Mmcp.market

Brightspace MCP server

by JhostinAleck·io.github.JhostinAleck/brightspace·v1.1.1·12 stars

MCP server for D2L Brightspace. Multi-auth, 26+ tools, MCP Resources, Prompts, and web dashboard.

C69/100grade C
What users say
No reviews yet
Be the first
Safety scan
C69/100

full report

Adoption
Growing

12 stars95 downloads/wk

Reviews

Write one

Nobody has reviewed Brightspace yet.

If you have run it, two minutes of your experience saves the next person an afternoon.

Brightspace tools (26, 2 write)

write = sends, deletes, buys or posts

Read from the package source without running it. The installed server may list more.

  • check_auth

    Verify whether the server can talk to Brightspace on your behalf.

  • clear_cache

    Clear cached responses. Use when the user asks to refresh data, or when tools return stale values.

  • get_announcements

    Return recent course announcements in reverse chronological order.

  • get_assignment_files

    Download and read the attachments (instructions, templates) posted on a Brightspace assignment.

  • get_assignments

    List assignments (Brightspace Dropbox Folders) for a course.

  • get_audit_log

    Return the local audit history of write attempts (submit_assignment, post_discussion_reply, mark_announcement_read).

  • get_calendar_events

    Return course calendar events within the next N days (default 30). Useful for seeing exams, lectures, or instructor-scheduled events.

  • get_classlist_emails

    Return the email addresses for everyone enrolled in a course.

  • get_course_content

    Return the course module tree with topics (files, quizzes, discussions, etc.).

  • get_diagnostics

    Return a JSON report of server state: profile, base URL, discovered D2L versions, cache hit/miss counters, and HTTP request timing stats.

  • get_discussions

    Return the list of discussion forums and topics for a course, with post counts and last-post timestamps.

  • get_feedback

    Return the instructor feedback for a single assignment in a given course.

  • get_my_grades

    Return grades for a specific course by numeric course id.

  • get_my_groups

    List the groups you are enrolled in for a course (with member names).

  • get_quiz_attempts

    List your attempts on a single quiz with scores and submission status.

  • get_roster

    List classmates, instructors, and TAs for a given course.

  • get_syllabus

    Return the course syllabus (overview page) as plain text.

  • get_topic_file

    Download and read a content topic file from a Brightspace course.

  • get_upcoming_due_dates

    Return assignments with due dates across all active courses within the next N days (default 14).

  • list_my_courses

    List enrolled courses.

  • list_notifications

    Show your Brightspace activity feed (announcements, due-date reminders, grade releases, etc.).

  • list_quizzes

    List quizzes for a course with attempt counts, time limits, and close dates.

  • mark_announcement_read

    Mark a Brightspace announcement as read. Writes: require --enable-writes + config writes.enabled: true.

  • post_discussion_replywrite action

    Reply to a Brightspace discussion topic. Writes: require --enable-writes + config writes.enabled: true.

  • search_course

    Full-text search across course content, announcements, and discussion forums.

  • submit_assignmentwrite action

    Upload a file to a Brightspace Dropbox Folder. Pass either `file_path` (recommended for files >1 MB — read server-side, saves tokens) or `content_base64`.

Public scan report

scanner v0.1.9 · 2026-09-27 · same rubric, same numbers if you re-run it

1 high
  • Code scan215 source files scanned13/25
  • –Live reliabilityno gateway calls yet and no remote to proben/a
  • –Tool poisoningtools not inspected (local package is not executed); not countedn/a
  • Auth qualitylocal package, no credentials required12/15
  • Maintenancelast push 55 days ago12/15
  • Maintainer identityregistry namespace matches repository owner; GitHub account older than a year8/10

Findings (1)

  • highShell command built from a string (injection risk)exec.shell-concat
    build/cli/commands/ui.js: …port('node:child_process'); exec(`${process.platform === 'darwin' ? 'open' : process.platform === 'win32' ? 'start' : 'xdg-open'} ${url}`); } catch { /* ign…
Overall 69/100. Components that don't apply are left out of the denominator. Any critical finding is an F.RubricAppeal a findingJSON

