---
bezeichner: "io.github.cyanheads/ntfy-mcp-server"
art: "mcp_server"
slug: "io-github-cyanheads-ntfy-mcp-server"
paketkoordinate: "npm:ntfy-mcp-server"
status: "aktiv"
homepage: "https://github.com/cyanheads/ntfy-mcp-server"
erhebungsstand: "2026-10-11T01:17:01.851Z"
namensraum: "io.github.cyanheads"
registerseite: "https://tracevero.com/mcp/io-github-cyanheads-ntfy-mcp-server"
abgerufen_am: "2026-10-11"
zugangsdaten_erforderlich: false
ausfuehrungsort: "lokal"
dateisystem_pfadargument: false
quelloffen_einsehbar: true
roh_beschreibung: "Send, manage, and replay ntfy push notifications via MCP."
version: "2.3.6"
roh_umgebungsvariablen: "NTFY_SERVERS, NTFY_BASE_URL, NTFY_DEFAULT_TOPIC, NTFY_AUTH_TOKEN, NTFY_AUTH_USERNAME, NTFY_AUTH_PASSWORD, NTFY_REQUEST_TIMEOUT_MS, NTFY_MAX_RETRIES, NTFY_BLOCK_PRIVATE_HOSTS, MCP_LOG_LEVEL, LOGS_DIR, OTEL_ENABLED, MCP_TRANSPORT_TYPE, NTFY_SERVERS, NTFY_BASE_URL, NTFY_DEFAULT_TOPIC, NTFY_AUTH_TOKEN, NTFY_AUTH_USERNAME, NTFY_AUTH_PASSWORD, NTFY_REQUEST_TIMEOUT_MS, NTFY_MAX_RETRIES, NTFY_BLOCK_PRIVATE_HOSTS, MCP_SESSION_MODE, MCP_HTTP_HOST, MCP_HTTP_PORT, MCP_HTTP_ENDPOINT_PATH, MCP_AUTH_MODE, MCP_REQUEST_STATE_KEY, MCP_LOG_LEVEL, LOGS_DIR, OTEL_ENABLED"
roh_geheime_pflichtvariablen: ""
roh_transportarten: "stdio, streamable-http"
roh_pfadargumente: ""
roh_repository_url: "https://github.com/cyanheads/ntfy-mcp-server"
roh_paketquellen: "npm, npm"
roh_geheime_pflichtkopfzeilen: ""
roh_pfad_umgebungsvariablen: ""
roh_remote_adressen: ""
roh_remote_hosts: ""
roh_statusmeldung: ""
roh_veroeffentlicht_am: "2026-10-07"
roh_aktualisiert_am: "2026-10-07"
roh_schemafassung: "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json"
roh_bereitstellungsform: "paket"
roh_repository_quelle: "github"
roh_repository_unterordner: ""
roh_paketbezeichner: "ntfy-mcp-server"
roh_paketversionen: "2.3.6"
roh_laufzeithinweise: "npx"
roh_umgebungsformate: "string"
roh_umgebungsbeschreibungen: "LOGS_DIR=Directory for file-based logs (Node only; ignored on Workers). · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn'). · MCP_REQUEST_STATE_KEY=Recommended for HTTP. Key (>= 32 bytes, the same on every instance) that seals the requestState carrying the consent-record id of a confirmation prompt, bound to the caller for 900 s; a forged, tampered, or expired state is rejected before the handler runs. · MCP_SESSION_MODE=HTTP session model: 'auto', 'stateful', or 'stateless'. This server requires 'stateful' over HTTP — the consent prompt on destructive and outbound calls is a multi-round-trip request that a 2025-era HTTP client can only complete over a live session — so an HTTP start with 'stateless' is refused. 'auto' resolves to 'stateful'; stdio ignores the setting. · MCP_TRANSPORT_TYPE=Selects the HTTP transport. · NTFY_AUTH_PASSWORD=Basic-auth password for the single-server shorthand — must be set together with NTFY_AUTH_USERNAME. · NTFY_AUTH_TOKEN=Bearer access token (`tk_…`) for the single-server shorthand. Mutually exclusive with NTFY_AUTH_USERNAME / NTFY_AUTH_PASSWORD. · NTFY_AUTH_USERNAME=Basic-auth username for the single-server shorthand — must be set together with NTFY_AUTH_PASSWORD. · NTFY_BASE_URL=Single-server shorthand — base URL of the ntfy server (no trailing slash). Used when NTFY_SERVERS is unset. · NTFY_BLOCK_PRIVATE_HOSTS=When true, a per-call `base_url` override must resolve to a public address and its redirects are not followed. Servers registered under NTFY_SERVERS / NTFY_BASE_URL are exempt. Turn it on where callers you do not control can reach the server. · NTFY_DEFAULT_TOPIC=Topic used when a tool call omits `topic`. Treat the topic name as a secret — anyone who knows it can publish or subscribe. · NTFY_MAX_RETRIES=Max retry attempts for transient upstream failures (5xx, network, 429). · NTFY_REQUEST_TIMEOUT_MS=Per-request HTTP timeout in milliseconds. · NTFY_SERVERS=JSON array of `{ baseUrl, authToken? | authUsername?+authPassword? }` entries — one per ntfy server. First entry is the default base. Auth is scoped to the entry's `baseUrl`; per-call `base_url` overrides that match a registered base forward that server's auth. Takes precedence over the single-server NTFY_BASE_URL / NTFY_AUTH_* shorthand. · OTEL_ENABLED=Enable OpenTelemetry instrumentation (spans, metrics, completion logs)."
