
Research
/Security News
Popular npm Packages in the keyv and Cacheable Namespaces Compromised in Active Supply Chain Attack
Popular npm packages keyv and cacheable compromised.
@ask-llm/gemini-mcp
Advanced tools
MCP server for Gemini CLI integration - for Claude IDE and other IDEs
An MCP server for AI-to-AI collaboration via the Gemini CLI. Available on npm: @ask-llm/gemini-mcp. Works with Claude Code, Claude Desktop, Cursor, Warp, Copilot, and 40+ other MCP clients. Leverage Gemini's massive 1M+ token context window for large file and codebase analysis while your primary AI handles interaction and code editing.
# Project scope (available in current project only)
claude mcp add gemini-cli -- npx -y @ask-llm/gemini-mcp
# User scope (available across all projects)
claude mcp add --scope user gemini-cli -- npx -y @ask-llm/gemini-mcp
Add to your config file (~/Library/Application Support/Claude/claude_desktop_config.json on macOS):
{
"mcpServers": {
"gemini-cli": {
"command": "npx",
"args": ["-y", "@ask-llm/gemini-mcp"]
}
}
}
%APPDATA%\Claude\claude_desktop_config.json~/.config/claude/claude_desktop_config.jsonAdd to .cursor/mcp.json in your project (or ~/.cursor/mcp.json for global):
{
"mcpServers": {
"gemini-cli": {
"command": "npx",
"args": ["-y", "@ask-llm/gemini-mcp"]
}
}
}
Add to ~/.codex/config.toml (or .codex/config.toml in your project):
[mcp_servers.gemini-cli]
command = "npx"
args = ["-y", "@ask-llm/gemini-mcp"]
Or via CLI:
codex mcp add gemini-cli -- npx -y @ask-llm/gemini-mcp
Add to opencode.json in your project (or ~/.config/opencode/opencode.json for global):
{
"mcp": {
"gemini-cli": {
"type": "local",
"command": ["npx", "-y", "@ask-llm/gemini-mcp"]
}
}
}
{
"transport": {
"type": "stdio",
"command": "npx",
"args": ["-y", "@ask-llm/gemini-mcp"]
}
}
GEMINI_CLI_TRUST_WORKSPACE=true (gemini ≥0.42) and GEMINI_TRUST_WORKSPACE=true (gemini ≤0.41) — the env var was renamed upstream; we set both so one release covers any gemini-cli version in current rotation. Opt out with ASK_GEMINI_REQUIRE_WORKSPACE_TRUST=1.)| Tool | Purpose |
|---|---|
ask-gemini | Send prompts to Gemini CLI. Supports @ file syntax, model selection, sandbox mode, and changeMode for structured edits |
fetch-chunk | Retrieve subsequent chunks from cached large responses |
ping | Connection test — verify MCP setup without using Gemini tokens |
File analysis (@ syntax):
ask gemini to analyze @src/main.js and explain what it doesuse gemini to summarize @. the current directoryCode review:
ask gemini to review the changes in @src/auth.ts for security issuesuse gemini to compare @old.js and @new.jsGeneral questions:
ask gemini about best practices for React state managementSandbox mode:
use gemini sandbox to create and run a Python script| Model | Use Case |
|---|---|
gemini-3.1-pro-preview | Default — best quality reasoning |
gemini-3.6-flash | Faster responses, large codebases; quota fallback |
The server automatically falls back to Flash when Pro quota is exceeded.
Contributions are welcome! See open issues for things to work on.
MIT License. See LICENSE for details.
Disclaimer: This is an unofficial, third-party tool and is not affiliated with, endorsed, or sponsored by Google.
FAQs
MCP server for Gemini CLI integration - for Claude IDE and other IDEs
We found that @ask-llm/gemini-mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Popular npm packages keyv and cacheable compromised.

Security News
A misconfiguration gave three Anthropic models internet access, and one, believing it was in a simulation, shipped a credential-stealing package to PyPI.

Security News
/Company News
Socket has joined the new Composer and Packagist sponsorship program as a launch sponsor, supporting the team that keeps PHP's package ecosystem secure.