gsc-mcp-connector
Self-hosted Google Search Console MCP server deployable to Cloudflare Workers that enables querying GSC data (search analytics, URL inspection, sitemaps) via natural language through ChatGPT, Claude, or any MCP-capable client.
README
gsc-mcp-connector
Self-hosted Google Search Console MCP server, deployable to Cloudflare Workers in 15 minutes. Plug it into ChatGPT, Claude, or any MCP-capable client and query your GSC data in natural language.
What this gives you
Once deployed, you get a private MCP endpoint that exposes 4 tools to your AI assistant:
list_sites— discover every property accessible to the authenticated userquery_search_analytics— clicks, impressions, CTR, position, filterable by query / page / country / device / search appearance / dateinspect_url— full URL Inspection API output (indexing status, canonical, mobile, AMP)list_sitemaps— every submitted sitemap and its processing status
You ask: "Quelles sont mes 50 requêtes avec la plus grosse perte de clics entre les 28 derniers jours et les 28 jours précédents ?" and the assistant pulls the data, computes the delta, and writes the analysis. No more SQL exports.
How it works
ChatGPT/Claude ──OAuth──▶ Your Worker ──OAuth──▶ Google
│
└─ holds your Google refresh_token
(encrypted, in OAuth grant props)
Two OAuth chains :
- MCP client → Worker : ChatGPT/Claude do OAuth 2.1 + PKCE against your Worker. The login UI asks for a static "access key" you set at deploy time (the connector gate).
- Worker → Google : after the access key check, the user is redirected to Google's consent screen to grant
webmasters.readonly. The resulting refresh token is stored in the OAuth grant; on every tool call, the Worker refreshes a fresh access token and calls GSC.
The user's Google account drives access — no Service Account, no GSC user-management dance, no permission propagation delays.
Prerequisites
| Item | Cost | Required ? |
|---|---|---|
| ChatGPT Plus / Pro / Team or Claude.ai Pro / Team | $20/mo+ | Custom MCP connectors are gated on paid plans. |
| Cloudflare account | Free tier is enough | Yes |
| Google Cloud project | Free | Yes — to create an OAuth Client |
| Verified Search Console property | Free | Yes (you already have it) |
Node.js 20+ + wrangler CLI |
Free | Recommended for the secret-setting steps |
The Cloudflare Workers free tier (100k requests/day) is largely enough for personal SEO usage. No paid Cloudflare plan needed.
Quick start (~15 min)
1. Deploy the Worker
Click the Deploy to Cloudflare button at the top of this README. Cloudflare clones the repo into your account, installs deps, and gives you a public URL like https://gsc-mcp-connector.<your-subdomain>.workers.dev.
Note : at this stage, you'll be asked for
MCP_BEARER_TOKEN,GOOGLE_OAUTH_CLIENT_ID, andGOOGLE_OAUTH_CLIENT_SECRET. You don't have the Google ones yet — fillMCP_BEARER_TOKENwith any random hex string for now (you can change later), and paste anything in the two Google fields. We'll set them properly in step 4.If you'd rather skip the button, clone the repo locally, run
npm install, thennpx wrangler deploy.
After deployment, note your Worker URL. You will need it both in step 3 and in step 5.
2. Generate a connector access key
This is a static random string used as a gate before Google OAuth. Anyone using the connector must paste this string in the login UI.
openssl rand -hex 32
Save the output — you'll set it as a secret and use it in ChatGPT/Claude.
3. Set up Google Cloud (OAuth Client)
Follow the step-by-step in docs/SETUP_GCP.md. Use your Worker URL from step 1 in the Authorized redirect URI. You'll end up with a Client ID and a Client Secret.
This is the longest step (~10 min the first time) but you only do it once.
4. Configure the Worker secrets
npx wrangler secret put MCP_BEARER_TOKEN
# paste the value from step 2
npx wrangler secret put GOOGLE_OAUTH_CLIENT_ID
# paste the Client ID from step 3
npx wrangler secret put GOOGLE_OAUTH_CLIENT_SECRET
# paste the Client Secret from step 3
Or via the Cloudflare dashboard : Workers & Pages → your worker → Settings → Variables and Secrets → add each as type Secret.
Tip — encoding pitfall on Windows : if you pipe a file's content (e.g.
Get-Content | wrangler secret put) and that file has a UTF-8 BOM, the BOM ends up in your secret and breaks JSON parsing. The Cloudflare dashboard or interactivewrangler secret put(paste at the prompt) avoids this entirely.
5. Plug into ChatGPT (Plus/Pro/Team)
ChatGPT → Settings → Connectors → Add custom connector :
- Name :
gsc - MCP Server URL :
https://YOUR-WORKER-URL/mcp(must end with/mcp) - Authentication :
OAuth - Check "I understand and want to continue"
- Create
A popup opens to your Worker's login UI. Paste your MCP_BEARER_TOKEN → click Continue with Google → → Google asks you to log in (use the account that owns your GSC property) and grant webmasters.readonly → you're redirected back to ChatGPT, connector is active.