roh_symbolformate: ""
roh_verbindungswege: "{\"packages\":[{\"registryType\":\"npm\",\"identifier\":\"ntfy-mcp-server\",\"version\":\"2.3.6\",\"runtimeHint\":\"npx\",\"transport\":\"stdio\",\"environment\":[{\"name\":\"NTFY_SERVERS\",\"description\":\"JSON array of `{ baseUrl, authToken? | authUsername?+authPassword? }` entries — one per ntfy server. First entry is the default base. Auth is scoped to the entry's `baseUrl`; per-call `base_url` overrides that match a registered base forward that server's auth. Takes precedence over the single-server NTFY_BASE_URL / NTFY_AUTH_* shorthand.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_BASE_URL\",\"description\":\"Single-server shorthand — base URL of the ntfy server (no trailing slash). Used when NTFY_SERVERS is unset.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_DEFAULT_TOPIC\",\"description\":\"Topic used when a tool call omits `topic`. Treat the topic name as a secret — anyone who knows it can publish or subscribe.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_AUTH_TOKEN\",\"description\":\"Bearer access token (`tk_…`) for the single-server shorthand. Mutually exclusive with NTFY_AUTH_USERNAME / NTFY_AUTH_PASSWORD.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_AUTH_USERNAME\",\"description\":\"Basic-auth username for the single-server shorthand — must be set together with NTFY_AUTH_PASSWORD.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_AUTH_PASSWORD\",\"description\":\"Basic-auth password for the single-server shorthand — must be set together with NTFY_AUTH_USERNAME.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_REQUEST_TIMEOUT_MS\",\"description\":\"Per-request HTTP timeout in milliseconds.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_MAX_RETRIES\",\"description\":\"Max retry attempts for transient upstream failures (5xx, network, 429).\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_BLOCK_PRIVATE_HOSTS\",\"description\":\"When true, a per-call `base_url` override must resolve to a public address and its redirects are not followed. Servers registered under NTFY_SERVERS / NTFY_BASE_URL are exempt. Turn it on where callers you do not control can reach the server.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"MCP_LOG_LEVEL\",\"description\":\"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"LOGS_DIR\",\"description\":\"Directory for file-based logs (Node only; ignored on Workers).\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"OTEL_ENABLED\",\"description\":\"Enable OpenTelemetry instrumentation (spans, metrics, completion logs).\",\"format\":\"string\",\"required\":false,\"secret\":false}],\"additional_arguments_declared\":false},{\"registryType\":\"npm\",\"identifier\":\"ntfy-mcp-server\",\"version\":\"2.3.6\",\"runtimeHint\":\"npx\",\"transport\":\"streamable-http\",\"environment\":[{\"name\":\"MCP_TRANSPORT_TYPE\",\"description\":\"Selects the HTTP transport.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_SERVERS\",\"description\":\"JSON array of `{ baseUrl, authToken? | authUsername?+authPassword? }` entries — one per ntfy server. First entry is the default base. Auth is scoped to the entry's `baseUrl`; per-call `base_url` overrides that match a registered base forward that server's auth. Takes precedence over the single-server NTFY_BASE_URL / NTFY_AUTH_* shorthand.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_BASE_URL\",\"description\":\"Single-server shorthand — base URL of the ntfy server (no trailing slash). Used when NTFY_SERVERS is unset.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_DEFAULT_TOPIC\",\"description\":\"Topic used when a tool call omits `topic`. Treat the topic name as a secret — anyone who knows it can publish or subscribe.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_AUTH_TOKEN\",\"description\":\"Bearer access token (`tk_…`) for the single-server shorthand. Mutually exclusive with NTFY_AUTH_USERNAME / NTFY_AUTH_PASSWORD.