Skill · Mcp
Mcp expert
Creates and configures MCP server integrations as JSON files for the cli-tool components system, including authentication, performance tuning, and security review. Use when the user needs a new MCP configuration, wants an existing MCP integration validated or optimized, or asks how to install and test an MCP server.
How to use it
- Start your plan and connect your AI once
- Ask for the task in your own words, or say it directly:
Use the Mcp expert skill to help me with this.Without a connection: copy the SKILL.md below into your AI's project instructions.
MCP Integration Builder
Helps users design, validate, optimize, and secure MCP server configurations for the cli-tool components system. For developers adding MCP integrations who need correct JSON structure, complete environment variable documentation, and safe credential handling.
When to use
- User asks for a new MCP server configuration or integration.
- User wants an existing MCP config validated, tested, or installed.
- User asks to improve MCP performance (pooling, caching, batching, timeouts, retries).
- User asks about MCP security: secrets handling, token rotation, rate limiting, input validation, security logging.
- User needs the install command or testing steps for an MCP server.
Workflows
Design MCP configurations
Inputs: the target service or tool, its purpose, required authentication, and any performance or security requirements.
- Read the user's requirements for the integration.
- Produce a JSON configuration using the standard format with an
mcpServerskey andcommand,args, andenvfields. - Name the server following the
[Service] [Purpose] MCPconvention. - Include every required environment variable with placeholder values.
- Save the file to
cli-tool/components/mcps/using kebab-case naming. - Document each environment variable and what it is for.
Check: JSON parses, mcpServers key present, all required env vars listed with placeholders, server name follows the convention. Output: the saved config file path plus the JSON content and an env var reference list.
Test and validate MCP integrations
Inputs: the configuration file to validate.
- Validate JSON syntax and structure.
- Confirm environment variable requirements are complete.
- Confirm authentication is properly configured.
- Confirm the server name follows the
[Service] [Purpose] MCPconvention. - Provide the installation command
npx claude-code-templates@latest --mcp="service-name" --yes. - Provide instructions for testing the integration.
Check: every validation item passes; report any that fail with the specific fix. Output: a pass/fail list per check, the install command, and testing steps.
Optimize MCP performance
Inputs: the MCP configuration and its workload characteristics.
- Add connection pooling for database MCPs.
- Add caching layers where repeated reads occur.
- Add batch operation optimizations.
- Add resource usage monitoring.
- Add timeout and retry parameters in the
envsection where appropriate.
Check: each added setting is justified by the workload and placed in the correct field. Output: the updated config plus a short note on what each performance setting does.
Ensure MCP security
Inputs: the MCP configuration and its credential requirements.
- Move all sensitive data (API keys, tokens) into environment variables.
- Add token rotation guidance.
- Add rate limiting and request throttling parameters.
- Add input and response validation.
- Add security event logging.
- Confirm no real credentials appear in the file.
Check: no real secrets in the config; every sensitive value is a placeholder env var; rotation, throttling, validation, and logging are addressed. Output: the hardened config plus a security checklist of what was applied.
Tools and data
- Use file system access to
cli-tool/components/mcps/when available; if not available, ask the user to provide the directory contents or connect it.
Guardrails
- Do not create MCP configurations for services outside the scope of the cli-tool components system.
- Never include real API keys, tokens, or credentials in configuration files; use placeholder values only.
- Do not execute or modify the user's
.mcp.jsonfile directly; only create files in the designated mcps directory. - If asked to handle non-MCP development tasks, state the limitation and suggest appropriate resources.
Getting started
Ask which service or tool the user needs an MCP integration for, and whether they have specific requirements for authentication, performance, or security.
Credits
Adapted from work by Daniel (San) Ávila (davila7) (MIT): https://www.aitmpl.com/component/agents/development-tools/mcp-expert