AgentHubAgentHub

Paperless MCP Setup & Guide

MCP ServerMCP RegistryOfficial

io.github.pvliesdonk/paperless-mcp · v3.0.0

Paperless-NGX over MCP: search, read, upload and tag documents; manage correspondents and types.

Copy the install config on this page first, then verify docs and permissions upstream.

Overview

Paperless-NGX over MCP: search, read, upload and tag documents; manage correspondents and types. Paperless MCP is a MCP Server listed from MCP Registry. Transports: stdio, streamable-http. This page includes an overview, setup tutorial, install commands, and use cases for Trae, Tongyi Lingma, Cursor, Claude Code, and VS Code.

Use cases

AgentHub Verified AvailabilityTested & Ready

Automated pipeline validated install commands, protocol & client compatibility

Verified At2026-10-04
Install Snippets TestedCLI & JSON config syntax verified
Protocol Handshake ReadyComplies with JSON-RPC 2.0 specifications
Origin Registry ActiveSourced from official-mcp-registry
Verified ClientsClaude Code、Claude Desktop、Cursor 等
Security Tier: A+ 级 · 官方认证推荐 (A+)·Maintained by official/verified teams, audited for standard MCP protocol compliance.

Copy by platform

Choose your platform

  1. Open or create .cursor/mcp.json in your project root
  2. Click Copy config and paste; merge only this mcpServers entry if others exist
  3. Replace <placeholders> in env with real secrets (see Environment variables below)
  4. Save, then Cmd+Shift+P → Reload Window

Pre-fill Environment Variables (Optional)

secret
secret
secret
secret
secret
Privacy Guarantee: Keys are replaced 100% locally in your browser memory and are NEVER uploaded or stored on any server.
Click to copy snippet
{
  "mcpServers": {
    "paperless-mcp": {
      "command": "uvx",
      "args": [
        "pvliesdonk-paperless-mcp"
      ]
    }
  }
}

Setup tutorial

  1. Open the Paperless MCP page and confirm this MCP Server (source: MCP Registry).
  2. Copy the Cursor, Claude Code, or VS Code snippet.
  3. Merge it into mcpServers and replace env placeholders with real secrets.
  4. Reload the window, then call the MCP tools from your agent chat.

Install commands

Install commands and setup steps are in the HTML so search engines and no-JS browsers can read them without running client JavaScript.

Claude Code (local)

  1. Install Claude Code CLI
  2. Copy the command below, replace <placeholders> with real env values, then run in terminal
  3. See Environment variables below if listed
claude mcp add paperless-mcp -- uvx pvliesdonk-paperless-mcp

Cursor — .cursor/mcp.json (local)

  1. Open or create .cursor/mcp.json in your project root
  2. Click Copy config and paste; merge only this mcpServers entry if others exist
  3. Replace <placeholders> in env with real secrets (see Environment variables below)
  4. Save, then Cmd+Shift+P → Reload Window
{
  "mcpServers": {
    "paperless-mcp": {
      "command": "uvx",
      "args": [
        "pvliesdonk-paperless-mcp"
      ]
    }
  }
}

VS Code — .vscode/mcp.json (local)

  1. Install GitHub Copilot in VS Code with MCP support
  2. Open or create .vscode/mcp.json in your project root
  3. Click Copy config and paste; merge only this mcpServers entry if others exist
  4. Replace <placeholders> in env with real secrets
  5. Save and Developer: Reload Window
{
  "mcpServers": {
    "paperless-mcp": {
      "command": "uvx",
      "args": [
        "pvliesdonk-paperless-mcp"
      ]
    }
  }
}

Claude Desktop — claude_desktop_config.json (local)

  1. Open Claude Desktop claude_desktop_config.json (see remote guide for paths)
  2. Click Copy config and merge under mcpServers
  3. Replace <placeholders> in env with real secrets
  4. Fully quit and restart Claude Desktop
{
  "mcpServers": {
    "paperless-mcp": {
      "command": "uvx",
      "args": [
        "pvliesdonk-paperless-mcp"
      ]
    }
  }
}