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_AUTH_USERNAME\",\"description\":\"Basic-auth username for the single-server shorthand — must be set together with NTFY_AUTH_PASSWORD.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_AUTH_PASSWORD\",\"description\":\"Basic-auth password for the single-server shorthand — must be set together with NTFY_AUTH_USERNAME.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_REQUEST_TIMEOUT_MS\",\"description\":\"Per-request HTTP timeout in milliseconds.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_MAX_RETRIES\",\"description\":\"Max retry attempts for transient upstream failures (5xx, network, 429).\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"NTFY_BLOCK_PRIVATE_HOSTS\",\"description\":\"When true, a per-call `base_url` override must resolve to a public address and its redirects are not followed. Servers registered under NTFY_SERVERS / NTFY_BASE_URL are exempt. Turn it on where callers you do not control can reach the server.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"MCP_SESSION_MODE\",\"description\":\"HTTP session model: 'auto', 'stateful', or 'stateless'. This server requires 'stateful' over HTTP — the consent prompt on destructive and outbound calls is a multi-round-trip request that a 2025-era HTTP client can only complete over a live session — so an HTTP start with 'stateless' is refused. 'auto' resolves to 'stateful'; stdio ignores the setting.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"MCP_HTTP_HOST\",\"description\":\"The hostname for the HTTP server.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"MCP_HTTP_PORT\",\"description\":\"The port to run the HTTP server on.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"MCP_HTTP_ENDPOINT_PATH\",\"description\":\"The endpoint path for the MCP server.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"MCP_AUTH_MODE\",\"description\":\"Authentication mode to use: 'none', 'jwt', or 'oauth'.\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"MCP_REQUEST_STATE_KEY\",\"description\":\"Recommended for HTTP. Key (>= 32 bytes, the same on every instance) that seals the requestState carrying the consent-record id of a confirmation prompt, bound to the caller for 900 s; a forged, tampered, or expired state is rejected before the handler runs.\",\"format\":\"string\",\"required\":false,\"secret\":true},{\"name\":\"MCP_LOG_LEVEL\",\"description\":\"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"LOGS_DIR\",\"description\":\"Directory for file-based logs (Node only; ignored on Workers).\",\"format\":\"string\",\"required\":false,\"secret\":false},{\"name\":\"OTEL_ENABLED\",\"description\":\"Enable OpenTelemetry instrumentation (spans, metrics, completion logs).\",\"format\":\"string\",\"required\":false,\"secret\":false}],\"additional_arguments_declared\":false}],\"remotes\":[]}"
---

# io.github.cyanheads/ntfy-mcp-server

## Measured values

| Property | Value | Source | Collected on | Level of trust | Raw declaration |
| --- | --- | --- | --- | --- | --- |
| Required secrets declared | false | MCP-Register | 2026-08-06T13:57:41.838Z | abgeleitet | roh_geheime_pflichtvariablen: ; roh_geheime_pflichtkopfzeilen: |
| Execution location | lokal | MCP-Register | 2026-08-06T13:57:41.838Z | abgeleitet | roh_transportarten: stdio, streamable-http |
| Path argument present | false | MCP-Register | 2026-08-06T13:57:41.838Z | abgeleitet | roh_pfadargumente: ; roh_pfad_umgebungsvariablen: |
| Repository URL listed | true | MCP-Register | 2026-08-06T13:57:41.838Z | abgeleitet | roh_repository_url: https://github.com/cyanheads/ntfy-mcp-server |
| Description (raw) | Send, manage, and replay ntfy push notifications via MCP. | MCP-Register | 2026-08-26T16:45:01.514Z | selbstauskunft |  |
| Declared version | 2.3.6 | MCP-Register | 2026-10-08T01:17:01.893Z | selbstauskunft |  |
