mcpbeat Sign in

Yaver MCP Server

local only

Yaver runs on your own machine — the client starts it, so there is no endpoint to ping. 2 267 installs a week from npm. Last commit 15 Sep 2026.

Phone-first local dev MCP for Claude Code and Codex: install Yaver, pair mobile, run, build, deploy.

Installs per day peak 1 568 · avg 470 · -35% w/w
a month agotoday
2 267
Installs / week
npm · yaver-cli
4
Stars
3 open issues
15 Sep 2026
Last commit
0 releases in 90 days
Apache-2.0
License
Go

What changed 14

Every tool that appeared, vanished or quietly changed what it asks for. Recorded since 9 August 2026. No other catalogue keeps this.

22 Aug the owner changed
21 Aug the owner changed
20 Aug the owner changed
19 Aug the owner changed
18 Aug the owner changed
17 Aug the owner changed
16 Aug the owner changed
15 Aug the owner changed
14 Aug the owner changed
13 Aug the owner changed
and 4 more, back to 9 August 2026

What the code does

We read the source, 57 min ago · rules 3dff92dd89df

Capabilities

What this server is able to do. For an MCP server this is often the job itself — a terminal server runs commands because that is what it is for. Listed so you know what you are plugging in, not as an accusation.

Runs a command on install [пакет] package.json:1
postinstall: node src/postinstall.js
Package points at a different repository yaver-io/yaver.io
пакет yaver-cli ссылается на kivanccakmak/yaver.io
In the project's build, not in the package

Found in continuous integration, deployment or infrastructure files, or in a neighbouring package of the same monorepo. None of this is installed when you add the server: it describes how the project is built and released. We list it because a leaked key in a build pipeline is still a real problem, but it is not something this server does on your machine.

    {regexp.MustCompile(`\bchmod\s+(-[a-zA-Z]*R[a-zA-Z]*\s+)*777\s+/\s*$`), "chmod 777 on root"},
var sudoPattern = regexp.MustCompile(`^\s*(sudo\b|su\s|doas\b)`)
Reaches cloud metadata service desktop/agent/console_machines.go:146
    if res, err := client.Get("http://169.254.169.254/hetzner/v1/metadata/hostname"); err == nil {
CI pipeline leaks secrets outward .github/workflows/yaver-trigger-example.yml:46
          curl -sf -X POST "${{ secrets.YAVER_AGENT_URL }}/webhooks/trigger" \
Reads secrets and sends them out desktop/agent/main.go:8409
        "-o", "ControlPath=~/.ssh/cm-%C",
      replyTo: "[email protected]",
    darwinLaunchAgentPath  = "Library/LaunchAgents/io.yaver.agent.plist"
    'data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABAAAAAQCAYAAAAf8/9hAAAAmklEQVQ4T2NkoBAwUqifYdAY8J+B4T8jECMDEJuRgQGOQWxkNciADEBDQGyQGqgaFAPABjAw/GdgZPzPwMjw/z8jwBUMDEBnMjD8h7sEZCLIJSA+IwPY1XAXgA0gygCQSxgZ/v9nBLkY7A0GBrigYjYjigEkNSgqQJqQvAFjI/lBZABMPwi5AJlrIGYSFQYY4CUJDJgBAACqE…
Checks whether it runs in a sandbox desktop/agent/power_capability.go:390
    if _, err := os.Stat("/.dockerenv"); err == nil {
      - name: Render remote update script
        env:
          TARGET_VERSION: ${{ steps.target.outputs.version }}
Executes code built at runtime desktop/agent/arm/sim_harness.py:152
            m = __import__("robot_descriptions." + mod, fromlist=["URDF_PATH"])
Executes code built at runtime mobile/src/components/WebViewCompat.web.tsx:178
    win.eval(js);
docker run -itd --privileged --name "$NAME" -v "$WORK:/data" "$IMAGE" \
  view.innerHTML = rows || '<p class="muted">No containers.</p>';
            if strings.Contains(line, ".trycloudflare.com") {
    {regexp.MustCompile(`>\s*/etc/shadow\b`), "overwriting /etc/shadow"},
Secret passed into the image build mcp/Dockerfile:14
ENV MCP_PASSWORD=""
Reads files and sends them to the network sdk/js/src/fleet.ts:571, mobile/src/lib/coding-runtime.ts:111
      const entries = await fs.readdir(path.join(localDir, rel), { withFileTypes: true });

Is this your server and something here is wrong? Tell us — corrections are free and do not require a plan.

