Set up n8n MCP Server

czlonkowski's open-source MCP server gives AI assistants access to n8n node documentation covering around 2,791 workflow nodes.

Published on 09.09.2026

What the n8n MCP Server is

The n8n MCP Server, developed by czlonkowski and published as open source on GitHub, is a Model Context Protocol server that gives AI assistants such as Claude comprehensive access to n8n's node documentation, properties, and operations. n8n itself is a workflow automation platform that lets you graphically connect processes between different services, for example automatically forwarding form submissions into a CRM system. Per the provider, the MCP server currently covers around 2,791 n8n nodes, of which 833 are core nodes and 1,958 are community nodes, with 86 percent documentation coverage and 99 percent property coverage. In practical terms, this means an AI assistant using this server can look up what settings a specific n8n node has, how to configure it correctly, and which example configurations already exist from real-world workflow templates.

Prerequisites for setup

There are two basic ways to use it. The fastest path, per the provider, is the hosted service at dashboard.n8n-mcp.com, where you sign up, get an API key, and add it to your own MCP client without running any infrastructure yourself. Alternatively, the server can be self-hosted, for example via npx, Docker, or a cloud platform such as Railway. Self-hosting requires Node.js or a working Docker environment. Anyone who also wants to connect the server to a real n8n instance, for example to manage workflows directly, needs an n8n API key from the n8n settings and, if the instance-level MCP feature of n8n is used, a separate MCP access token.

Setup step by step

First, the MCP client is configured, for example Claude Code, Cursor, or Windsurf, by adding the server endpoint or start command to the respective configuration file. For the hosted variant, an API key and a URL are usually enough. For the self-hosted variant, the server is started locally or in a container and reached over a local port. It can then be tested by asking the assistant about the properties of a specific n8n node or requesting suggestions for a particular automation. Anyone connecting the server to a production n8n environment should, per the provider, absolutely make a copy of the affected workflow first, work in a test environment, and export backups of important workflows before accepting any AI-generated changes.

Security and best practices

The provider explicitly warns against editing production workflows directly with AI assistance, since AI results can be unpredictable. Instead, it recommends testing changes in a development environment first and only moving them to production after validation. If the connected n8n instance sits behind an access layer such as Cloudflare Access, the server supports corresponding service tokens that are sent only to the configured API address, to avoid accidentally leaking credentials to other destinations. Anyone using n8n's instance-level MCP access should store the required access token separately from the regular API key and with the same level of care, since the two cover different permission levels.

Practical value in daily work

For teams making heavy use of n8n for automation, the server shortens the time otherwise spent looking up node documentation and experimenting with configurations. Instead of searching the n8n documentation individually for the right property of a node, the AI assistant can deliver structured answers directly, including example configurations drawn from real workflow templates. This is especially helpful when getting started with more complex integrations or with rarely used community nodes whose documentation would otherwise be harder to find.

Limitations of the server

The MCP server does not replace an understanding of your own business logic and offers no guarantee that a generated workflow will run error-free. Documentation coverage is reportedly high but not complete, and information may be missing or outdated for very new or rarely maintained community nodes. Responsibility for data protection and access rights on the connected n8n instance also remains entirely with the operator; the MCP server itself performs no independent authorization check and simply passes along whatever credentials it has been given.

Published on 09.09.2026

Categories

Frequently asked questions

Do I need to self-host n8n?

No. The n8n MCP Server is available in both n8n Cloud and self-hosted instances. n8n Cloud manages the infrastructure; with self-hosting you are responsible for updates, backups, and network security.

Can I hide specific workflows from certain clients?

No. All connected MCP clients see the same enabled workflows. n8n's user-scoped access control still applies at the user level, but per-client filtering is not supported.

What happens if I disable MCP?

According to the provider, disabling MCP disconnects every connected client and revokes its access. You can turn MCP access back on later. On self-hosted instances, the feature can also be removed entirely using the environment variable N8N_DISABLED_MODULES=mcp.