What MCP is
MCP (Model Context Protocol) is an open standard that lets an AI assistant use tools from other apps. ListSpace runs an MCP server, so an assistant that supports MCP can read your boards and, if your token allows it, change them.
This is the server address. Your assistant needs it and a token:
https://mcp.listspace.appToken or sign-in
An assistant can get into ListSpace in one of two ways.
- A token is a long code that you create in Settings > API and paste into the assistant. It works like a password for your boards, and you can revoke it at any time.
- Sign-in (OAuth) means the assistant sends you to a ListSpace page where you sign in and click Allow, so there is no code to copy. ListSpace does not offer sign-in yet.
So today every assistant connects with a token. Claude (website, desktop app and Claude Code) works. ChatGPT needs sign-in and has to wait for it.
Create a token
- Sign in and open Settings, then API.
- Give the token a name, for example "Claude on my laptop".
- Pick Read only if the assistant only needs to look, or Read and write to let it add and change cards.
- Click Create token and copy it. It is shown only this once.
After you create a token, Settings shows the commands below with your token already filled in.
Claude (website and desktop app)
Add ListSpace once as a connector in your Claude account. It then works on claude.ai and in the Claude desktop app.
- Create a token in ListSpace under Settings > API. Pick Read and write if Claude should add and change cards. Copy the token.
- In Claude, open Customize, then Connectors. In some versions this is under Settings, then Connectors.
- Click Add custom connector.
- Enter the name
ListSpaceand paste the server address into the URL field. - Under Authentication, choose No sign-in.
- Under Request headers, add one header. Name:
Authorization. Value: the wordBearer, a space, then your token. - Click Add. Start a new chat and ask "What boards do I have?".
Bearer ls_your_token- Claude asks before it uses a ListSpace tool. You can pick Always allow for a tool, for example the ones that only read.
- Claude may offer Sign in now. That needs sign-in on ListSpace, which is not available yet, so choose No sign-in.
- No Request headers field? Your Claude account does not have it yet. Use Claude Code or the Claude Desktop config file below instead.
- Free Claude accounts can add one custom connector. On Team and Enterprise plans, an owner adds connectors under Organization settings, then Connectors.
ChatGPT
Not available yet
ChatGPT has no field for a token. It offers sign-in (OAuth) or no authentication at all, so it cannot connect to ListSpace until ListSpace offers sign-in.
- Sign-in for ChatGPT is on the roadmap. When it is ready, you will add ListSpace in ChatGPT, choose OAuth, sign in on a ListSpace page and click Allow.
- OpenAI says custom MCP servers need Developer mode, which is available on the Plus, Pro, Business, Enterprise and Education plans on the web.
Follow progress on the roadmap.
Claude Code
One command in a terminal adds ListSpace to Claude Code.
- Create a token in ListSpace under Settings > API and copy it.
- Run the command below, with your token in place of
ls_your_token. - Check the connection with
claude mcp list, or type/mcpin a Claude Code session.
claude mcp add --transport http listspace https://mcp.listspace.app --header "Authorization: Bearer ls_your_token"Claude Desktop config file
If your Claude account has no Request headers field, Claude Desktop can still connect through a config file. This uses mcp-remote, a small bridge that runs with npx, so Node.js must be installed.
- In Claude Desktop, open Settings, then Developer, and click Edit Config. This opens
claude_desktop_config.json. - Add the
listspaceentry below undermcpServers, with your token in place ofls_your_token. Keep any servers that are already there. - Save the file and restart Claude Desktop.
{
"mcpServers": {
"listspace": {
"command": "npx",
"args": [
"-y",
"mcp-remote",
"https://mcp.listspace.app",
"--header",
"Authorization:${LISTSPACE_AUTH}"
],
"env": {
"LISTSPACE_AUTH": "Bearer ls_your_token"
}
}
}
}Other assistants
Any MCP client that can send a header to a remote server can connect. Give it the server address and this header.
Authorization: Bearer ls_your_token- The server speaks Streamable HTTP without sessions. Each POST carries one JSON-RPC message and gets a JSON answer. It supports protocol versions 2025-11-25, 2025-06-18 and 2025-03-26. A GET answers
405.
Tools
The assistant picks the tools itself. A read-only token sees only the first 6. The tools take the same fields as the REST API.
list_boardsreadYour boards, newest first.
get_boardreadA board's lists and cards with their ids.
search_cardsreadCards by words in their title or description, across all boards.
get_cardreadOne card in full, with the description as markdown, labels and checklists.
list_due_cardsreadCards with a due date, soonest first, optionally between two dates.
list_labelsreadYour labels and their ids.
create_cardwriteA new card in a list, with an optional description, due date and labels.
update_cardwriteChange a card's title, description, due date, done tick or labels.
move_cardwriteMove a card to another list or board, or reorder it.
complete_cardwriteMark a card's due date as done, or reopen it.
archive_cardwriteArchive a card, or restore it.
add_checklist_itemwriteAdd an item to a checklist on a card.
create_listwriteAdd a list at the end of a board.
When a tool fails, for example because the token is read-only or the card is not yours, the assistant gets a message that says why, and can tell you.
Example prompts
What is due this week?
The assistant calls
list_due_cardswith this week's dates and lists the cards, with their boards.Add "oat milk" to my Groceries list.
It finds the list with
list_boardsandget_board, then callscreate_card. Needs a read and write token.Find the card about the plumber and move it to Doing.
It calls
search_cards, looks up the Doing list withget_board, then callsmove_card.Turn the notes on my "Trip to Lisbon" card into a checklist.
It reads the card with
get_cardand adds one item at a time withadd_checklist_item.
Security
- A token acts as you. Whoever has it can read all your boards, and change them if it has write access. Treat it like a password.
- Choose Read only when the assistant only needs to look.
- Nothing can be deleted through a token. The most it can do to a card is archive it, which you can undo.
- A token reaches only your own boards.
- Revoke a token in Settings, then API, whenever you like. It stops working at once. ListSpace keeps only a fingerprint (SHA-256 hash) of each token, so it cannot show a lost token again. Revoke it and make a new one.
- The Claude Code command and the Claude Desktop config save the token in a file on your computer. Anyone who can read that file can use the token.
- A connector added in Claude keeps the token in your Claude account. If you remove the connector, revoke the token in ListSpace too.
- What the assistant reads from your boards becomes part of your conversation with it, like text you paste in yourself.