Trae — .trae/mcp.json (local)

  1. Trae → Settings → MCP, or edit .trae/mcp.json / global mcp.json
  2. Click Copy config and merge mcpServers
  3. Replace <placeholders> in env with real secrets
  4. Save and reload Trae
{
  "mcpServers": {
    "paperless-mcp": {
      "command": "uvx",
      "args": [
        "pvliesdonk-paperless-mcp"
      ]
    }
  }
}

Cherry Studio — MCP settings (local)

  1. Cherry Studio → Settings → MCP Servers → Add (STDIO)
  2. Or import JSON: click Copy config and merge mcpServers
  3. Replace <placeholders> in env; ensure Node.js / uv (npx, uvx) are installed
  4. Enable the server and check tools load
{
  "mcpServers": {
    "paperless-mcp": {
      "command": "uvx",
      "args": [
        "pvliesdonk-paperless-mcp"
      ]
    }
  }
}

Tongyi Lingma — MCP config (local)

  1. Lingma Settings → MCP → + → STDIO or config file
  2. Click Copy config and merge mcpServers
  3. Replace <placeholders> in env; need Node.js 18+ (npx) or uv (uvx)
  4. Confirm connected before using tools in agent chat
{
  "mcpServers": {
    "paperless-mcp": {
      "command": "uvx",
      "args": [
        "pvliesdonk-paperless-mcp"
      ]
    }
  }
}

Windsurf — mcp_config.json (local)

  1. Edit ~/.codeium/windsurf/mcp_config.json
  2. Click Copy config and merge mcpServers (stdio same as Cursor)
  3. Replace <placeholders> in env, save, refresh Cascade
{
  "mcpServers": {
    "paperless-mcp": {
      "command": "uvx",
      "args": [
        "pvliesdonk-paperless-mcp"
      ]
    }
  }
}

Cline — MCP Servers (local)

  1. Cline panel → Settings → MCP Servers
  2. Click Copy config and merge
  3. Replace <placeholders> in env, then save
{
  "mcpServers": {
    "paperless-mcp": {
      "command": "uvx",
      "args": [
        "pvliesdonk-paperless-mcp"
      ]
    }
  }
}

WorkBuddy — .workbuddy/mcp.json (local)

  1. Edit ~/.workbuddy/mcp.json (user) or project .workbuddy/mcp.json
  2. Or Plugins → MCP Servers → Configure MCP and paste the JSON below
  3. Replace <placeholders> in env; on Windows prefer absolute paths for command/scripts
  4. Save, restart WorkBuddy, confirm connector status is green
{
  "mcpServers": {
    "paperless-mcp": {
      "command": "uvx",
      "args": [
        "pvliesdonk-paperless-mcp"
      ]
    }
  }
}

Troubleshooting & Common ErrorsFAQ

Common connection errors and verified fixes for Paperless MCP

Getting 'connection closed' or exit code 1 in Cursor / Claude Code for Paperless MCP?

Usually caused by missing runtime paths or IDE environment inheritance. Fix steps: 1. Verify Node.js 18+ (npx) or Python 3.10+ (uvx) is installed; 2. Run 'which npx' or 'which uvx' in terminal, and replace 'command' with absolute path; 3. Reload or restart the client window after modifying config.

Fix Snippet
# Check binary path in terminal:
which npx
node -v
Getting 'spawn npx ENOENT' or 'command not found'?

The editor background process does not inherit your full terminal PATH. Solution: Globally install the package, or set the absolute binary path (e.g. C:\Program Files\nodejs\npx.cmd on Windows, or /usr/local/bin/npx on macOS).

Missing required environment variable or authentication failure?