Install Brightspace in Claude Code, Cursor or VS Code

Runs npx -y brightspace-mcp on your machine. Read the scan report first; the gateway never runs local packages.

claude mcp add brightspace -- npx -y brightspace-mcp
Add to Cursor

What the publisher says

From the Brightspace repository's README, as published. We do not edit it. Read it on GitHub

brightspace-mcp

📖 Full documentation site →

MCP server for D2L Brightspace. Gives Claude (and any MCP-compatible client) access to your courses, grades, assignments, content, calendar, and more — with multi-strategy authentication, full MFA support, and production-grade resilience built in.

Quick start

npx brightspace-mcp@latest setup   # interactive wizard (recommended for first time)

The interactive wizard handles everything: base URL, auth strategy, MFA, credential storage, and auto-registration with Claude Desktop / Cursor / Windsurf.

For CI pipelines or DevContainers with no TTY, use the non-interactive init command instead:

npx brightspace-mcp@latest init \
  --base-url https://yourschool.brightspace.com \
  --strategy api_token \
  --token-ref env:BRIGHTSPACE_API_TOKEN

Documentation

Deep-dive guides live in docs/ — start with docs/README.md.

For AI assistants and contributors, AGENTS.md is a one-page map of the repo.

Table of contents

  • Installation
  • Authentication strategies
  • MFA strategies
  • Configuration reference
  • Output: timezone and language
  • Redis cache
  • Write operations
  • Available tools
  • MCP Resources
  • MCP Prompts
  • TUI dashboard
  • Register with an MCP client

Installation

npx (recommended — no install needed)

npx brightspace-mcp@latest setup   # first-time wizard
npx brightspace-mcp@latest serve   # run the server

Global install

npm install -g brightspace-mcp
brightspace-mcp setup
brightspace-mcp serve

From source

git clone https://github.com/JhostinAleck/brightspace-mcp.git
cd brightspace-mcp
npm install && npm run build
node build/cli/main.js serve

Requirements: Node.js ≥ 20.

Authentication strategies

Pick the strategy that matches your Brightspace setup. Run npx brightspace-mcp@latest setup and it will walk you through the right one.

API Token (simplest)

Requires a Valence API token from your Brightspace admin panel.

profiles:
  my_school:
    base_url: https://school.brightspace.com
    auth:
      strategy: api_token
      api_token:
        token_ref: env:BRIGHTSPACE_API_TOKEN

Shortened. The full README is on GitHub.

Nothing above is checked by us. What we check is on the safety report.

Brightspace: common questions

Is Brightspace MCP server safe?
With care: it is graded C, so read the findings first (69/100). Read the Brightspace safety report
How do I install Brightspace?
It runs on your machine. Copy the Claude Code, Cursor, VS Code or Claude Desktop config from the install section.
Does Brightspace need an API key?
No secret keys are declared. It reads 1 setting from the environment.
Is Brightspace maintained?
The last commit was 56 days ago (2026-08-03). The latest release is v1.1.1.
What can I use instead of Brightspace?
Servers from other publishers that do the same job: JAJ Dataverse Dev MCP server, Rede MCP server and spintax.net MCP server. Compare all Brightspace alternatives.

Alternatives to Brightspace

Same job from other publishers: the closest match first, then the best rated.

All Brightspace alternatives →
  • JAJ Dataverse Dev MCP
    Xrm/Power Platform/Dataverse MCP for devs, Azure CLI auth, Web API and multi-environment support
    A
  • Rede
    MCP server for Rede — Itaú-owned BR acquirer: authorize/capture/refund, zero-auth, card tokens
    B
  • spintax.net MCP server
    Write, validate, render and analyze spintax templates. Backed by @spintax/core. No auth.
    A
  • Dep Scope
    Symbol-level npm dependency analysis: scan verdicts, native alternatives, migration prompts.
    A
  • Healthclaw Guardrails
    Guardrailed FHIR access for AI agents: PHI redaction, audit trail, step-up auth, tenant isolation
    A

More from JhostinAleck →