
Company News
AWS Security Hub Adds Socket for Supply Chain Security
Socket is now in the AWS Security Hub Extended plan. Adopt it through AWS, apply committed spend, and block malicious open source packages.
A Model Context Protocol (MCP) server implementation that interfaces with the Hevy fitness tracking app and its API.
Talk to your Hevy workout data from Claude, Cursor, Codex, and other MCP clients.
Connect to the hosted MCP · Watch the 18-second demo · Explore all 26 tools
hevy-mcp is an open-source Model Context Protocol (MCP)
server for the Hevy fitness and workout tracking
app. It lets AI assistants read, analyze, create, and update your Hevy workouts,
routines, exercise templates, and body measurements through authenticated Hevy
API requests.
A Hevy API key, available with Hevy PRO, is required.
Click the preview to play the full-quality 18-second demo.
In the demo, the assistant retrieves real Hevy data and answers a multi-part training question with evidence from the user's workout history.
npx, bunx,
or the official Docker image.Try asking:
Analyze my training over the last six weeks. Show workouts per week, my most frequently trained exercises, any obvious gaps or inconsistencies, and cite the workout evidence you used.
Find my push-day routine and show its exercises and sets.
Compare my recent body measurements with my training consistency.
Create a completed workout from my saved routine. Ask me for any missing set results before writing it to Hevy.
Create an API key in Hevy, then keep it somewhere secure. API access currently requires a Hevy PRO subscription.
hevy-mcp to your clientThe hosted Cloudflare endpoint is the fastest way to start. It runs remotely, so your client does not need Node.js, Bun, Docker, or a local server process.
Production URL:
https://hevy.chrisdoc.dev/mcp
The endpoint uses Streamable HTTP. Send your Hevy API key as a bearer token on every request.
Codex CLI, the Codex desktop app, and the IDE extension share the same MCP configuration. Make your Hevy API key available in the environment that starts Codex, then add the hosted server:
export HEVY_API_KEY=your-hevy-api-key
codex mcp add hevy \
--url https://hevy.chrisdoc.dev/mcp \
--bearer-token-env-var HEVY_API_KEY
Codex stores the environment variable name, not the key itself, in its MCP
configuration. Restart Codex or begin a new session, then run codex mcp list
to verify the server is configured.
Clients that accept a remote MCP URL and fixed headers commonly use this shape:
{
"mcpServers": {
"hevy": {
"url": "https://hevy.chrisdoc.dev/mcp",
"headers": {
"Authorization": "Bearer your-hevy-api-key"
}
}
}
}
Exact configuration keys vary by client. The hosted server requires support for
Streamable HTTP and a fixed Authorization header.
[!IMPORTANT] Treat the bearer value like a password. The Worker validates it with Hevy for each request, does not store it, and forwards it to Hevy only as the required
api-keyheader.
Choose local stdio if you prefer to run the server on your own machine or your client cannot attach a fixed authorization header to remote MCP requests.
codex mcp add hevy \
--env HEVY_API_KEY=your-hevy-api-key \
-- npx -y hevy-mcp
Add this mcpServers entry to your client configuration:
{
"mcpServers": {
"hevy": {
"command": "npx",
"args": ["-y", "hevy-mcp"],
"env": {
"HEVY_API_KEY": "your-hevy-api-key"
}
}
}
}
Common local configuration locations:
~/Library/Application Support/Claude/claude_desktop_config.json%APPDATA%\Claude\claude_desktop_config.json~/.cursor/mcp.jsonRestart or reconnect the client after saving the file.
Configure your client to launch this command with HEVY_API_KEY in the child
process environment:
npx -y hevy-mcp
npx requires Node.js 20 or newer. Restart or reconnect your client after
saving its configuration.
The package exposes two named functions for applications that embed the MCP server:
import { createNodeMcpServer, runStdioServer } from "hevy-mcp";
const server = await createNodeMcpServer({ apiKey: process.env.HEVY_API_KEY! });
// Connect `server` to the transport owned by your application, or use:
await runStdioServer();
createNodeMcpServer never reads environment variables, connects a transport,
or installs process lifecycle handlers. The CLI-only runStdioServer function
owns those concerns.