Paperless MCP requires environment variables (PAPERLESS_MCP_KV_STORE_URL、PAPERLESS_MCP_TOOLS_ALLOW、PAPERLESS_MCP_TOOLS_DENY、PAPERLESS_MCP_SERVER_NAME、PAPERLESS_MCP_INSTANCE_DESCRIPTION、PAPERLESS_MCP_INSTRUCTIONS_EXTRA、PAPERLESS_MCP_INSTRUCTIONS、PAPERLESS_MCP_LOG_LEVEL、PAPERLESS_MCP_LOG_FORMAT、PAPERLESS_MCP_PAPERLESS_URL、PAPERLESS_MCP_API_TOKEN、PAPERLESS_MCP_HTTP_TIMEOUT_SECONDS、PAPERLESS_MCP_HTTP_RETRIES、PAPERLESS_MCP_DEFAULT_PAGE_SIZE、PAPERLESS_MCP_PAPERLESS_PUBLIC_URL、PAPERLESS_MCP_TRANSFER_TTL_DEFAULT_S、PAPERLESS_MCP_TRANSFER_TTL_MAX_S、PAPERLESS_MCP_TRANSFER_GRACE_TTL_S、PAPERLESS_MCP_TRANSFER_LEASE_S、PAPERLESS_MCP_TRANSFER_MAX_UPLOAD_BYTES、PAPERLESS_MCP_SHUTDOWN_GRACE_S、PAPERLESS_MCP_BASE_URL、PAPERLESS_MCP_BEARER_TOKEN、PAPERLESS_MCP_OIDC_CONFIG_URL、PAPERLESS_MCP_OIDC_CLIENT_ID、PAPERLESS_MCP_OIDC_CLIENT_SECRET、PAPERLESS_MCP_OIDC_AUDIENCE、PAPERLESS_MCP_OIDC_REQUIRED_SCOPES、PAPERLESS_MCP_OIDC_ADVERTISED_SCOPES、PAPERLESS_MCP_OIDC_JWT_SIGNING_KEY、PAPERLESS_MCP_OIDC_VERIFY_ACCESS_TOKEN、PAPERLESS_MCP_KV_STORE_URL、PAPERLESS_MCP_APP_DOMAIN、PAPERLESS_MCP_TOOLS_ALLOW、PAPERLESS_MCP_TOOLS_DENY、PAPERLESS_MCP_AUTH_MODE、PAPERLESS_MCP_BEARER_TOKENS_FILE、PAPERLESS_MCP_BEARER_DEFAULT_SUBJECT、PAPERLESS_MCP_SERVER_NAME、PAPERLESS_MCP_INSTANCE_DESCRIPTION、PAPERLESS_MCP_INSTRUCTIONS_EXTRA、PAPERLESS_MCP_INSTRUCTIONS、PAPERLESS_MCP_HTTP_PATH、PAPERLESS_MCP_HEALTH_DETAIL、PUID、PGID、PAPERLESS_MCP_LOG_LEVEL、PAPERLESS_MCP_LOG_FORMAT、PAPERLESS_MCP_PAPERLESS_URL、PAPERLESS_MCP_API_TOKEN、PAPERLESS_MCP_HTTP_TIMEOUT_SECONDS、PAPERLESS_MCP_HTTP_RETRIES、PAPERLESS_MCP_DEFAULT_PAGE_SIZE、PAPERLESS_MCP_PAPERLESS_PUBLIC_URL、PAPERLESS_MCP_TRANSFER_TTL_DEFAULT_S、PAPERLESS_MCP_TRANSFER_TTL_MAX_S、PAPERLESS_MCP_TRANSFER_GRACE_TTL_S、PAPERLESS_MCP_TRANSFER_LEASE_S、PAPERLESS_MCP_TRANSFER_MAX_UPLOAD_BYTES). Ensure you have added valid keys under the 'env' object in your config file without trailing whitespace.

