On this page

Installed MCP packages (npm and Python)

GET/admin/mcp/packages

Operation listMcpPackagesAuthBearer token

Responses

StatusDescriptionBody
200PackagesPackagesResponse
packagesrequiredarray<InstalledPackage>
6 fields of packages
packagerequiredstring
versionrequiredstring
commandrequiredstring

Resolved entry point

installPathrequiredstring
installedAtrequiredinteger
runtimestring

One of npm, uvx, pip

Errors 401 · 403 · 503
401Missing or wrong bearer token (unauthorized)
403The request guard refused it: Host header not allowed (host_not_allowed, DNS-rebinding protection) or a browser cross-site request (cross_origin)host_not_allowedcross_origin
503The subsystem is not configured on this daemon

Error bodies use the error format.

Example

Request
curl "http://127.0.0.1:7385/admin/mcp/packages" \
  -H "Authorization: Bearer $ADF_DAEMON_TOKEN"

Install an MCP npm package

POST/admin/mcp/packages/npm

Operation installMcpNpmPackageAuthBearer token

Request bodyapplication/json · PackageInstallBody · required

FieldTypeDescription
packagestring

Package name (alias: name)

namestring
versionstring

Python and sandbox packages

agentNamestring

Sandbox: recorded as installedBy

Responses

StatusDescriptionBody
200InstalledPackageInstallResponse
successrequiredboolean

Value true

installedrequiredobject
6 fields of installed · InstalledPackage
packagerequiredstring
versionrequiredstring
commandrequiredstring

Resolved entry point

installPathrequiredstring
installedAtrequiredinteger
runtimestring

One of npm, uvx, pip

Errors 400 · 401 · 403 · 500 · 503
400Invalid request: missing or malformed field, query parameter or body. A body Fastify cannot parse gets Fastify's own shape (statusCode, code, error, message).bad_requestFST_ERR_CTP_EMPTY_JSON_BODY
401Missing or wrong bearer token (unauthorized)
403The request guard refused it: Host header not allowed (host_not_allowed, DNS-rebinding protection) or a browser cross-site request (cross_origin)host_not_allowedcross_origin
500Unexpected runtime failure
503The subsystem is not configured on this daemon

Error bodies use the error format.

Example

Request
curl -X POST "http://127.0.0.1:7385/admin/mcp/packages/npm" \
  -H "Authorization: Bearer $ADF_DAEMON_TOKEN" \
  -H "Content-Type: application/json" \
  -d '{"package":"@modelcontextprotocol/server-filesystem"}'

Uninstall an MCP npm package

DELETE/admin/mcp/packages/npm

Operation uninstallMcpNpmPackageAuthBearer token

Query parameters

NameTypeDescription
packagerequiredstring

Package name

Responses

StatusDescriptionBody
200UninstalledSuccessResponse
successrequiredboolean
Errors 400 · 401 · 403 · 500 · 503
400Invalid request: missing or malformed field, query parameter or body. A body Fastify cannot parse gets Fastify's own shape (statusCode, code, error, message).bad_requestFST_ERR_CTP_EMPTY_JSON_BODY
401Missing or wrong bearer token (unauthorized)
403The request guard refused it: Host header not allowed (host_not_allowed, DNS-rebinding protection) or a browser cross-site request (cross_origin)host_not_allowedcross_origin
500Unexpected runtime failure
503The subsystem is not configured on this daemon

Error bodies use the error format.

Example

Request
curl -X DELETE "http://127.0.0.1:7385/admin/mcp/packages/npm?package=PACKAGE" \
  -H "Authorization: Bearer $ADF_DAEMON_TOKEN"
Response 200
{
  "success": true
}

Install an MCP Python package (uvx)

POST/admin/mcp/packages/python

Operation installMcpPythonPackageAuthBearer token

Request bodyapplication/json · PackageInstallBody · required

FieldTypeDescription
packagestring

Package name (alias: name)

namestring
versionstring

Python and sandbox packages

agentNamestring

Sandbox: recorded as installedBy

Responses

StatusDescriptionBody
200InstalledPackageInstallResponse

Fields as in PackageInstallResponse above.

Errors 400 · 401 · 403 · 500 · 503
400Invalid request: missing or malformed field, query parameter or body. A body Fastify cannot parse gets Fastify's own shape (statusCode, code, error, message).bad_requestFST_ERR_CTP_EMPTY_JSON_BODY
401Missing or wrong bearer token (unauthorized)
403The request guard refused it: Host header not allowed (host_not_allowed, DNS-rebinding protection) or a browser cross-site request (cross_origin)host_not_allowedcross_origin
500Unexpected runtime failure
503The subsystem is not configured on this daemon

Error bodies use the error format.

