ChatGPT Windows Portal MCP Server
A Windows MCP server that gives ChatGPT permission-controlled tools for troubleshooting software, working with files, running diagnostics, and operating the visible desktop.
README
ChatGPT Windows Portal
No more troubleshooting. Tell ChatGPT to find and fix the issue, then walk away.
Portal investigates the problem, performs permission-controlled actions, and verifies the result.
A Windows MCP server that gives ChatGPT permission-controlled tools for troubleshooting software, working with files, running diagnostics, and operating the visible desktop.
The installer builds an isolated Python environment, installs the Portal's dependencies, adds optional OCR support, and creates a desktop shortcut. The recommended connection uses OpenAI Secure MCP Tunnel, so the MCP server stays on 127.0.0.1 and is not exposed directly to the public internet.
[!CAUTION] This is a powerful remote-control tool. It can run commands, write files, launch applications, and control the mouse and keyboard. Use it only on a computer you own or administer. Start with ChatGPT's Always ask permission level and never publish API keys, tunnel configuration, or screenshots.
Ask for outcomes, including complex ones
Portal is more than a collection of one-step commands. It lets ChatGPT combine observation, reasoning, computer control, and verification to carry out complete multi-step requests on an authorized Windows PC.
You can describe the result you want in ordinary language. ChatGPT can inspect the current state, form a plan, use several Portal tools in sequence or run independent jobs concurrently, adjust when the first attempt does not work, and verify the finished result. For example, it can:
- diagnose a freeze using processes, temperatures, storage health, drivers, services, and Windows event logs;
- compare large media libraries across drives, identify true duplicates, preserve the preferred copies, and validate the result;
- configure applications, startup behavior, Windows networking, firewall rules, VPN split tunneling, and local services;
- inventory hardware and drivers, install appropriate signed updates from Windows Update or the hardware manufacturer, restart when required, and verify the installed versions;
- operate visible desktop applications when command-line or configuration-file access is not enough;
- authenticate to equipment the PC can reach, such as a router or media device, inspect its administration interface, and make specifically approved changes;
- install or repair software, edit configuration files safely, restart only the necessary components, and test that the repair worked; and
- monitor long-running work with multiple persistent background jobs and separate output logs.
In practical terms, anything the connected Windows account can do through its installed applications, files, command line, desktop, and reachable network services is a candidate for automation. Portal does not bypass Windows permissions, application authentication, network boundaries, ChatGPT approvals, or user confirmation. Those boundaries remain in control.
If a capability is missing, add it
Portal is intentionally extensible. If a request needs an operation that the current 63 tools do not expose cleanly, a developer can add another Python function decorated with @mcp.tool(), give it narrow validation and confirmation requirements, document it, run the self-check, and refresh the ChatGPT connector. ChatGPT can also help design, implement, test, and document that new tool.
The tool catalog is therefore a strong starting point, not a permanent ceiling on what the Portal can do.
One Portal instead of many one-purpose utilities
Traditional maintenance suites and utility collections present a fixed set of buttons: clean files, manage startup entries, inspect processes, find duplicates, check disks, read logs, calculate hashes, repair a setting, update a driver, or launch a script. Portal can make many of those separate utilities unnecessary because ChatGPT can combine Windows-native capabilities and official vendor tools around the actual problem instead of forcing the problem into a predefined feature.
That includes much of the everyday work associated with products such as Glary Utilities and with standalone duplicate finders, startup managers, disk-space analyzers, process viewers, event-log readers, checksum tools, configuration editors, driver-updater interfaces, and automation launchers. Portal can inspect the evidence, explain the proposed change, create a backup where appropriate, perform the approved work, and then verify that it succeeded.
Portal can also replace general-purpose driver-updater software. It can identify the actual device and installed driver, obtain an appropriate signed package from Windows Update or the hardware manufacturer, install it with the vendor-supported method, restart when required, and confirm the resulting version and device status. This avoids depending on an opaque third-party driver database.
Portal is not a claim that every specialized product is obsolete. Dedicated antivirus engines, forensic data-recovery systems, hardware-vendor firmware tools, and other specialist products still provide capabilities that should not be imitated casually. The advantage is that users no longer need a different general-purpose utility for every routine diagnostic, maintenance, configuration, and automation task.
