PluginBench
MCP Server
Active
MIT

io.github.claymore666/ccu-mcp MCP Server

io.github.claymore666/ccu-mcp

What is the io.github.claymore666/ccu-mcp MCP server?

MCP server for controlling HomeMatic smart home devices via the CCU JSON-RPC API

How to install io.github.claymore666/ccu-mcp

Copy-paste configuration for popular MCP clients.

transport: stdio
Config generated by PluginBench — verify against the source before use.
Environment / auth
  • CCU_HOST
    required

    Hostname or IP of your HomeMatic CCU (debmatic, CCU3, or OpenCCU/RaspberryMatic)

  • CCU_PASSWORD
    required
    secret

    CCU admin password (same as the WebUI login). Must be set; the value may be empty for a CCU with no password

  • CCU_USER

    CCU username

  • CCU_HTTPS

    Connect to the CCU via HTTPS (self-signed certificates supported)

  • CCU_PORT

    CCU API port (80 for HTTP, 443 for HTTPS)

  • CACHE_DIR

    Directory for the device type cache and session persistence

  • MCP_ALLOWED_ORIGINS

    Comma-separated allowlist of browser origins. Unset = no cross-origin browser access (default-deny). An allowlisted origin is reflected exactly in Access-Control-Allow-Origin (never '*'); the list also drives DNS-rebinding origin checks

  • MCP_ALLOWED_HOSTS

    Extra Host header values accepted by DNS-rebinding protection (comma-separated host:port); add your hostname when behind a proxy or container DNS name

  • CCU_PROFILES

    Comma-separated names of multiple CCU targets (e.g. 'prod,dev'). Each profile takes the flat CCU_* settings prefixed CCU_<NAME>_ (CCU_PROD_HOST, ...), plus policy flags CCU_<NAME>_PROTECTED (writes need confirm:true) and CCU_<NAME>_READONLY. Unset = single default profile from the flat CCU_* vars

  • CCU_DEFAULT_PROFILE

    Which profile from CCU_PROFILES is active at startup (default: the first listed)

  • CCU_TLS_VERIFY

    Verify the CCU's TLS certificate against the system trust store. Only meaningful with CCU_HTTPS=true. Default false, because a CCU ships a self-signed certificate — prefer CCU_TLS_FINGERPRINT or CCU_CA_CERT to verify one of those

  • CCU_TLS_FINGERPRINT

    Pin the CCU's self-signed leaf certificate by its SHA-256 fingerprint (hex, colons optional). The strongest option for an appliance: the connection is rejected unless the presented certificate matches. Takes precedence over CCU_CA_CERT

  • CCU_CA_CERT

    Path to a PEM file holding the CCU's CA or self-signed certificate. The connection is then validated against it with standard chain verification

  • CCU_TIMEOUT

    Timeout for a CCU JSON-RPC call, in MILLISECONDS

  • CCU_SCRIPT_TIMEOUT

    Timeout for HomeMatic Script execution (ReGa), in MILLISECONDS — scripts are slower than plain API calls

  • CACHE_TTL

    Lifetime of the on-disk device-type schema cache, in SECONDS

  • CCU_RATE_LIMIT_BURST

    Token-bucket burst size for CCU requests — how many may be issued back to back

  • CCU_RATE_LIMIT_RATE

    Sustained CCU request rate, in requests per second

  • RESOURCE_POLL_INTERVAL

    How often MCP resources are polled for change notifications, in SECONDS

  • LOG_LEVEL

    error | warn | info | debug. Logs are structured JSON on stderr

~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "ccu-mcp": {
      "command": "npx",
      "args": [
        "-y",
        "ccu-mcp",
        "--stdio"
      ],
      "env": {
        "CCU_HOST": "<YOUR_CCU_HOST>",
        "CCU_PASSWORD": "<YOUR_CCU_PASSWORD>",
        "CCU_USER": "<YOUR_CCU_USER>",
        "CCU_HTTPS": "<YOUR_CCU_HTTPS>",
        "CCU_PORT": "<YOUR_CCU_PORT>",
        "CACHE_DIR": "<YOUR_CACHE_DIR>",
        "MCP_ALLOWED_ORIGINS": "<YOUR_MCP_ALLOWED_ORIGINS>",
        "MCP_ALLOWED_HOSTS": "<YOUR_MCP_ALLOWED_HOSTS>",
        "CCU_PROFILES": "<YOUR_CCU_PROFILES>",
        "CCU_DEFAULT_PROFILE": "<YOUR_CCU_DEFAULT_PROFILE>",
        "CCU_TLS_VERIFY": "<YOUR_CCU_TLS_VERIFY>",
        "CCU_TLS_FINGERPRINT": "<YOUR_CCU_TLS_FINGERPRINT>",
        "CCU_CA_CERT": "<YOUR_CCU_CA_CERT>",
        "CCU_TIMEOUT": "<YOUR_CCU_TIMEOUT>",
        "CCU_SCRIPT_TIMEOUT": "<YOUR_CCU_SCRIPT_TIMEOUT>",
        "CACHE_TTL": "<YOUR_CACHE_TTL>",
        "CCU_RATE_LIMIT_BURST": "<YOUR_CCU_RATE_LIMIT_BURST>",
        "CCU_RATE_LIMIT_RATE": "<YOUR_CCU_RATE_LIMIT_RATE>",
        "RESOURCE_POLL_INTERVAL": "<YOUR_RESOURCE_POLL_INTERVAL>",
        "LOG_LEVEL": "<YOUR_LOG_LEVEL>"
      }
    }
  }
}

Related MCP servers

MCP server for controlling HomeMatic smart home devices via the CCU JSON-RPC API

2
TypeScript
MIT
View repository →
CLClay Seal logo

Clay Seal

Active

Authorizes MCP tool calls against a session policy, not one call at a time.

1
Python
MIT
View repository →

Compare PDF or Word versions and return source-cited changes ranked by cost, time, or risk.

Manage UniFi sites, devices, clients, networks, port forwarding, DNS, and firewall

1
Go
MPL-2.0
View repository →

DeFi intelligence for Claude: whale tracking, alpha signals, yields, token safety. USDC on Base.

0
JavaScript
View repository →

Runtime governance enforcement for AI agents. Zero token overhead.

3
TypeScript
MIT
View repository →