Fix Snippet
// .cursor/mcp.json 或 claude_desktop_config.json
{
  "env": {
    "API_KEY": "your_actual_key_here"
  }
}

Tool Mock Playground

Sandbox

Paperless MCP Tool Interface Simulation · Preview tool schema & outputs without local runtime

Sandbox Ready
fn: paperless_mcpExecute the core tool interface of Paperless MCP
Request ArgumentsJSON Schema
{
  "target": "Paperless MCP",
  "action": "execute",
  "options": {
    "mode": "standard",
    "timeoutMs": 5000
  }
}
💡Parameters generated dynamically by Agent runtime
Agent Tool Output

Click 'Run Mock' above

to preview the raw response returned to the LLM

Env: AgentHub Virtual SandboxJSON-RPC 2.0

Decision Guide: Why & When to Use

Assess suitability before installing to save trial-and-error time

Best Suited For
  • PR review
  • Changelog generation
  • Cross-repo issue search
When NOT to Use
  • Replacing human security audit
  • Unauthorized repo access
Recommended Workflow Pairing:View Scenario →

Paperless MCP + Scenario Prompt → Complete Agent Automation

MCP hands-on: install to visible results

Follow the full lab (expected UI/output + contrast checks). After installing this item, verify with the tutorial prompts.

Open tutorial →

Related resources

Often paired with

Planning with files

v3.23.0

SkillClawHub44.6k

io.clawhub.othmanadi/planning-with-files

Persistent file-based planning for multi-step AI-agent work. Keeps task_plan.md, findings.md, and progress.md on disk; lifecycle hooks inject selected project planning context. Automatic recovery reads project planning files only. Explicit session-catchup.py --metadata reads same-project local agent session records and emits aggregate counts only; --replay may emit bounded nonce-framed excerpts. Optional gated mode can request continuation only when the host supports it and never runs commands declared in Markdown. The skill has no network upload path. Use for research or work needing 5+ tool calls.

source

ClawCall

v2.0.1

SkillClawHub53.1k

io.clawhub.clawcall-dev/clawcall-dev

Use when the user wants an AI agent to place a US phone call, call a business, handle hold or phone menus, confirm/reschedule/cancel/book/follow up/check an order, reach a real person, leave voicemail, connect the user into a live call, configure ClawCall voice/personality/profile or inbound reserved-number answering, poll received inbound calls, or link a ClawCall API key. Not for SMS, email, or international calls.

source

中文公文写作

v2.0.25

SkillClawHub9.1k

io.clawhub.gongyu0918-debug/chinese-official-writing

用于中文公文、事务性材料和新闻稿件的起草、改写、压缩、润色、审校、文种核对、去口语化、降 AI 味及 Word 格式处理,适用于机关、企事业单位、学校和新闻机构。涵盖申请、请示、报告、通知、通告、意见、决定、决议、议案、公报、命令、函、复函、批复、说明、方案、纪要、公告、公示、通报、制度、规定、办法、细则、操作规程、工作要点、总结、调研、讲话、致辞、主持词、述职、可研、审查材料、技术需求、新闻消息、编者按、新闻评论,以及采购、整改、反馈和 AI 算力等场景。

source

Keep exploring AgentHub

Most people compare similar tools or check scenario guides before installing—start here.

Listing badge: put AgentHub on your site

Copy either snippet into your project homepage, docs, or GitHub README. The badge is a hotlinked SVG — nothing to host — and it links back to this page so visitors can find the install steps.

PreviewListed on AgentHub: Paperless MCP
HTML
<a href="https://myagenthub.cn/p/io.github.pvliesdonk/paperless-mcp" title="Listed on AgentHub: Paperless MCP" target="_blank" rel="noopener">
  <img src="https://myagenthub.cn/badge/io.github.pvliesdonk/paperless-mcp?lang=en" alt="Listed on AgentHub: Paperless MCP" height="20" style="border:0"/>
</a>
Markdown (GitHub README)
[![Listed on AgentHub: Paperless MCP](https://myagenthub.cn/badge/io.github.pvliesdonk/paperless-mcp?lang=en)](https://myagenthub.cn/p/io.github.pvliesdonk/paperless-mcp)

Badges are generated on the fly from /badge/<package-id>, so name and listing changes propagate automatically. Keep the link target unchanged — it is what counts as the referral.