What it includes
- 63 MCP tools for system diagnostics, files, processes, Python, networking, screenshots, OCR, Windows UI Automation, mouse/keyboard control, and application launching.
- Persistent concurrent background jobs with per-job process tracking, timeouts, status, and separate output logs.
- Local-only defaults:
127.0.0.1:8000/mcpwith DNS-rebinding protection. - A double-click Windows installer and desktop shortcut.
- A checksum-verified downloader for the official OpenAI
tunnel-clientWindows release. - Secure key handling: the runtime API key is entered into a hidden prompt and is not saved by this project.
- Self-checks and Windows CI validation.
- No model files, cloud API usage, subscription, or GPU is required by the Portal itself.
Requirements
- Windows 10 or Windows 11.
- Internet access during installation.
wingetfor fully automatic Python and optional Tesseract installation. Ifwingetis unavailable, install Python 3.11 or newer manually first.- A ChatGPT account with Developer mode available.
- For the recommended private connection: an OpenAI Platform organization with Secure MCP Tunnel access, a tunnel ID, and a runtime API key with Tunnels Read + Use.
Quick start
1. Download
Open this repository's green Code button, choose Download ZIP, and extract it to a permanent folder such as:
C:\ChatGPT-Windows-Portal
You can also clone it with Git:
git clone https://github.com/Rdgenoyahoo/ChatGPT-Windows-Portal.git
cd ChatGPT-Windows-Portal
2. Install
Double-click:
Install-Portal.bat
The installer:
- Finds Python 3.11+ or installs Python 3.12 with
winget. - Creates
.venvinside the project folder. - Installs the pinned Python dependencies.
- Installs Tesseract OCR when possible.
- runs the self-check.
- creates a ChatGPT Windows Portal desktop shortcut.
To skip OCR from PowerShell:
powershell -ExecutionPolicy Bypass -File .\scripts\Setup-Portal.ps1 -SkipTesseract
3. Test the local Portal
Double-click Start-Portal.bat. A terminal should show:
Local MCP URL: http://127.0.0.1:8000/mcp
Keep that window open. In another PowerShell window, run:
.\scripts\Test-Portal.ps1
4. Configure OpenAI Secure MCP Tunnel
- Open OpenAI Platform tunnel settings and create a tunnel associated with the ChatGPT workspace that will use it.
- Create a runtime API key in organization API keys. The key's principal needs Tunnels Read + Use.
- Double-click
Configure-Secure-Tunnel.batand paste the tunnel ID when requested.
That script downloads the latest official Windows tunnel-client from openai/tunnel-client, verifies it against the release's SHA-256 checksum, and stores only the non-secret tunnel ID and local MCP address. It does not save the runtime API key.
5. Start the Portal and tunnel
Double-click:
Start-Portal-and-Tunnel.bat
Two terminals are used:
- the Portal server at
127.0.0.1:8000; - the Secure MCP Tunnel client, which asks for the runtime API key with hidden input.
Keep both terminals open. Tunnel health is available locally at http://127.0.0.1:8080/ui.
6. Add it to ChatGPT
- In ChatGPT, open Settings → Security and login and enable Developer mode.
- Open Settings → Plugins, or go to chatgpt.com/plugins.
- Select the plus button to create a developer-mode app.
- Name it
Windows Portaland describe it as a private MCP for Windows diagnostics, files, and desktop control. - Under Connection, choose Tunnel, then select your tunnel or paste its tunnel ID.
- After ChatGPT displays the tool list, create the app.
- Set its permission level to Always ask while testing.
See the detailed ChatGPT connection guide for testing prompts, refreshing tools, and account/workspace troubleshooting.
Example prompts
Start with read-only requests:
Use Windows Portal to show system and disk status.List the top-level files in C:\AI without changing anything.Show which Python executable and packages this program is using.Capture the desktop and tell me which application windows are open.Run two read-only diagnostics as background jobs and show each status and output separately.
Then approve changes deliberately:
Create a backup and update this configuration file.Launch the application from this exact path.Bring the named window forward and click its Save button.