Requires Bun:
{
"mcpServers": {
"hevy": {
"command": "bunx",
"args": ["hevy-mcp@latest"],
"env": {
"HEVY_API_KEY": "your-hevy-api-key"
}
}
}
}
Official images support linux/amd64 and linux/arm64. Keep stdin open with
-i because the container runs the stdio MCP server:
export HEVY_API_KEY=your-hevy-api-key
docker run -i --rm -e HEVY_API_KEY ghcr.io/chrisdoc/hevy-mcp:latest
For an MCP client, store the key in a protected environment file and configure the client to launch Docker:
{
"mcpServers": {
"hevy": {
"command": "docker",
"args": [
"run",
"-i",
"--rm",
"--env-file",
"/absolute/path/to/hevy-mcp.env",
"ghcr.io/chrisdoc/hevy-mcp:latest"
]
}
}
}
Pin an exact image tag such as ghcr.io/chrisdoc/hevy-mcp:X.Y.Z when you need
reproducible upgrades.
You can also add the npm server to supported clients with
add-mcp:
npx add-mcp hevy-mcp --env "HEVY_API_KEY=your-hevy-api-key"
Try one of these after restarting or reconnecting your MCP client:
Your assistant should ask for approval before mutation tools when the client supports tool confirmations.
Hosted: Your AI assistant → Streamable HTTP → Cloudflare Worker → Hevy API
Local: Your AI assistant → MCP over stdio → local hevy-mcp → Hevy API
The hosted endpoint creates a fresh MCP server and Hevy client for each request. It validates the supplied key with Hevy, keeps no shared user session, and does not persist the key. The local server follows the same tool contract but runs on your machine and receives the key through its child-process environment.
In either mode, read tools retrieve data; mutation tools create or replace data only when your assistant calls them.
These server-provided MCP prompts coordinate common multi-step workflows:
| Prompt | Arguments | Workflow |
|---|---|---|
analyze-workout-progress | Optional weeks from 1-12; default 4 | Calls get-training-summary, then analyzes workout activity and body-measurement trends from the returned evidence. |
create-workout-from-routine | Required routine_id and UTC start_time | Loads a routine, collects actual completed-set data and an end time, then creates a workout without inventing results. |
[!NOTE] With MCP SDK v1.29.0, clients invoking
analyze-workout-progresswith its default value must sendarguments: {}. Omitting the entireargumentsobject is rejected by that SDK version before the default is applied.
hevy-mcp registers 26 tools. Read-only tools are safe for exploration; create
and update tools are exposed with MCP mutation annotations so compatible clients
can request confirmation.
| Category | Tool | Description |
|---|---|---|
| Training analysis | get-training-summary | Summarize 1-12 weeks of workout activity and body-measurement trends in one call. |
| Workouts | get-workouts | List workouts from newest to oldest with exercise and timing details. |
| Workouts | get-workout | Get complete details for one workout by ID. |
| Workouts | get-workout-count | Return the account's total workout count. |
| Workouts | get-workout-events | List workout update and delete events since a timestamp. |
| Workouts | create-workout | Create a completed workout in Hevy. |
| Workouts | update-workout | Patch workout metadata by ID; omitted fields and all exercises remain unchanged. |
| Workouts | replace-workout-exercises | Replace all exercises and sets while preserving workout metadata. |
| Routines | search-routines | Search routine titles and return compact metadata for discovery. |
| Routines | get-routines | List custom and default workout routines. |
| Routines | get-routine | Get one routine and its exercise configuration by ID. |
| Routines | create-routine | Create a reusable workout routine. |
| Routines | update-routine | Replace an existing routine's content. |
| Routine folders | get-routine-folders | List default and custom routine folders. |
| Routine folders | get-routine-folder | Get one routine folder's metadata by ID. |
| Routine folders | create-routine-folder | Create a routine folder. |
| Exercise templates | get-exercise-templates | List exercise templates with equipment and muscle metadata. |
| Exercise templates | get-exercise-template | Get complete metadata for one exercise template by ID. |
| Exercise templates | search-exercise-templates | Search the full exercise catalog by title substring. |
| Exercise templates | create-exercise-template | Create a custom exercise template. |
| Exercise history | get-exercise-history | Get past performed sets for one exercise template. |
| Body measurements | get-body-measurements | List dated body measurements. |
| Body measurements | get-body-measurement | Get the body measurement entry for one date. |
| Body measurements | create-body-measurement | Create a dated body measurement. |
| Body measurements | update-body-measurement | Update the body measurement for an existing date. |
| Account | get-user-info | Return the user's ID, display name, and public profile URL. |
The Hevy API currently exposes no delete endpoints for workouts, routines, routine folders, exercise templates, or body measurements, so there are no corresponding delete tools.