Unified Manifest

{
  "id": "io.github.pvliesdonk/paperless-mcp",
  "type": "mcp-server",
  "version": "3.0.0",
  "displayName": "Paperless MCP",
  "description": "Paperless-NGX over MCP: search, read, upload and tag documents; manage correspondents and types.",
  "repository": {
    "url": "https://github.com/pvliesdonk/paperless-mcp",
    "source": "github"
  },
  "homepage": "https://pvliesdonk.github.io/paperless-mcp/",
  "distribution": {
    "packages": [
      {
        "registryType": "pypi",
        "identifier": "pvliesdonk-paperless-mcp",
        "version": "3.0.0",
        "runtimeHint": "uvx",
        "transport": "stdio",
        "environmentVariables": [
          {
            "name": "PAPERLESS_MCP_KV_STORE_URL",
            "description": "Persistent-state backend URL shared by every pvl-core subsystem that needs state. `memory://` is in-process and lost on restart; `file:///path` persists on one server; `redis://`, `dynamodb://` and `mongodb://` each need their matching extra. When unset, defaults to `file:///data/state` (the volume family Docker images mount), or to `memory://` (with a warning) on a host where that directory is not usable."
          },
          {
            "name": "PAPERLESS_MCP_TOOLS_ALLOW",
            "description": "Comma-separated explicit tool names this instance exposes; every other tool is hidden from listings and cannot be invoked. Names matching no registered tool are inert. Mutually exclusive with `tools_deny`. Takes effect through `apply_tool_visibility`."
          },
          {
            "name": "PAPERLESS_MCP_TOOLS_DENY",
            "description": "Comma-separated explicit tool names hidden from this instance (absent from listings, cannot be invoked). Names matching no registered tool are inert. Mutually exclusive with `tools_allow`. Takes effect through `apply_tool_visibility`."
          },
          {
            "name": "PAPERLESS_MCP_SERVER_NAME",
            "description": "Rename this server instance; defaults to the project name."
          },
          {
            "name": "PAPERLESS_MCP_INSTANCE_DESCRIPTION",
            "description": "Concise routing context that distinguishes this deployment's material or responsibility."
          },
          {
            "name": "PAPERLESS_MCP_INSTRUCTIONS_EXTRA",
            "description": "Deployment-specific behavioral policy added to the generated MCP instructions."
          },
          {
            "name": "PAPERLESS_MCP_INSTRUCTIONS",
            "description": "Legacy: replaces all generated MCP instructions (deprecated; use _INSTANCE_DESCRIPTION for routing and _INSTRUCTIONS_EXTRA for policy)."
          },
          {
            "name": "PAPERLESS_MCP_LOG_LEVEL",
            "description": "Log level for every logger in the process, FastMCP's included (DEBUG / INFO / WARNING / ERROR / CRITICAL). The -v CLI flag overrides to DEBUG. The unprefixed FASTMCP_LOG_LEVEL still works for one major version and logs a deprecation warning."
          },
          {
            "name": "PAPERLESS_MCP_LOG_FORMAT",
            "description": "Log rendering. rich is one colour event key=value line per record, for a terminal; json is one JSON object per record, for a collector. Unset picks rich when stderr is a terminal and json everywhere else, so a container or journald gets JSON with no configuration."
          },
          {
            "name": "PAPERLESS_MCP_PAPERLESS_URL",
            "description": "Base URL of the Paperless-NGX REST API, without a trailing slash. The server refuses to start without it."
          },
          {
            "name": "PAPERLESS_MCP_API_TOKEN",
            "description": "Paperless service-account token used for outbound API requests. The server refuses to start without it.",
            "isSecret": true
          },
          {
            "name": "PAPERLESS_MCP_HTTP_TIMEOUT_SECONDS",