| Environment variables (raw) | NTFY_SERVERS, NTFY_BASE_URL, NTFY_DEFAULT_TOPIC, NTFY_AUTH_TOKEN, NTFY_AUTH_USERNAME, NTFY_AUTH_PASSWORD, NTFY_REQUEST_TIMEOUT_MS, NTFY_MAX_RETRIES, NTFY_BLOCK_PRIVATE_HOSTS, MCP_LOG_LEVEL, LOGS_DIR, OTEL_ENABLED, MCP_TRANSPORT_TYPE, NTFY_SERVERS, NTFY_BASE_URL, NTFY_DEFAULT_TOPIC, NTFY_AUTH_TOKEN, NTFY_AUTH_USERNAME, NTFY_AUTH_PASSWORD, NTFY_REQUEST_TIMEOUT_MS, NTFY_MAX_RETRIES, NTFY_BLOCK_PRIVATE_HOSTS, MCP_SESSION_MODE, MCP_HTTP_HOST, MCP_HTTP_PORT, MCP_HTTP_ENDPOINT_PATH, MCP_AUTH_MODE, MCP_REQUEST_STATE_KEY, MCP_LOG_LEVEL, LOGS_DIR, OTEL_ENABLED | MCP-Register | 2026-10-08T01:17:01.893Z | selbstauskunft |  |
| Required secret variables (raw) |  | MCP-Register | 2026-08-06T13:57:41.838Z | selbstauskunft |  |
| Transports (raw) | stdio, streamable-http | MCP-Register | 2026-08-06T13:57:41.838Z | selbstauskunft |  |
| Path arguments (raw) |  | MCP-Register | 2026-08-06T13:57:41.838Z | selbstauskunft |  |
| Repository (raw) | https://github.com/cyanheads/ntfy-mcp-server | MCP-Register | 2026-08-06T13:57:41.838Z | selbstauskunft |  |
| Package registries (raw) | npm, npm | MCP-Register | 2026-08-06T13:57:41.838Z | selbstauskunft |  |
| Required secret headers (raw) |  | MCP-Register | 2026-08-16T01:17:01.420Z | selbstauskunft |  |
| Path environment variables (raw) |  | MCP-Register | 2026-08-16T01:17:01.420Z | selbstauskunft |  |
| Remote URLs (raw) |  | MCP-Register | 2026-08-16T01:17:01.420Z | selbstauskunft |  |
| Remote hosts (raw) |  | MCP-Register | 2026-08-16T01:17:01.420Z | selbstauskunft |  |
| Registry status message (raw) |  | MCP-Register | 2026-08-16T01:17:01.420Z | selbstauskunft |  |
| First listed in the registry (raw) | 2026-10-07 | MCP-Register | 2026-10-08T01:17:01.893Z | selbstauskunft |  |
| Last changed in the registry (raw) | 2026-10-07 | MCP-Register | 2026-10-08T01:17:01.893Z | selbstauskunft |  |
| Schema version of the raw record (raw) | https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json | MCP-Register | 2026-08-16T01:17:01.420Z | selbstauskunft |  |
| Delivery form (raw) | paket | MCP-Register | 2026-08-16T01:17:01.420Z | selbstauskunft |  |
| Repository platform (raw) | github | MCP-Register | 2026-08-16T01:17:01.420Z | selbstauskunft |  |
| Repository subfolder (raw) |  | MCP-Register | 2026-08-16T01:17:01.420Z | selbstauskunft |  |
| Package identifiers (raw) | ntfy-mcp-server | MCP-Register | 2026-08-16T01:17:01.420Z | selbstauskunft |  |
| Package versions (raw) | 2.3.6 | MCP-Register | 2026-10-08T01:17:01.893Z | selbstauskunft |  |
| Runtime hints (raw) | npx | MCP-Register | 2026-10-08T01:17:01.893Z | selbstauskunft |  |
| Environment variable formats (raw) | string | MCP-Register | 2026-08-16T01:17:01.420Z | selbstauskunft |  |
| Environment variable descriptions (raw) | LOGS_DIR=Directory for file-based logs (Node only; ignored on Workers). · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn'). · MCP_REQUEST_STATE_KEY=Recommended for HTTP. Key (>= 32 bytes, the same on every instance) that seals the requestState carrying the consent-record id of a confirmation prompt, bound to the caller for 900 s; a forged, tampered, or expired state is rejected before the handler runs. · MCP_SESSION_MODE=HTTP session model: 'auto', 'stateful', or 'stateless'. This server requires 'stateful' over HTTP — the consent prompt on destructive and outbound calls is a multi-round-trip request that a 2025-era HTTP client can only complete over a live session — so an HTTP start with 'stateless' is refused. 'auto' resolves to 'stateful'; stdio ignores the setting. · MCP_TRANSPORT_TYPE=Selects the HTTP transport. · NTFY_AUTH_PASSWORD=Basic-auth password for the single-server shorthand — must be set together with NTFY_AUTH_USERNAME. · NTFY_AUTH_TOKEN=Bearer access token (`tk_…`) for the single-server shorthand. Mutually exclusive with NTFY_AUTH_USERNAME / NTFY_AUTH_PASSWORD. · NTFY_AUTH_USERNAME=Basic-auth username for the single-server shorthand — must be set together with NTFY_AUTH_PASSWORD. · NTFY_BASE_URL=Single-server shorthand — base URL of the ntfy server (no trailing slash). Used when NTFY_SERVERS is unset. · NTFY_BLOCK_PRIVATE_HOSTS=When true, a per-call `base_url` override must resolve to a public address and its redirects are not followed. Servers registered under NTFY_SERVERS / NTFY_BASE_URL are exempt. Turn it on where callers you do not control can reach the server. · NTFY_DEFAULT_TOPIC=Topic used when a tool call omits `topic`. Treat the topic name as a secret — anyone who knows it can publish or subscribe. · NTFY_MAX_RETRIES=Max retry attempts for transient upstream failures (5xx, network, 429). · NTFY_REQUEST_TIMEOUT_MS=Per-request HTTP timeout in milliseconds. · NTFY_SERVERS=JSON array of `{ baseUrl, authToken? \| authUsername?