
Company News
Socket Joins New OpenJS Program to Fund Node.js Security Work
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.
@wraps.dev/mcp
Advanced tools
MCP server for Wraps email infrastructure. Query send history, check domain status, manage suppressions, and send emails via your AWS SES account.
MCP server for Wraps email infrastructure. Gives AI agents access to your AWS SES sending history, domain status, suppression list, and — optionally — the ability to send email.
Runs locally via stdio. Your AWS credentials never leave your machine.
wraps email deploy)| Tool | Description | Write? |
|---|---|---|
send_email | Send a transactional email via your SES account | Yes — requires WRAPS_WRITE_ENABLED=true |
list_recent_sends | List recent sends from your email history | No |
get_email_event_log | Get the full delivery event log for a message (Send, Delivery, Bounce, Complaint, Open, Click) | No |
verify_domain_status | Check verification and DKIM status of a sending domain | No |
list_suppressions | List addresses on your SES suppression list, optionally filtered by BOUNCE or COMPLAINT | No |
Add to ~/Library/Application Support/Claude/claude_desktop_config.json:
{
"mcpServers": {
"wraps": {
"command": "npx",
"args": ["-y", "@wraps.dev/mcp"],
"env": {
"AWS_REGION": "us-east-1",
"AWS_PROFILE": "your-aws-profile"
}
}
}
}
Add to .mcp.json in your project root:
{
"mcpServers": {
"wraps": {
"command": "npx",
"args": ["-y", "@wraps.dev/mcp"]
}
}
}
Claude Code inherits your shell's AWS environment, so no extra env config is needed if your credentials are already set.
All configuration is via environment variables.
| Variable | Required | Default | Description |
|---|---|---|---|
AWS_REGION | Yes | — | AWS region where your Wraps stack is deployed |
WRAPS_HISTORY_TABLE_NAME | No | wraps-email-history | DynamoDB table name for email history |
WRAPS_ACCOUNT_ID | No | auto-detected via STS | Your AWS account ID (skip STS call if set) |
WRAPS_WRITE_ENABLED | No | false | Set to true to enable send_email |
WRAPS_FROM_EMAIL | No | — | Default from address for send_email |
send_email is disabled by default. Set WRAPS_WRITE_ENABLED=true to enable it. The from address must be a domain verified in your SES account.
{
"mcpServers": {
"wraps": {
"command": "npx",
"args": ["-y", "@wraps.dev/mcp"],
"env": {
"AWS_REGION": "us-east-1",
"WRAPS_WRITE_ENABLED": "true",
"WRAPS_FROM_EMAIL": "you@yourdomain.com"
}
}
}
}
When write mode is enabled, the send_email tool can reach any SES-verified address by default. Use these env vars to restrict the agent's sending scope:
| Variable | Default | Description |
|---|---|---|
WRAPS_ALLOWED_RECIPIENTS | — (no restriction) | Comma-separated exact addresses the agent may send to. If set, any address not in this list (or WRAPS_ALLOWED_RECIPIENT_DOMAINS) is rejected. |
WRAPS_ALLOWED_RECIPIENT_DOMAINS | — (no restriction) | Comma-separated domains (e.g. company.com,partner.org) the agent may send to. Combined with WRAPS_ALLOWED_RECIPIENTS; a recipient is allowed if it matches either list. Matching is exact: example.com allows user@example.com but NOT subdomains like user@mail.example.com — list each subdomain explicitly. |
WRAPS_MAX_RECIPIENTS | 50 | Maximum number of recipients per send_email call. |
WRAPS_ALLOW_FROM_OVERRIDE | false | Set to true to let the agent supply a from address that differs from WRAPS_FROM_EMAIL. When false (default), the caller-supplied from is rejected if it does not match the configured address. |
Note: Running with
WRAPS_WRITE_ENABLED=trueand no allowlist gives the agent unrestricted send capability to any address in your SES account.
MIT
FAQs
MCP server for Amazon SES. Send email from your own AWS account, check domains, suppressions and sandbox status. Wraps adds send history and delivery events.
The npm package @wraps.dev/mcp receives a total of 31 weekly downloads. As such, @wraps.dev/mcp popularity was classified as not popular.
We found that @wraps.dev/mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Company News
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Research
/Security News
A malicious Firefox extension fetches its payload after installation to evade detection, steal Google session cookies, and automate account takeover.