
MustDo
jp.ltngv0.1.0Updated Oct 8, 2026
Read and write your MustDo (iOS alarm To-Do) tasks in your own iCloud via CloudKit.
Overview
Lets an assistant read and write your MustDo iOS alarm To-Do tasks stored in your own iCloud via CloudKit.
- What it does
- Provides tools to list, add, update, complete, snooze, and soft-delete MustDo To-Dos, plus get_me for account info such as time zone and default alarm time. Repeating To-Dos use iOS Calendar-style rules and are returned as templates with per-day occurrences. All tools return JSON with ISO 8601 dates. A local-only sign_in tool handles Apple sign-in.
- When to use it
- Use it when you want an assistant to manage the same alarm To-Dos you see in the MustDo iPhone app, for example adding reminders, rescheduling them, or marking them done from a chat client. It is aimed at MustDo users who keep their tasks in iCloud.
- Requirements
- Either the hosted relay at ltng.jp, added as a custom connector and signed in with the same Apple ID used in the MustDo app, or a local macOS setup with Node.js 24 or newer, the MustDo app synced to iCloud at least once, and a CloudKit API Token that the developer does not currently distribute publicly. Local configuration uses MUSTDO_CK_API_TOKEN and MUSTDO_CK_ENV, with auth stored in ~/.mustdo/auth.json.
Installation
In SourceWeft
- Open MustDo in the dashboard and add it to a workspace.
- Enable the server for the chats that should use its tools.
Web executable via Streamable HTTP. Remote servers run from the web runtime once configured in a workspace.
Other MCP clients
Add this to your client's mcpServers config.
{
"mcpServers": {
"mustdo-mcp": {
"type": "http",
"url": "https://ltng.jp/api/mustdo/mcp"
}
}
}README
mustdo-mcp
MCP server for MustDo — the iOS To-Do alarm that keeps ringing until you do it.
It lets Claude (Claude Code, Claude Desktop, claude.ai, the Claude iPhone app) and any other Model Context Protocol client read and write your MustDo To-Dos.
- Your data stays in your iCloud. MustDo has no database of its own for To-Dos. They live in the
CloudKit private database of your Apple ID (container
iCloud.jp.lightning.mustdo, zoneMustDo). This server talks to Apple's CloudKit Web Services and reads/writes the same records as the iPhone app. - The developer never stores your To-Dos. Neither the local server in this repository nor the hosted relay (see below) keeps To-Do content on Lightning LLC servers.
- After a write, CloudKit pushes a silent notification to your iPhone, so the app updates right away.
Two ways to use it
A. Hosted relay — https://ltng.jp/api/mustdo/mcp
- claude.ai → Settings → Connectors → Add custom connector → URL
https://ltng.jp/api/mustdo/mcp(name it "MustDo"). - Click Connect. You will see a consent page on ltng.jp explaining what is stored, then Apple's sign-in page. Sign in with the same Apple ID you use in the MustDo app.
- Done. The same connector is available in the Claude iPhone app.
What the relay keeps, honestly:
- When you sign in, Apple issues a CloudKit sign-in token (
ckWebAuthToken). The relay stores this token encrypted with AWS KMS (AWS Tokyo region) so it can call CloudKit on your behalf on each request. - It also stores hashed OAuth access/refresh tokens for the connector itself.
- It does not store or log your To-Do content, your Apple ID email, your password, or your raw iCloud user ID.
- Disconnect: remove the connector in claude.ai and visit https://ltng.jp/api/mustdo/disconnect.
After confirming with your Apple ID, the stored token is deleted immediately. It is also deleted automatically
when Apple invalidates the sign-in (the tools then return
RECONNECT_REQUIRED; just reconnect).
Full write-up: https://ltng.jp/mustdo/mcp.
