Rank

io.github.LAHutchins91v1.0.0更新于 Oct 5, 2026

Rank by Ouroboros: Google Search Console insights for AI assistants, over MCP.

已验证Streamable HTTP可网页运行Business & CommerceData & AnalyticsWeb Search & Scraping

概览

AI 生成的概览

让助手查询 Google Search Console 数据(媒体资源、查询、页面、趋势和网址检查),用于 SEO 分析。

功能
Rank by Ouroboros 把 Google Search Console 数据提供给 MCP 客户端。工具包括 list_properties、top_queries、top_pages、performance_trends、compare_periods、quick_wins、dropped_pages、inspect_url 和 account_status。点击、展示、CTR 和平均排名等指标直接来自 Search Console API;服务器不估算流量,也不补全 API 缺失的日期。若未指定日期,则使用截至三个 UTC 日前的 28 天窗口。
适用场景
适合希望在 ChatGPT、Claude、Gemini、Grok 或 Cursor 等 MCP 客户端中查看 Search Console 数据的站长、博主、小企业和 SEO 自由职业者。适用于查询热门查询词和页面、对比时间段、发现高展示低 CTR 机会、查看排名下降页面以及网址检查状态。
运行要求
可使用远程 Streamable HTTP 端点,或在本地运行(Node.js,npm install,npm run dev;默认端口 44721)。连接 Google 需要 Google Cloud OAuth Web 客户端及 GOOGLE_CLIENT_ID、GOOGLE_CLIENT_SECRET、webmasters.readonly 权限范围和 TOKEN_ENCRYPTION_KEY。存储需要 STORAGE_BACKEND(memory、file、blob 或 postgres)以及对应的 STORAGE_FILE、STORAGE_BLOB_PATH、BLOB_READ_WRITE_TOKEN 或 DATABASE_URL。计费需要 STRIPE_SECRET_KEY、STRIPE_PRICE_MONTHLY、STRIPE_PRICE_YEARLY 和 STRIPE_WEBHOOK_SECRET。
安装前请注意
它会索取 Google OAuth 凭据和刷新令牌,并用 TOKEN_ENCRYPTION_KEY 加密;更换该密钥会导致无法读取已有令牌,必须重新连接 Google。它还处理 Stripe 密钥和价格 ID,14 天试用期结束后转为付费 Pro 订阅,金额只在 Stripe Checkout 显示。BLOB_READ_WRITE_TOKEN 不应提交到代码库。RANK_TEST_HOOKS=1 可绕过 Google 登录,生产环境会拒绝启动。

安装

在 SourceWeft 中

  1. 打开 控制台中的 Rank,将其添加到工作区。
  2. 为需要使用其工具的对话启用该服务。

Web executable,通过 Streamable HTTP。 远程服务在工作区中配置后即可从网页运行时运行。

其他 MCP 客户端

把它添加到你客户端的 mcpServers 配置中。

{
  "mcpServers": {
    "rank": {
      "type": "http",
      "url": "https://rank-mcp.vercel.app/mcp"
    }
  }
}

README

Rank by Ouroboros

Rank by Ouroboros answers SEO questions from the Google Search Console account you connect. It is for site owners, bloggers, small businesses, and SEO freelancers who want those numbers inside ChatGPT, Claude, Gemini, Grok, Cursor, or any other MCP client that speaks Streamable HTTP and OAuth.

The assistant can list verified properties, read top queries and pages, follow clicks, impressions, CTR, and average position over time, compare two periods, find queries with high impressions and low CTR, see pages that dropped, and check URL Inspection status. Every metric comes from the Search Console API response. Rank does not estimate traffic or fill in days the API left out. CTR stays the fraction Search Console returned (0.02 is 2%).

A 14-day trial starts when you connect Google. After that, Pro is a Stripe subscription. The amount is shown at Stripe Checkout, not in this README or the product.

Connect an assistant

The MCP address is https://YOUR_HOST/mcp after deploy, or http://127.0.0.1:44721/mcp when you run it locally. Choose OAuth and leave the client id and secret empty. Rank supports dynamic client registration and PKCE.

Cursor, in ~/.cursor/mcp.json:

json
{  "mcpServers": {    "rank": {      "url": "http://127.0.0.1:44721/mcp"    }  }}

Claude Code:

bash
claude mcp add --transport http rank http://127.0.0.1:44721/mcp

Use the same URL for ChatGPT, Claude, Gemini, and Grok. The in-app connect page repeats these steps for the host in APP_BASE_URL.

Tools

  • list_properties — verified Search Console properties
  • top_queries — queries for a date range
  • top_pages — pages for a date range
  • performance_trends — daily clicks, impressions, CTR, and position
  • compare_periods — totals for two ranges, plus differences labeled as derived from those totals
  • quick_wins — queries at or above an impression threshold and at or below a CTR threshold
  • dropped_pages — pages whose position worsened, whose clicks fell, or that disappeared from the current response
  • inspect_url — URL Inspection API result
  • account_status — whether Google is connected and whether the trial or Pro subscription is active

If you omit dates, Rank uses a 28-day window ending three UTC days ago and says so in the result. Pass startDate and endDate (YYYY-MM-DD) to choose the window.

