
Kaption WhatsApp (Cloud)
io.github.Kaption-AIv1.0.0更新于 Oct 5, 2026
Use WhatsApp from AI apps through the Kaption extension. OAuth 2.1 relay that cannot read messages.
概览
让 AI 助手通过浏览器扩展读取和管理 WhatsApp 会话、联系人、标签、提醒和定时消息。
- 功能
- 这是一个云端中继,把 MCP 工具调用转发给 Kaption 浏览器扩展,由扩展在 WhatsApp Web 标签页中实际执行。十六个公开工具涵盖:查询会话、联系人、消息和转写;生成会话摘要;管理 WhatsApp Business 标签和联系人备注;下载媒体;归档、置顶、静音、标记已读;以及管理提醒、定时消息、聊天列表、联系人、群组、联系人导出和活跃度分析。中继本身不执行这些工具,并声明无法读取消息内容。
- 适用场景
- 当助手需要操作现有 WhatsApp 账号时适合添加,例如搜索和总结聊天、整理标签与列表、导出联系人、安排定时消息,且不想在本地运行桥接进程。使用前必须安装并连接该浏览器扩展,因此更适合已经在使用 Kaption 的用户,而不是通用的 WhatsApp 集成方案。
- 运行要求
- 远程端点 mcp.kaptionai.com,支持 Streamable HTTP 或 SSE,无需本地运行时或安装包。需要 OAuth 2.1 授权,在授权步骤用 WhatsApp 一次性验证码登录,并在 WhatsApp Web 标签页中安装并连接 Kaption 浏览器扩展。客户端未声明任何环境变量或请求头。
安装
在 SourceWeft 中
- 打开 控制台中的 Kaption WhatsApp (Cloud),将其添加到工作区。
- 为需要使用其工具的对话启用该服务。
Web executable,通过 Streamable HTTP。 远程服务在工作区中配置后即可从网页运行时运行。
其他 MCP 客户端
把它添加到你客户端的 mcpServers 配置中。
{
"mcpServers": {
"mcp-extension-remote": {
"type": "http",
"url": "https://mcp.kaptionai.com/mcp"
}
}
}README
kaption-mcp-remote
Cloud MCP relay for WhatsApp — lets AI assistants (Claude, ChatGPT, Cursor, etc.) interact with your WhatsApp conversations through the Model Context Protocol.
Setup guide: kaptionai.com/mcp — connect WhatsApp to Claude, ChatGPT or Cursor.
Live at: mcp.kaptionai.com (canonical) and mcp-ext.kaptionai.com (backward-compatible alias for existing connections)
The relay cannot read your messages. It forwards MCP tool calls between the AI client and the Kaption browser extension, which processes everything locally in your browser. Its source code is public (BUSL-1.1), so you can verify it yourself.
Architecture
Durable Objects
Request Flow
- AI client discovers the MCP server via
/.well-known/oauth-authorization-server - Client registers dynamically via
POST /register(RFC 7591) - User authenticates with WhatsApp OTP at
/authorize - Client exchanges code for token at
/token - Client sends tool calls via SSE (
/sse) or Streamable HTTP (/mcp) - RelayMCP DO receives the call, routes to RelayRoom for the accountRef
- RelayRoom forwards JSON-RPC to the extension over WebSocket
- Extension executes in WhatsApp Web context, returns result
- Result flows back: RelayRoom → RelayMCP → AI client
Routing Table
MCP Tools
16 public tools are forwarded to the extension (the relay does not execute them):
get_api_info is local-only and is deliberately excluded from the cloud
surface because it returns private REST connection credentials.
Deployment Security
Every deployment is cryptographically signed and recorded in a tamper-evident transparency chain. See SECURITY.md for full details.
Pipeline
Daily heartbeat redeploys (6am UTC) ensure the chain stays active even without code changes.
Deploys are gated — do NOT run wrangler deploy locally
All production deploys go through GitHub Actions. Multiple layers enforce this:
wrangler.jsoncis gitignored;scripts/build-config.mjsrenders it fromwrangler.template.jsoncand refuses to run unlessGITHUB_ACTIONS=true+GITHUB_RUN_IDare set (orKAPTIONAI_LOCAL_DEV=1for dev).npm run predeployaborts unless those same CI env vars are present.mainis branch-protected: requires a reviewed PR + greentest,deploy, andverifychecks.- CODEOWNERS routes every PR through @kshmir.
To ship a change: open a PR → review + CI green → merge to main → Actions builds, signs (Sigstore), deploys, and appends to the transparency chain. npx wrangler deploy from a laptop will fail at step 1 because there is no wrangler.jsonc to deploy.
Verify a Deployment
API Endpoints
Transparency API (public, no auth)
MCP (OAuth-protected)
Development
Project Structure
Environment Variables
Vars (wrangler.jsonc)
Secrets (wrangler secret put)
The three OPENAI_* values are also configured as GitHub Actions repository
secrets. Add all three together, then run the manual Test, Build & Deploy
workflow. CI writes them to an ephemeral mode-0600 file and passes that file
to wrangler deploy --secrets-file, so the review configuration ships in the
same signed, attested Worker version as the code. The workflow fails closed if
only part of the three-value set is present and deletes the temporary file
immediately after deployment. Existing Worker secrets not listed in that file
are preserved.
Related Projects
- Kaption Extension — Chrome/Edge/Firefox browser extension (the other side of the relay)
- @kaptionai/mcp-extension — Local MCP bridge (runs on your machine, no cloud relay)
License
来源:README.md,提交 ba9ed57
工具
0版本历史
1- v1.0.0最新Oct 5, 2026
