Documentation

Connect Corpus over MCP.

One command. Your client detects OAuth, registers itself and opens your browser to approve. There is no API key to copy and nothing to paste into a config file.

Connect

One command per client.

Every client points at the same endpoint and shares the same memory.

CodexVerified
codex mcp add edgex-memory --url https://console.edgex11.com/api/v1/runtime/mcp

Codex prints “Detected OAuth support”, registers itself and opens the browser. There is no separate login step.

Claude CodeVerified
claude mcp add --transport http edgex-memory https://console.edgex11.com/api/v1/runtime/mcp
claude mcp login edgex-memory

Claude Code adds the server first, then login runs the browser approval.

Any OAuth-capable client
# Streamable HTTP endpoint — no headers needed
https://console.edgex11.com/api/v1/runtime/mcp

Windsurf, Cline and Zed take the same URL. Any client that implements the MCP authorization spec discovers the rest on its own.

Clients without OAuth

Key-based access still works.

Not every client implements the MCP authorization spec yet — Cursor among them. Those take the same endpoint with a key you mint yourself.

Bearer key
claude mcp add --transport http edgex-memory https://console.edgex11.com/api/v1/runtime/mcp \
  --header "Authorization: Bearer YOUR_KEY"

Mint the key in the console under Memory › MCP Access. Any client that accepts a custom header takes the same pair — the endpoint above, and an Authorization: Bearer header carrying your key. Keys carry the same memory:read, memory:write and memory:admin scopes as an OAuth grant, and are revoked from the same screen.

What your client does

Discovery, then one approval.

Nothing here needs doing by hand. It is written down because knowing what a tool did on your behalf is the point of governed access.

  1. The endpoint says where to authenticate

    The first call returns 401 with a WWW-Authenticate header naming the protected-resource metadata document.

  2. Your client registers itself

    It reads the authorization-server metadata and registers dynamically. Nothing is pre-provisioned, and no client secret is shared with you.

  3. You approve in the browser

    Authorization code with PKCE. You see the scopes before granting them, and the token is bound to this resource.

Reference

The details, if you need them.

Endpoint
https://console.edgex11.com/api/v1/runtime/mcp
Transport
Streamable HTTP
Authorization
OAuth 2.1 — authorization code with PKCE (S256), dynamic client registration, refresh and revocation
Scopes
memory:read, memory:write, memory:admin
Resource metadata
/.well-known/oauth-protected-resource
Server metadata
/.well-known/oauth-authorization-server
Revoking access
Console › Memory › MCP Access. Revocation takes effect immediately.

One memory. Every tool.

Connect one repository and point every client at it. Free to start, no credit card — see pricing.