| Name | URI | Description |
|---|---|---|
user-profile | hevy://user | Authenticated Hevy user profile. |
workout-count | hevy://workout-count | Total number of workouts in the account. |
exercise-templates | hevy://exercise-templates | Full formatted exercise template catalog. |
routine-folders | hevy://routine-folders | Full formatted list of Hevy routine folders. |
The production MCP server is live at:
https://hevy.chrisdoc.dev/mcp
It is the quickest way to use hevy-mcp: there is nothing to install or keep
running locally, and it exposes the same 26 tools as the npm package and Docker
image.
The Cloudflare Worker uses stateless Streamable HTTP at POST /mcp.
Clients must send their Hevy API key as a fixed authorization header:
{
"mcpServers": {
"hevy": {
"url": "https://hevy.chrisdoc.dev/mcp",
"headers": {
"Authorization": "Bearer your-hevy-api-key"
}
}
}
}
The bearer value is your Hevy API key, not an OAuth token. The Worker validates
the key with Hevy on each request, does not store it, and forwards it upstream
only as Hevy's required api-key header.
Workers deployed with an OAUTH_KV namespace binding (see
CONTRIBUTING.md) additionally expose a full OAuth 2.1
layer for clients that cannot send a fixed header, such as Claude.ai custom
connectors:
/.well-known//register) and PKCE token exchange (/token)/authorize page where you paste your Hevy API key once; the key is
validated with Hevy and stored encrypted inside the OAuth grantAdd the Worker URL ending in /mcp as a Claude.ai custom connector and
complete the authorization flow in the browser. Direct
Authorization: Bearer <hevy-api-key> requests keep working unchanged — the
OAuth layer is purely additive — and rotating your Hevy API key invalidates
every OAuth grant created with it.
The endpoint does not expose legacy SSE or a GET event stream. Without the
opt-in OAuth layer, clients that require OAuth discovery, dynamic
registration, or token refresh are not compatible unless they can send the
fixed custom header above.
See CONTRIBUTING.md to deploy the Cloudflare Worker for self-hosted Streamable HTTP.
| Setting | Default | Scope | Notes |
|---|---|---|---|
HEVY_API_KEY | None; required | Local stdio or HTTP | Hevy API key from the Hevy app. Never pass it in a URL. |
HEVY_MCP_API_TIMEOUT | 30000 ms | Local stdio | Positive Hevy API timeout in milliseconds. Invalid values fall back to 30 seconds. |
HEVY_MCP_DEBUG | Disabled | Local Node | Set to exactly 1 for privacy-bounded diagnostics on stderr. Stdout remains reserved for MCP JSON-RPC. |
HEVY_MCP_HTTP_BEARER_TOKEN | None | Non-loopback HTTP | Required when --host is not loopback; use a separate token, never the Hevy API key. |
HEVY_MCP_TELEMETRY | Enabled | Local Node | Set to exactly 0 before startup/import to disable Sentry errors/traces and OTLP traces/metrics. Takes precedence over SENTRY_DSN and packaged/runtime collector credentials. |
XDG_CACHE_HOME | ~/.cache | Local stdio | Changes the root for the npm update-check cache at hevy-mcp/update-check.json. |
SENTRY_DSN | Packaged GlitchTip project DSN | Optional local Node telemetry | Sentry-compatible override for the destination. An empty value disables Sentry export. The Worker does not import Node telemetry. |
SENTRY_RELEASE | hevy-mcp@<installed-version> | Optional local Node telemetry | Overrides the release label attached to local Sentry error events. |
-h, --help | N/A | Local stdio CLI | Print supported options and exit. |
-v, --version | N/A | Local stdio CLI | Print the installed version and exit. |
The local executable uses stdio by default. To opt into Streamable HTTP, run:
HEVY_API_KEY=your-hevy-api-key npx hevy-mcp --transport http --host 127.0.0.1 --port 3000
The MCP endpoint is http://127.0.0.1:3000/mcp. For a specific bind host,
HTTP mode validates the Host header and configured port to protect against DNS
rebinding. Loopback is the default. Wildcard binds (0.0.0.0 or ::) accept
any hostname so they can be used behind Docker port mappings or a reverse
proxy; they require HEVY_MCP_HTTP_BEARER_TOKEN and rely on that separate
authentication token. Do not expose an unprotected shared Hevy account to the
public internet. For Docker HTTP mode, publish the port explicitly:
docker run --rm -p 3000:3000 -e HEVY_API_KEY -e HEVY_MCP_HTTP_BEARER_TOKEN \
ghcr.io/chrisdoc/hevy-mcp:latest --transport http --host 0.0.0.0 --port 3000
Wildcard binds are allowed only with the separate bearer token; publish the container port deliberately and keep that token private.