Google Cloud OAuth client

Create an OAuth client of type Web application. Rank reads:

  • GOOGLE_CLIENT_ID
  • GOOGLE_CLIENT_SECRET

Authorized redirect URI, exactly, with no trailing slash on the origin:

text
${APP_BASE_URL}/google/callback

Locally, with the default APP_BASE_URL, that is:

text
http://127.0.0.1:44721/google/callback

Add these scopes on the OAuth consent screen:

  • openid
  • https://www.googleapis.com/auth/userinfo.email
  • https://www.googleapis.com/auth/webmasters.readonly

webmasters.readonly is the Search Console read-only scope. Rank requests offline access so Google returns a refresh token. The refresh token is encrypted before it is stored. TOKEN_ENCRYPTION_KEY is the key (a long random string). If the key changes, existing tokens cannot be read and the account has to connect Google again.

If the Google console asks for an authorized JavaScript origin, use the origin of APP_BASE_URL (http://127.0.0.1:44721 locally). The redirect URI above is the value that must match.

Storage

Trial state, Stripe customer ids, MCP OAuth clients and tokens, pending Google sign-in, and the encrypted Google refresh token share one storage interface. Set STORAGE_BACKEND:

BackendWhenWhat it uses
memorylocal experiments and testsdata disappears when the process stops
filea single long-running server or Docker volumeSTORAGE_FILE (default ./data/rank-store.json)
blobVercelone private Blob at STORAGE_BLOB_PATH (default rank/store.json)
postgresa Postgres database you already runDATABASE_URL

Postgres uses one table, created on first use if it is missing:

sql
CREATE TABLE IF NOT EXISTS rank_kv (  collection text NOT NULL,  id text NOT NULL,  document jsonb NOT NULL,  PRIMARY KEY (collection, id));

There is no second schema. Memory and file storage reset on Vercel, so production uses the Blob backend. The Blob document uses the same layout as the file store: collections of JSON records. OAuth authorization codes and pending Google sign-in state are records in that document, so a callback can land on a different serverless instance. Each write drops expired auth codes, pending sign-in sessions, access tokens, and refresh tokens. BLOB_READ_WRITE_TOKEN is injected when the Vercel Blob store is connected. Do not commit it.

Billing

Set these from the Stripe account Lawrence already uses. Do not create products in this repo. The price ids are not dollar amounts.

  • STRIPE_SECRET_KEY
  • STRIPE_PRICE_MONTHLY
  • STRIPE_PRICE_YEARLY
  • STRIPE_WEBHOOK_SECRET

Checkout is POST /billing/checkout with { "plan": "monthly" } or { "plan": "yearly" }. The webhook is POST /billing/webhook. GET /health includes billingConfigured: true only when the secret key and both price ids are set.

The local trial is 14 days from the first Google connection. Checkout sends Stripe the whole days still left in that trial, when any remain, so the first charge waits until the trial is over.

Run locally

bash
npm installcp .env.example .env# fill Google, encryption, and Stripe values in .envnpm run dev

The server listens on PORT (default 44721).

bash
npm testnpm run typechecknpm start

npm start runs the compiled server. Docker builds the same command (node dist/src/server.js) and expects logo.jpg at the image root.

Deploy

Vercel: set APP_BASE_URL to https://rank-mcp.vercel.app, set STORAGE_BACKEND=blob, and connect a Blob store so Vercel injects BLOB_READ_WRITE_TOKEN. vercel.json sends every path to the Node function and bundles logo.jpg into that function. /logo.jpg and the app routes are served by the function. /package.json is not a static file. The remote in server.json is https://rank-mcp.vercel.app/mcp.

The registry name is io.github.LAHutchins91/rank. The icon is https://rank-mcp.vercel.app/logo.jpg.

Environment variables

VariableRequired for
APP_BASE_URLpublic origin; determines the Google redirect URI
PORTlisten port, default 44721
GOOGLE_CLIENT_IDGoogle sign-in and Search Console
GOOGLE_CLIENT_SECRETGoogle token exchange
TOKEN_ENCRYPTION_KEYencrypting refresh tokens and signing the browser session
STORAGE_BACKENDmemory, file, blob, or postgres
STORAGE_FILEfile backend path
STORAGE_BLOB_PATHblob pathname, default rank/store.json
BLOB_READ_WRITE_TOKENVercel Blob read-write token, injected on Vercel
DATABASE_URLpostgres backend
STRIPE_SECRET_KEYCheckout and the billing portal
STRIPE_PRICE_MONTHLYmonthly Checkout price id
STRIPE_PRICE_YEARLYyearly Checkout price id
STRIPE_WEBHOOK_SECRETStripe webhook signatures

RANK_TEST_HOOKS=1 lets tests complete MCP login without Google. The process refuses to start when that is set and NODE_ENV=production.

License

MIT. Copyright (c) 2026 Lawrence Hutchins.

来源:README.md,提交 15ee2ff

工具

0
工具元数据尚未被收录。

版本历史

1
  1. v1.0.0最新Oct 5, 2026