Outlook MCP
ClaimedMCP server that connects Claude (and other MCP clients) to Microsoft 365 via Microsoft Graph — Outlook email/calendar, OneDrive files, and Power Automate flows.
Install
git clone https://github.com/ryaker/outlook-mcp.git && cd outlook-mcp && npm installSet up this server
More in Productivity
Browse the full directoryBadge
Show this listing on your README and website
Get verified and your listing links back to your site with a do-follow link. The badge is optional while first-100 launch spots remain.
Security profile
Exposure: Extensive
Reaches several sensitive areas at once. Read the list before installing.
What this server can reach, from a static read of the shipped code. Nothing was executed and nothing here is a verdict: a browser tool has to run commands and an API wrapper has to call its API. Decide what fits your setup.
Detected
- Reads environment variables in bulk
Copies or enumerates the whole environment, which can include keys meant for other tools.
- Sends conversation content outward
Logs or forwards prompts, messages or tool results to a service outside your machine.
- Accesses credential files
References SSH keys, cloud credential files or token stores.
- Reads local configuration files
Loads a .env, .npmrc or config file. Normal for a server that needs an API key.
- Contains instructions aimed at AI agents
Text in code or agent-facing files that steers a model. Worth reading before you trust it.
- Runs unpinned packages at runtime
Executes npx or uvx without a version, so a compromised upstream release would run.
Dependencies with known advisories
- @modelcontextprotocol/inspector 0.10.2 Critical, CVE-2025-49596, CVE-2025-58444
- brace-expansion 1.1.11 High, CVE-2026-13149, CVE-2026-33750, CVE-2026-14257
- browserslist 4.28.1 High, CVE-2026-73088, CVE-2026-73089
- express-rate-limit 8.2.1 High, CVE-2026-30827
- fast-uri 3.1.0 High, CVE-2026-13676, CVE-2026-18446, CVE-2026-75975
- form-data 4.0.5 High, CVE-2026-12143
- hono 4.12.5 High, CVE-2026-56762, CVE-2026-47676, CVE-2026-47675
- @babel/core 7.28.6 Low, CVE-2026-49356
Left out of the profile
9 pattern matches in documentation, configuration or CI files were recorded but are not part of the profile, because they do not run when the server does. The owner dashboard lists them.
29 of 29 tools
Documented tools (29)
From project documentation. A server handshake does not verify each tool’s description or behavior.
accept-event
Accept event invitation
create-event
Create calendar event
create-folder
Create mail folder
create-rule
Create inbox rule
decline-event
Decline event invitation
delete-event
Delete calendar event
flow-list
List flows in environment
flow-list-environments
List Power Platform environments
flow-list-runs
Get flow run history
flow-run
Trigger a manual flow
flow-toggle
Enable/disable a flow
list-emails
List recent emails from inbox
list-events
List calendar events
list-folders
List mail folders
list-rules
List inbox rules
mark-as-read
Mark email as read/unread
move-emails
Move emails between folders
OneDrive
onedrive-create-folder
Create folder
onedrive-delete
Delete file or folder
onedrive-download
Get download URL
onedrive-list
List files in a path
onedrive-search
Search files by query
onedrive-share
Create sharing link
onedrive-upload
Upload small file (<4MB)
onedrive-upload-large
Chunked upload (>4MB)
read-email
Read email content
search-emails
Search emails with filters
send-email
Send a new email
Tool change history
FAQ
Questions about Outlook MCP Server
- How do I connect Outlook MCP Server to Claude?
- The listing records `git clone https://github.com/ryaker/outlook-mcp.git && cd outlook-mcp && npm install` as its setup step. Run it, then follow the repository's instructions for the client configuration; the listing names Claude Desktop, Claude Code as compatible clients.
- Is Outlook MCP Server free?
- MCPVault has not verified a licence for this server. Check the upstream terms and pricing before use; connected APIs may require a paid account.
- What can Outlook MCP Server do?
- Outlook MCP Server documents 29 tools to the agent, including accept-event, create-event, create-folder. The descriptions above come from project documentation. A live handshake does not test individual tool behavior.