            "description": "Per-request HTTP timeout in seconds."
          },
          {
            "name": "PAPERLESS_MCP_HTTP_RETRIES",
            "description": "Retries for idempotent requests after network errors or 5xx responses."
          },
          {
            "name": "PAPERLESS_MCP_DEFAULT_PAGE_SIZE",
            "description": "Default page size for list tools, from 1 through 100."
          },
          {
            "name": "PAPERLESS_MCP_PAPERLESS_PUBLIC_URL",
            "description": "Public Paperless UI URL for user-visible links; defaults to PAPERLESS_URL."
          },
          {
            "name": "PAPERLESS_MCP_TRANSFER_TTL_DEFAULT_S",
            "description": "Link lifetime in seconds when the caller requests no explicit TTL."
          },
          {
            "name": "PAPERLESS_MCP_TRANSFER_TTL_MAX_S",
            "description": "Ceiling in seconds a caller-requested link TTL is clamped to."
          },
          {
            "name": "PAPERLESS_MCP_TRANSFER_GRACE_TTL_S",
            "description": "Post-success grace window in seconds: a served token's TTL shrinks to this so a stalled transfer can retry within it."
          },
          {
            "name": "PAPERLESS_MCP_TRANSFER_LEASE_S",
            "description": "Crashed-handler reclaim window in seconds for an in-flight reservation."
          },
          {
            "name": "PAPERLESS_MCP_TRANSFER_MAX_UPLOAD_BYTES",
            "description": "Maximum size in bytes of a single upload."
          }
        ]
      },
      {
        "registryType": "oci",
        "identifier": "ghcr.io/pvliesdonk/paperless-mcp:v3.0.0",
        "transport": "streamable-http",
        "environmentVariables": [
          {
            "name": "PAPERLESS_MCP_SHUTDOWN_GRACE_S",
            "description": "Seconds SIGTERM may spend draining in-flight requests before the HTTP server exits. Keep it at or below the termination grace period the orchestrator allows. `0` drops in-flight requests immediately."
          },
          {
            "name": "PAPERLESS_MCP_BASE_URL",
            "description": "Public base URL of the deployed server, for example `https://mcp.example.com`. Required for OIDC. Also the fallback source of the MCP Apps domain when `app_domain` is unset."
          },
          {
            "name": "PAPERLESS_MCP_BEARER_TOKEN",
            "description": "Single shared bearer token; enables bearer auth unless `bearer_tokens_file` is set, which takes precedence.",
            "isSecret": true
          },
          {
            "name": "PAPERLESS_MCP_OIDC_CONFIG_URL",
            "description": "OIDC discovery document URL, for example `https://auth.example.com/.well-known/openid-configuration`."
          },
          {
            "name": "PAPERLESS_MCP_OIDC_CLIENT_ID",
            "description": "OIDC client identifier registered with the provider."
          },
          {
            "name": "PAPERLESS_MCP_OIDC_CLIENT_SECRET",
            "description": "OIDC client secret registered with the provider.",
            "isSecret": true
          },
          {
            "name": "PAPERLESS_MCP_OIDC_AUDIENCE",
            "description": "Expected `aud` claim; tokens issued for another audience are rejected."
          },
          {
            "name": "PAPERLESS_MCP_OIDC_REQUIRED_SCOPES",
            "description": "Scopes a caller must present, space- or comma-separated. Defaults to `openid` in oidc-proxy mode."
          },
          {
            "name": "PAPERLESS_MCP_OIDC_ADVERTISED_SCOPES",
            "description": "Scopes advertised to MCP clients in protected-resource metadata, space- or comma-separated. Overrides the default `openid offline_access`; `oidc_required_scopes` is always added on top. Set this when the registered client is not permitted `offline_access`, or to have clients request extra claim scopes (such as `groups`) without also requiring them in every token."
          },
