MCPLow riskUnclaimed

fhirhydrant

FHIR MCP server with SMART Backend Services, response compaction, FHIRPath, and guarded writes.

faulkjfaulkj/fhirhydrant★ 18Updated Aug 27, 2026

server.json

{
  "$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
  "name": "io.github.faulkj/fhirhydrant",
  "description": "FHIR MCP server with SMART Backend Services, response compaction, FHIRPath, and guarded writes.",
  "repository": {
    "url": "https://github.com/faulkj/fhirHydrant",
    "source": "github"
  },
  "version": "0.17.3",
  "packages": [
    {
      "registryType": "npm",
      "identifier": "fhirhydrant",
      "version": "0.17.3",
      "transport": {
        "type": "stdio"
      },
      "environmentVariables": [
        {
          "description": "Run the installed package over MCP stdio.",
          "isRequired": true,
          "format": "string",
          "value": "stdio",
          "name": "MCP_TRANSPORT"
        },
        {
          "description": "FHIR authentication mode. Use none only for an unauthenticated FHIR endpoint.",
          "isRequired": true,
          "format": "string",
          "default": "smart",
          "choices": [
            "smart",
            "none"
          ],
          "name": "FHIR_AUTH"
        },
        {
          "description": "Full base URL of the FHIR API, such as https://fhir.example.org/fhir/R4.",
          "isRequired": true,
          "format": "string",
          "placeholder": "https://fhir.example.org/fhir/R4",
          "name": "FHIR_SERVER_URL"
        },
        {
          "description": "SMART Backend Services token endpoint. Required when FHIR_AUTH=smart unless it can be derived from FHIR_BASE_URL.",
          "format": "string",
          "placeholder": "https://fhir.example.org/oauth2/token",
          "name": "FHIR_TOKEN_URL"
        },
        {
          "description": "SMART Backend Services client ID. Required when FHIR_AUTH=smart.",
          "format": "string",
          "name": "FHIR_CLIENT_ID"
        },
        {
          "description": "Base64-encoded PKCS#8 private signing key. Required when FHIR_AUTH=smart.",
          "format": "string",
          "isSecret": true,
          "name": "FHIR_ACTIVE_KEY"
        },
        {
          "description": "Externally reachable JWKS URL for the signing key. Recommended for SMART authentication over stdio.",
          "format": "string",
          "placeholder": "https://example.org/.well-known/jwks.json",
          "name": "FHIR_JWKS_URL"
        },
        {
          "description": "FHIR release used for FHIRPath and response shaping.",
          "format": "string",
          "default": "R4",
          "choices": [
            "R4",
            "R4B",
            "R5"
          ],
          "name": "FHIR_VERSION"
        }
      ]
    }
  ]
}

Permissions

DeclaredDetected
Runs code—node
Installs—npm:fhirhydrant@0.17.3
Runs install scripts—None
NetworkNoneNone
Needs credentialsFHIR_ACTIVE_KEYFHIR_ACTIVE_KEY
Outside the workspace—None
Agent tools—None

Checks

Low risk · Nothing worth a warning was found.

Not reviewed by a person · Checked by rules; the model review is not switched on yet.

Versions

  1. #10.17.3latestOct 7, 2026