In a new chat, enable the gsc connector in the toolbar, then ask: "List my Google Search Console sites". You should see your properties.
6. (Optional) Plug into Claude.ai (Pro/Team)
Settings → Integrations → Add custom integration → same URL, same flow.
Local development
git clone https://github.com/JuJu78/gsc-mcp-connector
cd gsc-mcp-connector
npm install
cp .dev.vars.example .dev.vars
# edit .dev.vars with your real Client ID + Client Secret + bearer token
npx wrangler dev
The dev server runs on http://localhost:8787. Note that local dev cannot fully complete the Google OAuth flow because Google's redirect URIs require HTTPS. For a true end-to-end test, deploy to Cloudflare and test against the workers.dev URL.
Limitations
- Read-only. Adding write operations (submit sitemap, request indexing) is left out by design — they're risky in an LLM context. Open a PR if you need them.
- Single-tenant by design. One operator deploys, one bearer token gates the connector, the access is bound to whoever completes the Google OAuth dance. Multi-user SaaS-style is out of scope.
- OAuth consent in Testing mode caps you at 100 test users (more than enough for personal/team use). For broader distribution you'd need to submit the app for Google verification (
webmasters.readonlyis a "sensitive" scope, requires manual review). - GSC API quotas — 1200 queries/min/project, 30k/day. Plenty for interactive use.
- Date range — GSC returns the last 16 months. Earlier dates error.
Troubleshooting
| Symptom | Cause | Fix |
|---|---|---|
Error 400: redirect_uri_mismatch during Google login |
Authorized redirect URI in GCP doesn't exactly match what the Worker sends | Verify https://YOUR-WORKER/oauth/google/callback is configured as-is in GCP Credentials |
Error 403: access_denied after Google login |
Logged-in account isn't in Test users of the OAuth consent screen | Add the Gmail in OAuth consent screen → Audience → Test users |
something went wrong after authorization in ChatGPT |
Stale OAuth grant from a previous attempt | Delete the connector in ChatGPT and recreate it |
No Google refresh token in grant. Re-authorize |
The grant was created before you deployed v0.4+ | Delete the connector in ChatGPT/Claude and recreate it |
Invalid access key. Try again. after pasting the bearer |
MCP_BEARER_TOKEN mismatch between secret and what you pasted |
Re-set the secret via interactive wrangler secret put (avoid file-pipe to prevent BOM/newline pollution) |
tools/call list_sites returns {} |
Authenticated Google account has no GSC properties (or wrong account) | Verify which account you used in the Google consent step — it must own GSC properties |
| ChatGPT says "no tools available" | URL doesn't end with /mcp |
Server URL must be https://YOUR-WORKER/mcp, not the bare root |
Stack
- Cloudflare Workers + Durable Objects (via
agentsSDK ≥0.12) @cloudflare/workers-oauth-providerfor OAuth 2.1 + DCR + PKCE@modelcontextprotocol/sdkfor tool definitions- KV namespace
OAUTH_KVfor OAuth state - Google OAuth 2.0 flow signed natively via Web Crypto API (no Node deps)
Credits
Built by Julien Gourdon — SEO consultant exploring the intersection of search and AI.
License
MIT — see LICENSE.
推荐服务器
Baidu Map
百度地图核心API现已全面兼容MCP协议,是国内首家兼容MCP协议的地图服务商。
Playwright MCP Server
一个模型上下文协议服务器,它使大型语言模型能够通过结构化的可访问性快照与网页进行交互,而无需视觉模型或屏幕截图。
Magic Component Platform (MCP)
一个由人工智能驱动的工具,可以从自然语言描述生成现代化的用户界面组件,并与流行的集成开发环境(IDE)集成,从而简化用户界面开发流程。
Audiense Insights MCP Server
通过模型上下文协议启用与 Audiense Insights 账户的交互,从而促进营销洞察和受众数据的提取和分析,包括人口统计信息、行为和影响者互动。
VeyraX
一个单一的 MCP 工具,连接你所有喜爱的工具:Gmail、日历以及其他 40 多个工具。
graphlit-mcp-server
模型上下文协议 (MCP) 服务器实现了 MCP 客户端与 Graphlit 服务之间的集成。 除了网络爬取之外,还可以将任何内容(从 Slack 到 Gmail 再到播客订阅源)导入到 Graphlit 项目中,然后从 MCP 客户端检索相关内容。
Kagi MCP Server
一个 MCP 服务器,集成了 Kagi 搜索功能和 Claude AI,使 Claude 能够在回答需要最新信息的问题时执行实时网络搜索。
e2b-mcp-server
使用 MCP 通过 e2b 运行代码。
Neon MCP Server
用于与 Neon 管理 API 和数据库交互的 MCP 服务器
Exa MCP Server
模型上下文协议(MCP)服务器允许像 Claude 这样的 AI 助手使用 Exa AI 搜索 API 进行网络搜索。这种设置允许 AI 模型以安全和受控的方式获取实时的网络信息。