to several workspaces, you also choose one. Other clients are under Installation.
For CI, a server or a client without OAuth, create a key on the API keys page, read to look around or write to make changes. You only see it once.
Ask
Try "Which mentions this week were negative, and what were people unhappy about?"
Authentication
Each tool call carries a Bearer credential. The server handles both kinds the same way.
Authorization: Bearer <OAuth access token>
Authorization: Bearer ref_...OAuth 2.1
Sign-in follows the MCP authorization spec. A call without a credential gets 401 with WWW-Authenticate: Bearer realm="rumoro-mcp", resource_metadata="https://mcp.rumoro.dev/.well-known/oauth-protected-resource". The client then registers itself (dynamic registration with PKCE) and opens the browser. You approve each sign-in on a consent page, and the token acts as you, within your role in that workspace. Access tokens last an hour. With offline_access the client also gets a refresh token that lasts 30 days and is replaced each time it is used. A sign-in without write works as read.
API keys
Create keys on the API keys page or with POST /v1/api-keys. You see each key once, and it belongs to one workspace. When you revoke a key, the client stops working at its next call.
Discovery
Connecting needs no credential. initialize, tools/list and the resources answer without one. A credential that is sent is always checked, and every tools/call needs one.
claude.ai, Claude Desktop and ChatGPT
Add https://mcp.rumoro.dev/mcp as a custom connector and sign in when asked.
Resources
| Resource | URI | What it contains |
|---|---|---|
openapi | https://api.rumoro.dev/v1/openapi.json | The REST API behind the tools, with all schemas |
agent-guide | https://mcp.rumoro.dev/mcp/guide | How an agent connects, what each permission allows, and a review workflow |
Each tool has readOnlyHint, destructiveHint and idempotentHint, so a client knows which calls to confirm first. The seven destructive tools are marked under Tools.
Registries can read the server card.
How the tools behave
- Each tool runs the same operation as the REST API, with the same validation, errors and rate limit.
search_mentionsreturns 10 mentions by default andhasMore, without a cursor. When there are more, narrow the filters or the time range.- There are no export tools. Use the REST exports or the CLI for large lists.
- Write tools need a
writekey or sign-in. Withreadthey don't appear at all. - The server keeps no session between requests. Answers come as JSON or as a short event stream.
Author data
list_people, get_person and the other people tools return the public facts Rumoro keeps about authors, such as name, handle, picture, follower count and profile details. They never return an email address, so profile.email is always null over MCP, even where the REST API shows one. How it works explains what is stored and how people can ask to be removed.
What you can ask
- "Summarise what people said about us on Hacker News and Reddit in the last 7 days."
- "Find questions about our pricing that nobody has answered, and draft a reply for each."
- "Which competitor got the most positive mentions this month, and why?"
- "Mark every mention from our own team as done."
- "Our keyword
driftwoodis noisy. Look at its health report and apply the best suggestion." - "Create a daily digest of negative mentions for the support channel at 9:00 Berlin time."
- "Who are the people with more than 10,000 followers who mentioned us this month?"
Documentation MCP server
The docs have their own read-only MCP server, and it needs no key.
https://docs.rumoro.dev/api/mcp- Tools.
search_docssearches the full text,read_pagereturns a page as Markdown by its path, such as/quickstart, andlist_pageslists every page with its title and description. - Resources. Every page at its
.mdxaddress, plushttps://docs.rumoro.dev/llms.txt. - Card.
/.well-known/mcp.json.
Security
- Give only the access needed. Use
readto explore, andwriteonly for an agent that should change things. No tool can change billing or API keys, thoughget_usageandlist_ledgerread the balance. - Same rules as the API. Calls act as the key's workspace or the person who signed in, with the same checks and rate limit.
- Keep keys out of repositories. OAuth leaves no secret in client settings. With a key, use user-level settings or an environment variable, and revoke it if it leaks.
Installation
With OAuth, a client only needs the URL. With a key, add the Authorization: Bearer ref_... header. In the CLI, rumoro mcp:config prints these settings with your key filled in.
Help your agent find its way
Tell the agent what you track in AGENTS.md, CLAUDE.md or the client's rules file.
## Rumoro
- Workspace: Driftwood (connected through the `rumoro` MCP server)
- Brand keyword `driftwood`, competitors `flagpole` and `switchboard`, topic `feature flags`
- "Relevant" means the classifier scored it 40 or more; matched counts include noise
- Start with `search_mentions` and a time range; use `get_analytics_*` for numbers over a period
- Only change keywords or alerts when asked; triage (status, assignee, notes) is fineTroubleshooting
| Problem | What to do |
|---|---|
401 "Missing or invalid credentials" | Sign in again, or check the header and that the key isn't revoked |
| The client asks to authenticate | Run its sign-in, for Claude Code /mcp and Authenticate |
| No tools are listed | Reload the client |
| "Unknown tool" for a write tool | The key or sign-in only has read |
| A list seems cut short | search_mentions returns 10 at a time. Narrow the filters, or use the REST API to page through everything. |
405 | Use streamable HTTP (POST /mcp), not the older SSE transport |