Back to Discover

cambium-remote

connector

jarmstrong158

Cloudflare Worker for read-only recall of cambium knowledge. MCP 2026-07-28, dual-era.

View on GitHub
0 starsSynced Aug 2, 2026

Install to Claude Code

/plugin marketplace add jarmstrong158/cambium-remote

README

cambium-remote

Part of the xylem stack.

A Cloudflare Worker MCP server that makes cambium's promoted knowledge recallable from claude.ai (including mobile) — read-only.

Local cambium is a desktop stdio server; its team knowledge lives on a cambium branch of each project repo and its org knowledge lives in a dedicated knowledge repo — both plain knowledge.json files in git. This Worker reads those files through the GitHub Contents API and serves recall() over them, the same pattern agentsync-remote uses for the coordination board.

Read-only by design. It exposes recall and status. It does not distill, endorse, or promote (those are CAS writes / the generalization gate — desktop-only), and recall here does not increment recall counts (so it never feeds promotion). Local (personal, unpromoted) scope is desktop-only and not reachable remotely — only the promoted team and org tiers are.

Tools

  • recall(query, scope?, limit?) — search team + org knowledge. scope: auto (default, team+org) | team | org. Abstains with no_confident_match below the relevance floor, exactly like local cambium.
  • status() — what the Worker is configured to read and how many active items each scope holds. Call it first if recall looks empty.

Configure (wrangler.toml vars)

Team scope auto-discovers — it is a growing set, not a static list. Every repo owned by TEAM_OWNER that has a TEAM_BRANCH (i.e. has been team-promoted) is read, so a newly-promoted repo shows up on mobile within minutes with no redeploy. One GraphQL scan per few minutes (cached in-isolate) lists the repos; a repo without the branch is simply skipped.

varmeaning
ORG_REPOowner/name of the dedicated org knowledge repo (its default branch's knowledge.json). Blank = no org recall.
TEAM_OWNERowner (user/org) to auto-discover team repos under. Every repo of theirs with TEAM_BRANCH is read. Blank = no team recall.
TEAM_REPOSoptional extra owner/name repos to include on top of discovery (e.g. under a different owner). Blank in the common case.
TEAM_BRANCHteam-scope branch (default cambium).
KNOWLEDGE_PATHfile name (default knowledge.json).

Deploy

npm install
npm run typecheck && npm test
npx wrangler deploy
# then set the two secrets in the Cloudflare dashboard (never in the repo):
npx wrangler secret put AUTH_TOKEN   # the path-token credential; URL is /mcp/<AUTH_TOKEN>
npx wrangler secret put GH_PAT       # fine-grained GitHub token: Metadata: Read + Contents: Read across your repos
#                                    # (team scope is auto-discovered, so it needs to see all of TEAM_OWNER's repos)

Then add https://cambium-remote.<subdomain>.workers.dev/mcp/<AUTH_TOKEN> as a custom connector in claude.ai → Settings → Connectors. The whole URL is the credential — treat it like a password.

Auth

Path-token: POST /mcp/<token>, constant-time compared to the AUTH_TOKEN secret; anything else returns a bare 404. Same scheme as the sibling Workers.

License

PolyForm Noncommercial License 1.0.0 — free for any noncommercial use.

Rendered live from jarmstrong158/cambium-remote's GitHub README — not stored, always reflects the source repo.

1 Install Method

NameDescriptionCategorySource
streamable-http remoteHosted streamable-http endpointmcp-serverhttps://cambium-remote.{account}.workers.dev/mcp/{token}

0 Comments

Login required
Log in to post a comment or update on this repo.

No comments yet — be the first to share an update.