          {
            "name": "PAPERLESS_MCP_OIDC_JWT_SIGNING_KEY",
            "description": "Signing key for issued tokens; used in oidc-proxy mode only. When unset, the key is derived deterministically from `oidc_client_secret`, so tokens survive a restart. Rotating that secret then invalidates every issued token. Set this explicitly to decouple token validity from secret rotation. Generate with `openssl rand -hex 32`.",
            "isSecret": true
          },
          {
            "name": "PAPERLESS_MCP_OIDC_VERIFY_ACCESS_TOKEN",
            "description": "Validate the access token instead of the id token."
          },
          {
            "name": "PAPERLESS_MCP_KV_STORE_URL",
            "description": "Persistent-state backend URL shared by every pvl-core subsystem that needs state. `memory://` is in-process and lost on restart; `file:///path` persists on one server; `redis://`, `dynamodb://` and `mongodb://` each need their matching extra. When unset, defaults to `file:///data/state` (the volume family Docker images mount), or to `memory://` (with a warning) on a host where that directory is not usable."
          },
          {
            "name": "PAPERLESS_MCP_APP_DOMAIN",
            "description": "MCP Apps iframe domain, used for CSP sandboxing. Overrides the host derived from `base_url`."
          },
          {
            "name": "PAPERLESS_MCP_TOOLS_ALLOW",
            "description": "Comma-separated explicit tool names this instance exposes; every other tool is hidden from listings and cannot be invoked. Names matching no registered tool are inert. Mutually exclusive with `tools_deny`. Takes effect through `apply_tool_visibility`."
          },
          {
            "name": "PAPERLESS_MCP_TOOLS_DENY",
            "description": "Comma-separated explicit tool names hidden from this instance (absent from listings, cannot be invoked). Names matching no registered tool are inert. Mutually exclusive with `tools_allow`. Takes effect through `apply_tool_visibility`."
          },
          {
            "name": "PAPERLESS_MCP_AUTH_MODE",
            "description": "Explicit auth-mode override, accepting `remote` or `oidc-proxy` (case- and whitespace-insensitive). When unset the mode is auto-detected from which auth variables are set; the override exists because having all four OIDC variables set is ambiguous between those two modes. Other values are ignored with a warning."
          },
          {
            "name": "PAPERLESS_MCP_BEARER_TOKENS_FILE",
            "description": "Path to a TOML file mapping bearer tokens to subjects; overrides the single-token `bearer_token` mode."
          },
          {
            "name": "PAPERLESS_MCP_BEARER_DEFAULT_SUBJECT",
            "description": "Subject assigned to the single-token bearer mode; ignored when `bearer_tokens_file` is set, since mapped mode carries per-token subjects."
          },
          {
            "name": "PAPERLESS_MCP_SERVER_NAME",
            "description": "Rename this server instance; defaults to the project name."
          },
          {
            "name": "PAPERLESS_MCP_INSTANCE_DESCRIPTION",
            "description": "Concise routing context that distinguishes this deployment's material or responsibility."
          },
          {
            "name": "PAPERLESS_MCP_INSTRUCTIONS_EXTRA",
            "description": "Deployment-specific behavioral policy added to the generated MCP instructions."
          },
          {
            "name": "PAPERLESS_MCP_INSTRUCTIONS",
            "description": "Legacy: replaces all generated MCP instructions (deprecated; use _INSTANCE_DESCRIPTION for routing and _INSTRUCTIONS_EXTRA for policy)."
          },
          {
            "name": "PAPERLESS_MCP_HTTP_PATH",
            "description": "Mount path for the MCP endpoint; the health routes derive their prefix from it."
          },
          {
            "name": "PAPERLESS_MCP_HEALTH_DETAIL",