B. Run locally (stdio)
Requirements:
- macOS with Node.js 24 or newer
- The MustDo app installed and synced to iCloud at least once (the app creates the zone and the
Accountrecord) - A CloudKit API Token for the MustDo container. It is not currently distributed to the public — see "About the CloudKit API Token" below. Without it, use the hosted relay (A)
Register with Claude Code:
Or put the settings in ~/.mustdo/config.json and register without -e:
Then ask Claude to run the sign_in tool once. The server opens Apple's sign-in page in your browser,
listens on http://localhost:51234/callback, and saves the returned token to ~/.mustdo/auth.json (mode 0600).
About the CloudKit API Token
CloudKit Web Services needs two tokens on every request:
The API Token is container-wide and cannot be created by end users. Lightning LLC does not currently distribute it publicly, so running this server locally is not offered to general users — use the hosted relay (A). The code is published so that you can read exactly what the MCP server does with your data.
For reference, the token for the production environment has its Sign-in Callback set to
https://ltng.jp/api/mustdo/oauth/local-callback, which simply redirects back to http://localhost:51234/callback
without storing or logging anything.
Configuration
Environment variables win over ~/.mustdo/config.json.
auth.json is per environment; switching MUSTDO_CK_ENV requires another sign_in.
Apple expires the session after a while (CloudKit returns HTTP 421); tools then return NOT_SIGNED_IN and you run sign_in again.
Tools
All tools return JSON. Dates in output are ISO 8601 (UTC). Dates in input may be:
YYYY-MM-DD— that day at the account's default time (see below)YYYY-MM-DDTHH:mm— wall-clock time in the account's time zone- Full ISO 8601 with offset
Default time and omitted due
Each account has a default alarm time (Account.defaultTime, HH:mm, set in the app's settings; 09:00 if unset).
add_todowith nodue→ tomorrow (in the account's time zone) at the default time. Month/year boundaries and DST transitions follow the wall clock.due: "2026-10-10"→ that day at the default time.get_mereturnsdefaultTimeanddefaultDueNextso a client can tell the user when the alarm will ring.
Examples:
Repeat rules
Same vocabulary as the iOS Calendar app. Used as input to add_todo / update_todo and returned by list_todos.
Omitted fields take defaults (interval 1, weekdays [], monthly.mode dayOfMonth, end.kind never).
Ranges: interval 1–99, ordinal 1–5 or -1, weekday 1–7, count 1–999. Anything else → INVALID_ARGUMENT.
The legacy shape { "kind", "weekdays", "until" } is still accepted.
Expansion happens in the app, not here. list_todos returns the template plus occurrences
(per-day done / skipped / snooze). Range filtering only drops templates that definitely cannot
fire in range (first occurrence after the range, until before the range, weekly with no matching weekday).
Errors
Failures come back with isError: true and a body of { "code": "...", "message": "...", "details"?: {...} }.
Security model
- Access to your To-Dos is gated by your own Apple ID session (
ckWebAuthToken), issued by Apple's sign-in page. No one — including the developer — can read your private database without it. - The API Token only identifies the container and fixes where Apple may redirect after sign-in. Apple positions it as a client-side token (it is normally embedded in CloudKit JS web pages). By itself it grants no access to any user's private data.
- Locally, the session is stored in
~/.mustdo/auth.json(0600), logs go to stderr as JSON and never include tokens, and the sign-in listener binds to127.0.0.1/::1only. - On the relay, the session is encrypted with AWS KMS per user (envelope encryption with encryption context), OAuth tokens are stored only as peppered SHA-256 hashes, PKCE S256 is mandatory, refresh tokens rotate with reuse detection, and To-Do content is never written to storage or logs.
- Writes use CloudKit
recordChangeTag(optimistic locking) and retry once on conflict; deletes are soft. - Anything you find: see SECURITY.md.
Development
Layout:
dist/core.js (package exports) is the shared core consumed by the hosted relay: everything
except auth.ts, config.ts, index.ts and server.ts. Keep it free of anything that touches the
local file system or a browser.
License
MIT — Copyright (c) 2026 Lightning LLC. See LICENSE.
MustDo is a product of Lightning LLC. Apple, iCloud and CloudKit are trademarks of Apple Inc.
Source: README.md at commit a2a0e0a
Tools
0Version history
1- v0.1.0LatestOct 8, 2026
