jenkins-slack-mcp
Enables triggering Jenkins builds from IDEs with Slack notifications, requiring only a one-time login.
README
jenkins-slack-mcp
MCP server to trigger Jenkins builds from any IDE with Slack DM notifications. Auto-discovers all jobs on login — no manual configuration.
Install
npm install -g jenkins-slack-mcp
Register in your IDE
Amazon Q
~/.aws/amazonq/mcp.json:
{
"mcpServers": {
"jenkins-slack": {
"command": "jenkins-slack-mcp",
"args": [],
"disabled": false
}
}
}
VS Code
.vscode/mcp.json:
{
"mcpServers": {
"jenkins-slack": { "command": "jenkins-slack-mcp" }
}
}
Claude Desktop
~/Library/Application Support/Claude/claude_desktop_config.json (macOS):
{
"mcpServers": {
"jenkins-slack": { "command": "jenkins-slack-mcp" }
}
}
Cursor
.cursor/mcp.json:
{
"mcpServers": {
"jenkins-slack": { "command": "jenkins-slack-mcp" }
}
}
Without global install
{
"mcpServers": {
"jenkins-slack": {
"command": "npx",
"args": ["-y", "jenkins-slack-mcp"]
}
}
}
Flow of Work
┌─────────────────────────────────────────────────────────┐
│ 1. login_jenkins (baseUrl only) │
│ → Opens browser to Jenkins token page │
│ → User copies API token + build trigger token │
│ │
│ 2. login_jenkins (all params) │
│ → Validates credentials │
│ → Auto-discovers ALL jobs from Jenkins │
│ → Stores encrypted at ~/.jenkins-slack-mcp/ │
│ │
│ 3. list_jobs / list_jobs filter="tms" │
│ → Shows jobs in table with status (✅ ❌ ⏸️) │
│ │
│ 4. job_details jobName="my-job" │
│ → Shows all parameters (name, type, default, │
│ choices) in table format │
│ │
│ 5. trigger_build jobName="my-job" params={...} │
│ → Triggers build with params │
│ → Sends Slack DM to you (if configured) │
│ → Posts to channel (if notifyChannel provided) │
└─────────────────────────────────────────────────────────┘
Usage
Step 1: Login to Jenkins
First time — just provide the URL, browser opens automatically:
login_jenkins baseUrl="https://jenkins.example.com"
→ Browser opens Jenkins → Copy your API token and build trigger token.
Then login with full credentials:
login_jenkins:
baseUrl: https://jenkins.example.com
user: your_username
apiToken: your_api_token
buildToken: your_build_trigger_token
→ All jobs auto-discovered!
Step 2: Browse Jobs
list_jobs # all jobs
list_jobs filter="tms" # filter by name
Output:
| # | Job Name | Status |
|---|---|---|
| 1 | build-main | ✅ Success |
| 2 | lib-packages | ✅ Success |
| 3 | job-constant | ✅ Success |
Step 3: Check Parameters
job_details jobName="tms-docker-build-new"
Output:
| Parameter | Type | Default | Choices | Description |
|---|---|---|---|---|
| BRANCH | String | main | - | Branch to build |
Step 4: Trigger Build
trigger_build jobName="tms-docker-build-new" params={"BRANCH": "feature/xyz"}
Step 5 (Optional): Setup Slack DMs
setup_slack:
botToken: xoxb-your-bot-token
userId: U0123456789
How to get your Slack User ID:
- Open Slack → Click your profile picture
- Click "Profile" → Click "..." (more)
- Click "Copy Member ID"
How to get bot token:
- Go to https://api.slack.com/apps → Your App
- OAuth & Permissions → Bot User OAuth Token (starts with
xoxb-)
After setup, every trigger_build sends you a DM automatically.
Available Tools
| Tool | Description |
|---|---|
login_jenkins |
Login + auto-discover jobs (opens browser for new users) |
setup_slack |
Configure Slack bot token + User ID for DM notifications |
status |
Check login status + job count |
list_jobs |
All jobs in table format (filterable) |
job_details |
Show parameters for a job |
trigger_build |
Trigger build + Slack DM + channel notify |
refresh_jobs |
Re-fetch jobs from Jenkins |
whoami |
Current user details |
logout |
Clear all credentials |
Security
BuildPilot follows OWASP security best practices:
Credential Storage
- All credentials (API tokens, Slack tokens) are encrypted at rest using AES-256-GCM
- Encryption key is machine-bound (derived from hostname + user identity)
- Config file stored with
600permissions (owner-read/write only) - Atomic file writes prevent data corruption and race conditions
Network Security
- SSRF Protection — Private IPs, loopback, link-local, and cloud metadata endpoints (169.254.169.254) are blocked
- TLS enforced — Only HTTP/HTTPS protocols allowed
- Request timeouts — All HTTP calls have strict timeouts (10-30s)
- Redirect protection — Auth headers stripped on redirects
Input Validation
- Build parameter names validated against allowlist (
[a-zA-Z0-9_\-.]) - Reserved parameter keys (
token,cause,json,submit) are blocked to prevent injection - Parameter values capped at 1000 characters
- Jenkins URL validated and sanitized before use
OAuth Security
- OAuth callback server binds to
127.0.0.1only (not0.0.0.0) - CSRF state parameter uses
crypto.randomBytes(32) - Timing-safe comparison for state validation
- Rate limiting on callback endpoint (max 5 attempts)
- Auto-timeout after 2 minutes
- All non-callback routes rejected with 404
Error Handling
- Error messages sanitized to prevent credential leakage
- URLs, auth headers, and tokens are redacted from error output
- Error messages truncated to 200 characters
VS Code Extension
See vscode-extension/README.md for the full-featured VS Code extension with:
- Inline search, grouped jobs, pin/unpin
- Live build summary webview
- Stop running builds from history
- Slack notifications
Credentials
Stored encrypted at ~/.jenkins-slack-mcp/config.enc (AES-256-GCM, 600 permissions, owner-only).
Author
Recommended Servers
playwright-mcp
A Model Context Protocol server that enables LLMs to interact with web pages through structured accessibility snapshots without requiring vision models or screenshots.
Audiense Insights MCP Server
Enables interaction with Audiense Insights accounts via the Model Context Protocol, facilitating the extraction and analysis of marketing insights and audience data including demographics, behavior, and influencer engagement.
Magic Component Platform (MCP)
An AI-powered tool that generates modern UI components from natural language descriptions, integrating with popular IDEs to streamline UI development workflow.
VeyraX MCP
Single MCP tool to connect all your favorite tools: Gmail, Calendar and 40 more.
graphlit-mcp-server
The Model Context Protocol (MCP) Server enables integration between MCP clients and the Graphlit service. Ingest anything from Slack to Gmail to podcast feeds, in addition to web crawling, into a Graphlit project - and then retrieve relevant contents from the MCP client.
Kagi MCP Server
An MCP server that integrates Kagi search capabilities with Claude AI, enabling Claude to perform real-time web searches when answering questions that require up-to-date information.
E2B
Using MCP to run code via e2b.
Neon Database
MCP server for interacting with Neon Management API and databases
Exa Search
A Model Context Protocol (MCP) server lets AI assistants like Claude use the Exa AI Search API for web searches. This setup allows AI models to get real-time web information in a safe and controlled way.
Qdrant Server
This repository is an example of how to create a MCP server for Qdrant, a vector search engine.