
Product
Introducing Socket Scanning for VS Code Marketplace Extensions
Socket now scans VS Code extensions, giving teams early detection of risky behaviors, hidden capabilities, and supply chain threats in developer tools.
maccabi-health
Advanced tools
Ask an AI assistant for a second look at your lab results, scans, doctor visits, messages, referrals, and prescriptions.
Read your records from Maccabi Healthcare Services, the Israeli health fund, through a CLI or an AI assistant: laboratory history, doctor correspondence, visits, prescriptions, referrals, and supported original PDFs.
Unofficial and unaffiliated with Maccabi. You need your ID number (תעודת זהות) and access to the phone that receives the login code via SMS.
Copy and paste this to your agent:
Analyze my blood test results, and tell me if my cholesterol is a problem
https://raw.githubusercontent.com/orenyomtov/maccabi-health/main/skills/maccabi-health/SKILL.md
Agents like Claude Code, Cowork, Codex, Cursor, Instinct, Muse, and ChatGPT Work can follow that.
Another option to get started is to run npx skills add orenyomtov/maccabi-health which installs that skill into Cursor, Claude Code, Codex and other local agents.
npm install -g maccabi-health
maccabi-health login
maccabi-health labs --limit 10
Or, without a global install:
npx -y maccabi-health login
npx -y maccabi-health labs --limit 10
maccabi-health login asks for your ID and the SMS code in the terminal. If an agent prefers the user to sign in directly in the browser, maccabi-health login --http prints a URL that the user can be redirected to to login instead, and it writes to the same session file that the CLI uses.
If maccabi-health is not on your PATH after a global install, use the absolute path to the bin or stick with npx.
Maccabi ends every session an hour after login, activity or not. A finished maccabi-health login starts a background keep-alive for that hour (a renewal every 240 seconds) and then returns, so later commands keep working until the hour is up. maccabi-health login --no-keep-alive skips it. maccabi-health logout stops it. The background process cannot extend the hour. Measurements are in SESSION-LIFETIME.md.
Every record you read here is real medical data. Anything you hand to an assistant becomes part of that model's context and goes wherever that model runs.
Use the `maccabi-health` CLI to read my Maccabi records.
Install with `npm install -g maccabi-health`.
Run `maccabi-health` for the command index, `maccabi-health help` for the full reference, and `maccabi-health help COMMAND --json` for one command's exact arguments.
The CLI is usually the better surface there: no tool-cap fights, and JSON out of a pipe is something an agent can already filter and loop over.
claude mcp add maccabi-health -- npx -y maccabi-health mcp
codex mcp add maccabi-health -- npx -y maccabi-health mcp
gemini mcp add maccabi-health npx -y maccabi-health mcp
Cursor, in ~/.cursor/mcp.json:
{
"mcpServers": {
"maccabi-health": {
"command": "npx",
"args": ["-y", "maccabi-health", "mcp"]
}
}
}
maccabi-health mcp --http serves loopback Streamable HTTP with OAuth; see MCP.md.
Install with:
npm install maccabi-health
Example usage:
import { connect, login } from "maccabi-health";
const pending = await login(idNumber);
await pending.sms();
const client = await pending.verify(smsCode);
const tests = await client.listTests({ year: 2025 });
pending.phones lists the SMS numbers; pass an index to sms() when there is more than one. A wrong code ends the attempt.
You can save await client.exportSession() and open it later with connect(session).
The methods are the same reads as the CLI.
| Read | Examples |
|---|---|
| Test results | Values, dates, units, ranges, historical comparisons and PDFs |
| Medication | Prescriptions, dispensing records and eligible PDFs |
| Medical records | Visit notes, vaccinations, referrals and summaries |
| Correspondence | Supported doctor inquiries, replies and documents |
| Billing | Quarterly reports and report PDFs |
| Imaging | Study list, series, and per-image metadata. Preview JPEGs and raw pixel files are CLI-only; only 8-bit ultrasound has been checked live |
| Other reads | Certificates, notifications, settings, and public provider search (often blocked by a bot challenge) |
See the full capability reference.
Fix the bug and send a pull request. That is better than only opening an issue: each account has different records, so the maintainer often cannot reproduce what you saw. See Contributing.
Open an issue if you cannot fix it. Never paste medical records, ID numbers, cookies or session files. Security problems go through SECURITY.md.
All docs · Authentication · CLI guide · MCP transports · Changelog · API sources · Contributing · MIT license
FAQs
Node.js library, CLI, and MCP server for Maccabi Healthcare records.
We found that maccabi-health demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Product
Socket now scans VS Code extensions, giving teams early detection of risky behaviors, hidden capabilities, and supply chain threats in developer tools.

Research
/Security News
Socket uncovered two malicious VS Code themes in a GlassWorm-linked cluster with thousands of installs across VS Code Marketplace and Open VSX.

Security News
/Company News
Capital One is partnering with Socket to proactively secure its open source supply chain.