            "description": "How much the unauthenticated /health and /health/ready bodies say: status, standard (adds name, version and per-check verdicts), or full (adds redacted reasons; trusted networks only)."
          },
          {
            "name": "PUID",
            "description": "Run the server process as this UID; the container entrypoint reassigns ownership of writable paths to match."
          },
          {
            "name": "PGID",
            "description": "Run the server process as this GID; pair with PUID to match the owner of a mounted volume."
          },
          {
            "name": "PAPERLESS_MCP_LOG_LEVEL",
            "description": "Log level for every logger in the process, FastMCP's included (DEBUG / INFO / WARNING / ERROR / CRITICAL). The -v CLI flag overrides to DEBUG. The unprefixed FASTMCP_LOG_LEVEL still works for one major version and logs a deprecation warning."
          },
          {
            "name": "PAPERLESS_MCP_LOG_FORMAT",
            "description": "Log rendering. rich is one colour event key=value line per record, for a terminal; json is one JSON object per record, for a collector. Unset picks rich when stderr is a terminal and json everywhere else, so a container or journald gets JSON with no configuration."
          },
          {
            "name": "PAPERLESS_MCP_PAPERLESS_URL",
            "description": "Base URL of the Paperless-NGX REST API, without a trailing slash. The server refuses to start without it."
          },
          {
            "name": "PAPERLESS_MCP_API_TOKEN",
            "description": "Paperless service-account token used for outbound API requests. The server refuses to start without it.",
            "isSecret": true
          },
          {
            "name": "PAPERLESS_MCP_HTTP_TIMEOUT_SECONDS",
            "description": "Per-request HTTP timeout in seconds."
          },
          {
            "name": "PAPERLESS_MCP_HTTP_RETRIES",
            "description": "Retries for idempotent requests after network errors or 5xx responses."
          },
          {
            "name": "PAPERLESS_MCP_DEFAULT_PAGE_SIZE",
            "description": "Default page size for list tools, from 1 through 100."
          },
          {
            "name": "PAPERLESS_MCP_PAPERLESS_PUBLIC_URL",
            "description": "Public Paperless UI URL for user-visible links; defaults to PAPERLESS_URL."
          },
          {
            "name": "PAPERLESS_MCP_TRANSFER_TTL_DEFAULT_S",
            "description": "Link lifetime in seconds when the caller requests no explicit TTL."
          },
          {
            "name": "PAPERLESS_MCP_TRANSFER_TTL_MAX_S",
            "description": "Ceiling in seconds a caller-requested link TTL is clamped to."
          },
          {
            "name": "PAPERLESS_MCP_TRANSFER_GRACE_TTL_S",
            "description": "Post-success grace window in seconds: a served token's TTL shrinks to this so a stalled transfer can retry within it."
          },
          {
            "name": "PAPERLESS_MCP_TRANSFER_LEASE_S",
            "description": "Crashed-handler reclaim window in seconds for an in-flight reservation."
          },
          {
            "name": "PAPERLESS_MCP_TRANSFER_MAX_UPLOAD_BYTES",
            "description": "Maximum size in bytes of a single upload."
          }
        ]
      }
    ],
    "remotes": []
  },
  "dependencies": [],
  "installTargets": [
    "claude-code",
    "claude-desktop",
    "cursor",
    "vscode",
    "trae",
    "cherry-studio",
    "lingma",
    "windsurf",
    "cline",
    "workbuddy"
  ],
  "keywords": [],
  "provenance": {
    "origin": "official-mcp-registry",
    "originalId": "io.github.pvliesdonk/paperless-mcp",
    "originalUrl": "https://registry.modelcontextprotocol.io/v0.1/servers/io.github.pvliesdonk%2Fpaperless-mcp/versions/latest",
    "isOfficial": true,
    "status": "active"
  }
}