+authPassword? }` entries — one per ntfy server. First entry is the default base. Auth is scoped to the entry's `baseUrl`; per-call `base_url` overrides that match a registered base forward that server's auth. Takes precedence over the single-server NTFY_BASE_URL / NTFY_AUTH_* shorthand. · OTEL_ENABLED=Enable OpenTelemetry instrumentation (spans, metrics, completion logs). | MCP-Register | 2026-10-08T01:17:01.893Z | selbstauskunft |  |
| Icon formats (raw) |  | MCP-Register | 2026-08-16T01:17:01.420Z | selbstauskunft |  |
| Connection paths (source structure) | {"packages":[{"registryType":"npm","identifier":"ntfy-mcp-server","version":"2.3.6","runtimeHint":"npx","transport":"stdio","environment":[{"name":"NTFY_SERVERS","description":"JSON array of `{ baseUrl, authToken? \| authUsername?+authPassword? }` entries — one per ntfy server. First entry is the default base. Auth is scoped to the entry's `baseUrl`; per-call `base_url` overrides that match a registered base forward that server's auth. Takes precedence over the single-server NTFY_BASE_URL / NTFY_AUTH_* shorthand.","format":"string","required":false,"secret":false},{"name":"NTFY_BASE_URL","description":"Single-server shorthand — base URL of the ntfy server (no trailing slash). Used when NTFY_SERVERS is unset.","format":"string","required":false,"secret":false},{"name":"NTFY_DEFAULT_TOPIC","description":"Topic used when a tool call omits `topic`. Treat the topic name as a secret — anyone who knows it can publish or subscribe.","format":"string","required":false,"secret":false},{"name":"NTFY_AUTH_TOKEN","description":"Bearer access token (`tk_…`) for the single-server shorthand. Mutually exclusive with NTFY_AUTH_USERNAME / NTFY_AUTH_PASSWORD.","format":"string","required":false,"secret":false},{"name":"NTFY_AUTH_USERNAME","description":"Basic-auth username for the single-server shorthand — must be set together with NTFY_AUTH_PASSWORD.","format":"string","required":false,"secret":false},{"name":"NTFY_AUTH_PASSWORD","description":"Basic-auth password for the single-server shorthand — must be set together with NTFY_AUTH_USERNAME.","format":"string","required":false,"secret":false},{"name":"NTFY_REQUEST_TIMEOUT_MS","description":"Per-request HTTP timeout in milliseconds.","format":"string","required":false,"secret":false},{"name":"NTFY_MAX_RETRIES","description":"Max retry attempts for transient upstream failures (5xx, network, 429).","format":"string","required":false,"secret":false},{"name":"NTFY_BLOCK_PRIVATE_HOSTS","description":"When true, a per-call `base_url` override must resolve to a public address and its redirects are not followed. Servers registered under NTFY_SERVERS / NTFY_BASE_URL are exempt. Turn it on where callers you do not control can reach the server.","format":"string","required":false,"secret":false},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"LOGS_DIR","description":"Directory for file-based logs (Node only; ignored on Workers).","format":"string","required":false,"secret":false},{"name":"OTEL_ENABLED","description":"Enable OpenTelemetry instrumentation (spans, metrics, completion logs).","format":"string","required":false,"secret":false}],"additional_arguments_declared":false},{"registryType":"npm","identifier":"ntfy-mcp-server","version":"2.3.6","runtimeHint":"npx","transport":"streamable-http","environment":[{"name":"MCP_TRANSPORT_TYPE","description":"Selects the HTTP transport.","format":"string","required":false,"secret":false},{"name":"NTFY_SERVERS","description":"JSON array of `{ baseUrl, authToken? \| authUsername?