Developers

Build on Kaption with MCP

Kaption exposes WhatsApp to AI apps and agents through one MCP server. This page lists every endpoint, document and repository you need.

MCP server address

https://mcp.kaptionai.com/mcp

The endpoint

A remote MCP server over Streamable HTTP. It speaks JSON-RPC 2.0 and works with any MCP client that supports OAuth. The tools run in the Kaption extension or desktop app on the user's own computer, so the user must have Kaption open.

Authentication

OAuth 2.1 with PKCE (S256) and dynamic client registration. There is one scope, kaption:access. Users sign in with their phone number and a code sent to them on WhatsApp, then choose how long the connection lasts. Access tokens expire after one hour. Calls without a token get HTTP 401 with a WWW-Authenticate header that points to the protected resource metadata.

Endpoints and documents

Tools

The cloud server exposes these tools. None of them sends a message immediately: the AI can leave a draft or schedule one message to one person. Chats the user locked in WhatsApp are never visible.

  • query
  • list_contacts
  • get_contact
  • get_contact_groups
  • list_groups
  • get_group
  • export_contacts
  • download_media
  • get_analytics
  • summarize_conversation
  • manage_chat
  • manage_reminders
  • manage_lists
  • manage_labels
  • manage_notes
  • manage_scheduled_messages
  • call_recordings

AI assistants (MCP)

Limits

  • Tools only work while the user has Kaption open: WhatsApp Web with the extension, or the desktop app.
  • Access is rate-limited. Bulk or unsolicited messaging is against the terms.
  • A scheduled message goes to one person and is at most 800 characters.

Security

Report vulnerabilities privately to security@kaptionai.com. Please do not open a public issue.

Questions

Is there a REST API?

Kaption's public interface is the MCP server. The OpenAPI file describes that HTTP endpoint so tools that read OpenAPI can find it; the operations themselves are MCP tools called over JSON-RPC.

Can I list the tools without signing in?

No. Every call, including initialize and tools/list, needs a token. The tool names are listed on this page and in the server card.

Which clients work?

Claude, ChatGPT, Cursor and other clients that support remote MCP servers with OAuth. Clients that run local servers can use the npm package instead.

Transcribe one audio now