search-exercise-templates and hevy://exercise-templates share a
server-scoped in-memory catalog cache:
search-exercise-templates accepts refresh: true to invalidate the cache.get-exercise-templates calls always fetch their requested page.The local Node package enables project telemetry by default. It is local Node
behavior only; the Cloudflare Worker does not import Node telemetry. Set
HEVY_MCP_TELEMETRY=0 before startup or import to disable all project
telemetry. Only the literal value 0 opts out: an unset value, an empty value,
1, false, and every other value remain enabled. The master setting takes
precedence over SENTRY_DSN and packaged or runtime OTEL_COLLECTOR_TOKEN
credentials, so the disabled path creates no telemetry exporters or periodic
metric readers and makes no telemetry network requests. SENTRY_DSN remains a
Sentry-only setting; when telemetry is enabled, an empty value disables only
Sentry export.
When enabled, errors are sent to the self-hosted GlitchTip project at https://glitchtip.chrisdoc.dev; Sentry performance tracing is disabled. Traces and metrics continue to be sent to the collector at https://otel.chrisdoc.dev/v1/traces and https://otel.chrisdoc.dev/v1/metrics, which forward to Honeycomb. Metrics export every 30 seconds.
The API key is never exported. Enabled telemetry derives a deterministic ten-character HMAC-SHA-256 pseudonym from it solely for cross-span correlation. The pseudonym is attached to spans only, never used as a metric dimension, and is not intended for per-user behavior histories.
The privacy allowlist contains service/version/transport; fixed tool feature, read/write kind, operation, and short-lived tool name; bounded outcome/error/count/retry/duration/session/cache/workflow values; normalized API method/endpoint/status; shape-only key names, presence, count, and boolean fields; sanitized client/protocol tokens; and the span-only pseudonym. It explicitly prohibits raw prompts, tool argument values, tool result content, request bodies, API keys, raw identifiers/queries/exact dates, workout/routine/folder/template/body-measurement content, names/titles/ descriptions/notes, measurement values, arbitrary client metadata, and unnormalized endpoint paths.
HEVY_API_KEY out of source control, URLs, logs, and screenshots.Authorization: Bearer header. The
Worker validates each key with Hevy, does not store it, and sends it upstream
only as Hevy's api-key header.MCP_ALLOWED_ORIGINS.npx fails: confirm that Node.js 20 or newer is installed, then run
npx -y hevy-mcp --version in a terminal.codex mcp list, then start a new Codex
session after confirming the hevy entry exists.Authorization: Bearer <HEVY_API_KEY>.HEVY_API_KEY.HEVY_MCP_DEBUG=1. Diagnostic output goes to stderr
and does not interfere with MCP messages on stdout.If you find a bug or have a feature request, open an issue.
Contributions are welcome. Developer setup, testing lanes, generated-client workflows, Cloudflare Worker deployment, and pull request rules are documented in CONTRIBUTING.md.
FAQs
A Model Context Protocol (MCP) server implementation that interfaces with the Hevy fitness tracking app and its API.
The npm package hevy-mcp receives a total of 3,966 weekly downloads. As such, hevy-mcp popularity was classified as popular.
We found that hevy-mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Company News
Socket is now in the AWS Security Hub Extended plan. Adopt it through AWS, apply committed spend, and block malicious open source packages.

Research
/Security News
Popular npm packages keyv and cacheable compromised.

Security News
A misconfiguration gave three Anthropic models internet access, and one, believing it was in a simulation, shipped a credential-stealing package to PyPI.