This code can reach further than it looks

We found places where it runs commands, builds paths or queries from values it is given. None of that is a flaw by itself — it becomes one when the code changes, and code changes quietly between releases. We re-read it on every one.

Three servers free · no card

Connect this server

This server runs on your own machine — install it with the package manager and the client starts it for you. Package name taken from the official registry entry.

run in your terminal
claude mcp add yaver -- npx -y yaver-cli
~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "yaver": {
      "args": [
        "-y",
        "yaver-cli"
      ],
      "command": "npx"
    }
  }
}
~/.codex/config.toml
[mcp_servers.yaver]
command = "npx"
args = ["-y", "yaver-cli"]
.cursor/mcp.json
{
  "mcpServers": {
    "yaver": {
      "args": [
        "-y",
        "yaver-cli"
      ],
      "command": "npx"
    }
  }
}
.vscode/mcp.json
{
  "mcpServers": {
    "yaver": {
      "args": [
        "-y",
        "yaver-cli"
      ],
      "command": "npx"
    }
  }
}

This one needs environment variables set before it will start: YAVER_HEADLESS (Set to 1 to force device-code OAuth instead of opening a browser (useful in remote / WSL / sandboxed environments).). The author declared them in the registry entry; get the values from the project itself.

Alternatives to Yaver

same job, measured the same way
Yaver
by kivanccakmak

Phone-first local dev MCP for Claude Code and Codex: install Yaver, pair mobile, run, build, deploy.

local only
Token Meter
by whdrnr2583-cmd

Local-first dashboard + MCP for Claude Code and Codex token usage. Per-MCP/tool breakdown.

109 installs/wk local only
Seojeom MCP
by seojeom

Local-first MCP server for Claude/Codex project wiki and graph workflows

local only
Pathmark
by hacksurvivor

Local-first intent and provenance for Codex, Claude Code, Cursor, Gemini CLI, and MCP agents.

64 installs/wk local only
Ariadne
by mclaut

Local-first multilingual, auditable memory for Codex, Claude Code, and MCP clients.

local only
Claude Bridge
by constripacity

Durable local-first MCP relay for independent coding agents.

297 installs/wk local only
Skill Builder MCP
by dmzagent

Search the skill-builder registry and auto-install skills for Claude Code, Cursor, and Codex.

47 installs/wk local only
Remem
by majiayu000

Local-first automatic memory for Claude Code and Codex: capture, distill, recall from SQLite.

505 installs/wk local only

Yaver — questions

Answers built from our own checks of this server.

Why is there no uptime for Yaver?
Yaver runs on your own machine over stdio — there is no network address to reach, so uptime cannot be measured for it by anyone. What can be measured is adoption: the npm package yaver-cli was installed 2 267 times last week.
How do I connect Yaver?
Copy the ready config from this page — we generate it for Claude Code, Claude Desktop, Codex, Cursor and VS Code, each with the file path that client actually reads. It runs locally, so the command pulls yaver-cli straight from npm; nothing to host, nothing to sign up for.
How many people use Yaver?
The npm package yaver-cli was installed 2 267 times in the last week. Week over week that is -35%. We show installs rather than GitHub stars on purpose: a star is a bookmark, an install is someone actually running it.
Is Yaver open source?
Yes — it is published under the Apache-2.0 licence, written in Go, 4 stars on GitHub and 3 open issues. The source link is on this page, so you can read exactly what it does with your data before you connect it.