Mutating tools use explicit confirmation strings such as WRITE_FILE, RUN_MUTATING_COMMAND, START_MUTATING_JOB, STOP_JOB, CONTROL_DESKTOP, and LAUNCH_PROGRAM. These are safety interlocks for normal use; transport security and ChatGPT permissions remain essential.
Tool groups
| Group | Examples | Changes the PC? |
|---|---|---|
| Status | system, disks, ports, processes, environment | No |
| Files | list, inspect, read, tail, find, search | No |
| File changes | write and append with optional backup | Yes |
| Commands | PowerShell, cmd, Python, pip | Sometimes |
| Background jobs | start, list, monitor, read output, stop, and delete records | Sometimes |
| Desktop vision | screenshot, window capture, OCR, image/text search | No |
| Desktop control | mouse, keyboard, UI Automation, window management | Yes |
| Programs | launch executable or Start-menu app | Yes |
The complete categorized list is in docs/TOOLS.md.
Configuration
Setup copies config/portal.env.example.ps1 to the ignored file config/portal.env.ps1.
| Variable | Default | Purpose |
|---|---|---|
PORTAL_HOME |
repository folder | Default command working directory |
PORTAL_BIND_HOST |
127.0.0.1 |
MCP listener address |
PORTAL_PORT |
8000 |
MCP listener port |
PORTAL_SCREENSHOT_DIR |
screenshots |
Saved screenshots |
PORTAL_JOB_DIR |
jobs |
Persistent job metadata and output logs |
PORTAL_TESSERACT_PATH |
standard Program Files path | OCR executable |
PORTAL_PUBLIC_HOSTNAME |
blank | Optional hostname for an intentionally secured reverse proxy |
Keep PORTAL_BIND_HOST=127.0.0.1 with Secure MCP Tunnel. Do not set it to 0.0.0.0 unless you understand and control the network boundary.
Updating
If installed with Git:
git pull
.\Install-Portal.bat
The installer reuses the virtual environment, updates the dependencies to the pinned versions, preserves local configuration, and reruns the self-check.
If installed from a ZIP, extract the new version to a fresh folder, then copy only your ignored config\portal.env.ps1 and config\secure-tunnel.env.ps1 files if you want to retain those settings.
Troubleshooting and security
Project status
This is an independent community project, not an official OpenAI product. OpenAI, ChatGPT, MCP, Windows, and Tesseract are trademarks or projects of their respective owners.
License
推荐服务器
Baidu Map
百度地图核心API现已全面兼容MCP协议,是国内首家兼容MCP协议的地图服务商。
Playwright MCP Server
一个模型上下文协议服务器,它使大型语言模型能够通过结构化的可访问性快照与网页进行交互,而无需视觉模型或屏幕截图。
Magic Component Platform (MCP)
一个由人工智能驱动的工具,可以从自然语言描述生成现代化的用户界面组件,并与流行的集成开发环境(IDE)集成,从而简化用户界面开发流程。
Audiense Insights MCP Server
通过模型上下文协议启用与 Audiense Insights 账户的交互,从而促进营销洞察和受众数据的提取和分析,包括人口统计信息、行为和影响者互动。
VeyraX
一个单一的 MCP 工具,连接你所有喜爱的工具:Gmail、日历以及其他 40 多个工具。
graphlit-mcp-server
模型上下文协议 (MCP) 服务器实现了 MCP 客户端与 Graphlit 服务之间的集成。 除了网络爬取之外,还可以将任何内容(从 Slack 到 Gmail 再到播客订阅源)导入到 Graphlit 项目中,然后从 MCP 客户端检索相关内容。
Kagi MCP Server
一个 MCP 服务器,集成了 Kagi 搜索功能和 Claude AI,使 Claude 能够在回答需要最新信息的问题时执行实时网络搜索。
e2b-mcp-server
使用 MCP 通过 e2b 运行代码。
Neon MCP Server
用于与 Neon 管理 API 和数据库交互的 MCP 服务器
Exa MCP Server
模型上下文协议(MCP)服务器允许像 Claude 这样的 AI 助手使用 Exa AI 搜索 API 进行网络搜索。这种设置允许 AI 模型以安全和受控的方式获取实时的网络信息。