+authPassword? }` entries — one per ntfy server. First entry is the default base. Auth is scoped to the entry's `baseUrl`; per-call `base_url` overrides that match a registered base forward that server's auth. Takes precedence over the single-server NTFY_BASE_URL / NTFY_AUTH_* shorthand.","format":"string","required":false,"secret":false},{"name":"NTFY_BASE_URL","description":"Single-server shorthand — base URL of the ntfy server (no trailing slash). Used when NTFY_SERVERS is unset.","format":"string","required":false,"secret":false},{"name":"NTFY_DEFAULT_TOPIC","description":"Topic used when a tool call omits `topic`. Treat the topic name as a secret — anyone who knows it can publish or subscribe.","format":"string","required":false,"secret":false},{"name":"NTFY_AUTH_TOKEN","description":"Bearer access token (`tk_…`) for the single-server shorthand. Mutually exclusive with NTFY_AUTH_USERNAME / NTFY_AUTH_PASSWORD.","format":"string","required":false,"secret":false},{"name":"NTFY_AUTH_USERNAME","description":"Basic-auth username for the single-server shorthand — must be set together with NTFY_AUTH_PASSWORD.","format":"string","required":false,"secret":false},{"name":"NTFY_AUTH_PASSWORD","description":"Basic-auth password for the single-server shorthand — must be set together with NTFY_AUTH_USERNAME.","format":"string","required":false,"secret":false},{"name":"NTFY_REQUEST_TIMEOUT_MS","description":"Per-request HTTP timeout in milliseconds.","format":"string","required":false,"secret":false},{"name":"NTFY_MAX_RETRIES","description":"Max retry attempts for transient upstream failures (5xx, network, 429).","format":"string","required":false,"secret":false},{"name":"NTFY_BLOCK_PRIVATE_HOSTS","description":"When true, a per-call `base_url` override must resolve to a public address and its redirects are not followed. Servers registered under NTFY_SERVERS / NTFY_BASE_URL are exempt. Turn it on where callers you do not control can reach the server.","format":"string","required":false,"secret":false},{"name":"MCP_SESSION_MODE","description":"HTTP session model: 'auto', 'stateful', or 'stateless'. This server requires 'stateful' over HTTP — the consent prompt on destructive and outbound calls is a multi-round-trip request that a 2025-era HTTP client can only complete over a live session — so an HTTP start with 'stateless' is refused. 'auto' resolves to 'stateful'; stdio ignores the setting.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_HOST","description":"The hostname for the HTTP server.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_PORT","description":"The port to run the HTTP server on.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_ENDPOINT_PATH","description":"The endpoint path for the MCP server.","format":"string","required":false,"secret":false},{"name":"MCP_AUTH_MODE","description":"Authentication mode to use: 'none', 'jwt', or 'oauth'.","format":"string","required":false,"secret":false},{"name":"MCP_REQUEST_STATE_KEY","description":"Recommended for HTTP. Key (>= 32 bytes, the same on every instance) that seals the requestState carrying the consent-record id of a confirmation prompt, bound to the caller for 900 s; a forged, tampered, or expired state is rejected before the handler runs.","format":"string","required":false,"secret":true},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"LOGS_DIR","description":"Directory for file-based logs (Node only; ignored on Workers).","format":"string","required":false,"secret":false},{"name":"OTEL_ENABLED","description":"Enable OpenTelemetry instrumentation (spans, metrics, completion logs).","format":"string","required":false,"secret":false}],"additional_arguments_declared":false}],"remotes":[]} | MCP-Register | 2026-10-08T01:17:01.893Z | selbstauskunft |  |

## Links

- Namespace: [[namensraum/io-github-cyanheads|io.github.cyanheads]]

---

- Registry page: <https://tracevero.com/mcp/io-github-cyanheads-ntfy-mcp-server>
- Retrieved on: 2026-10-11
