
Kaption WhatsApp (Cloud)
io.github.Kaption-AIv1.0.0更新於 Oct 5, 2026
Use WhatsApp from AI apps through the Kaption extension. OAuth 2.1 relay that cannot read messages.
概覽
讓 AI 助理透過瀏覽器擴充功能讀取與管理 WhatsApp 對話、聯絡人、標籤、提醒和排程訊息。
- 功能
- 這是一個雲端中繼,把 MCP 工具呼叫轉送給 Kaption 瀏覽器擴充功能,由擴充功能在 WhatsApp Web 分頁中實際執行。十六個公開工具涵蓋:查詢對話、聯絡人、訊息與轉錄內容;產生對話摘要;管理 WhatsApp Business 標籤與聯絡人備註;下載媒體;封存、釘選、靜音、標示已讀;以及管理提醒、排程訊息、聊天清單、聯絡人、群組、聯絡人匯出與活動分析。中繼本身不執行這些工具,並聲明無法讀取訊息內容。
- 適用情境
- 當助理需要操作既有 WhatsApp 帳號時適合加入,例如搜尋與摘要聊天、整理標籤與清單、匯出聯絡人、安排排程訊息,且不想在本機執行橋接程序。使用前必須安裝並連線該瀏覽器擴充功能,因此較適合已經在使用 Kaption 的使用者,而非通用的 WhatsApp 整合方案。
- 執行需求
- 遠端端點 mcp.kaptionai.com,支援 Streamable HTTP 或 SSE,不需要本機執行環境或安裝套件。需要 OAuth 2.1 授權,在授權步驟以 WhatsApp 一次性驗證碼登入,並在 WhatsApp Web 分頁中安裝並連線 Kaption 瀏覽器擴充功能。用戶端未宣告任何環境變數或標頭。
安裝
在 SourceWeft 中
- 開啟 儀表板中的 Kaption WhatsApp (Cloud),將其新增到工作區。
- 為需要使用其工具的對話啟用該服務。
Web executable,透過 Streamable HTTP。 遠端服務在工作區中設定後即可從網頁執行環境執行。
其他 MCP 客戶端
把它新增到你客戶端的 mcpServers 設定中。
{
"mcpServers": {
"mcp-extension-remote": {
"type": "http",
"url": "https://mcp.kaptionai.com/mcp"
}
}
}README
kaption-mcp-remote
Cloud MCP relay for WhatsApp — lets AI assistants (Claude, ChatGPT, Cursor, etc.) interact with your WhatsApp conversations through the Model Context Protocol.
Setup guide: kaptionai.com/mcp — connect WhatsApp to Claude, ChatGPT or Cursor.
Live at: mcp.kaptionai.com (canonical) and mcp-ext.kaptionai.com (backward-compatible alias for existing connections)
The relay cannot read your messages. It forwards MCP tool calls between the AI client and the Kaption browser extension, which processes everything locally in your browser. Its source code is public (BUSL-1.1), so you can verify it yourself.
Architecture
Durable Objects
Request Flow
- AI client discovers the MCP server via
/.well-known/oauth-authorization-server - Client registers dynamically via
POST /register(RFC 7591) - User authenticates with WhatsApp OTP at
/authorize - Client exchanges code for token at
/token - Client sends tool calls via SSE (
/sse) or Streamable HTTP (/mcp) - RelayMCP DO receives the call, routes to RelayRoom for the accountRef
- RelayRoom forwards JSON-RPC to the extension over WebSocket
- Extension executes in WhatsApp Web context, returns result
- Result flows back: RelayRoom → RelayMCP → AI client
Routing Table
MCP Tools
16 public tools are forwarded to the extension (the relay does not execute them):
get_api_info is local-only and is deliberately excluded from the cloud
surface because it returns private REST connection credentials.
Deployment Security
Every deployment is cryptographically signed and recorded in a tamper-evident transparency chain. See SECURITY.md for full details.
Pipeline
Daily heartbeat redeploys (6am UTC) ensure the chain stays active even without code changes.
Deploys are gated — do NOT run wrangler deploy locally
All production deploys go through GitHub Actions. Multiple layers enforce this:
wrangler.jsoncis gitignored;scripts/build-config.mjsrenders it fromwrangler.template.jsoncand refuses to run unlessGITHUB_ACTIONS=true+GITHUB_RUN_IDare set (orKAPTIONAI_LOCAL_DEV=1for dev).npm run predeployaborts unless those same CI env vars are present.mainis branch-protected: requires a reviewed PR + greentest,deploy, andverifychecks.- CODEOWNERS routes every PR through @kshmir.
To ship a change: open a PR → review + CI green → merge to main → Actions builds, signs (Sigstore), deploys, and appends to the transparency chain. npx wrangler deploy from a laptop will fail at step 1 because there is no wrangler.jsonc to deploy.
Verify a Deployment
API Endpoints
Transparency API (public, no auth)
MCP (OAuth-protected)
Development
Project Structure
Environment Variables
Vars (wrangler.jsonc)
Secrets (wrangler secret put)
The three OPENAI_* values are also configured as GitHub Actions repository
secrets. Add all three together, then run the manual Test, Build & Deploy
workflow. CI writes them to an ephemeral mode-0600 file and passes that file
to wrangler deploy --secrets-file, so the review configuration ships in the
same signed, attested Worker version as the code. The workflow fails closed if
only part of the three-value set is present and deletes the temporary file
immediately after deployment. Existing Worker secrets not listed in that file
are preserved.
Related Projects
- Kaption Extension — Chrome/Edge/Firefox browser extension (the other side of the relay)
- @kaptionai/mcp-extension — Local MCP bridge (runs on your machine, no cloud relay)
License
來源:README.md,提交 ba9ed57
工具
0版本歷史
1- v1.0.0最新Oct 5, 2026