Example

Request
curl -X POST "http://127.0.0.1:7385/admin/mcp/packages/python" \
  -H "Authorization: Bearer $ADF_DAEMON_TOKEN" \
  -H "Content-Type: application/json" \
  -d '{"package":"mcp-server-fetch"}'

Uninstall an MCP Python package

DELETE/admin/mcp/packages/python

Operation uninstallMcpPythonPackageAuthBearer token

Query parameters

NameTypeDescription
packagerequiredstring

Package name

Responses

StatusDescriptionBody
200UninstalledSuccessResponse
successrequiredboolean
Errors 400 · 401 · 403 · 500 · 503
400Invalid request: missing or malformed field, query parameter or body. A body Fastify cannot parse gets Fastify's own shape (statusCode, code, error, message).bad_requestFST_ERR_CTP_EMPTY_JSON_BODY
401Missing or wrong bearer token (unauthorized)
403The request guard refused it: Host header not allowed (host_not_allowed, DNS-rebinding protection) or a browser cross-site request (cross_origin)host_not_allowedcross_origin
500Unexpected runtime failure
503The subsystem is not configured on this daemon

Error bodies use the error format.

Example

Request
curl -X DELETE "http://127.0.0.1:7385/admin/mcp/packages/python?package=PACKAGE" \
  -H "Authorization: Bearer $ADF_DAEMON_TOKEN"
Response 200
{
  "success": true
}

Installed channel adapter packages

GET/admin/adapters/packages

Operation listAdapterPackagesAuthBearer token

Responses

StatusDescriptionBody
200PackagesPackagesResponse

Fields as in PackagesResponse above.

Errors 401 · 403 · 503
401Missing or wrong bearer token (unauthorized)
403The request guard refused it: Host header not allowed (host_not_allowed, DNS-rebinding protection) or a browser cross-site request (cross_origin)host_not_allowedcross_origin
503The subsystem is not configured on this daemon

Error bodies use the error format.

Example

Request
curl "http://127.0.0.1:7385/admin/adapters/packages" \
  -H "Authorization: Bearer $ADF_DAEMON_TOKEN"

Install a channel adapter npm package

POST/admin/adapters/packages

Operation installAdapterPackageAuthBearer token

Request bodyapplication/json · PackageInstallBody · required

FieldTypeDescription
packagestring

Package name (alias: name)

namestring
versionstring

Python and sandbox packages

agentNamestring

Sandbox: recorded as installedBy

Responses

StatusDescriptionBody
200InstalledPackageInstallResponse

Fields as in PackageInstallResponse above.

Errors 400 · 401 · 403 · 500 · 503
400Invalid request: missing or malformed field, query parameter or body. A body Fastify cannot parse gets Fastify's own shape (statusCode, code, error, message).bad_requestFST_ERR_CTP_EMPTY_JSON_BODY
401Missing or wrong bearer token (unauthorized)
403The request guard refused it: Host header not allowed (host_not_allowed, DNS-rebinding protection) or a browser cross-site request (cross_origin)host_not_allowedcross_origin
500Unexpected runtime failure
503The subsystem is not configured on this daemon

Error bodies use the error format.

Example

Request
curl -X POST "http://127.0.0.1:7385/admin/adapters/packages" \
  -H "Authorization: Bearer $ADF_DAEMON_TOKEN" \
  -H "Content-Type: application/json" \
  -d '{"package":"@modelcontextprotocol/server-filesystem"}'

Uninstall a channel adapter package

DELETE/admin/adapters/packages

Operation uninstallAdapterPackageAuthBearer token

Query parameters

NameTypeDescription
packagerequiredstring

Package name

Responses

StatusDescriptionBody
200UninstalledSuccessResponse
successrequiredboolean
Errors 400 · 401 · 403 · 500 · 503
400Invalid request: missing or malformed field, query parameter or body. A body Fastify cannot parse gets Fastify's own shape (statusCode, code, error, message).bad_requestFST_ERR_CTP_EMPTY_JSON_BODY
401Missing or wrong bearer token (unauthorized)
403The request guard refused it: Host header not allowed (host_not_allowed, DNS-rebinding protection) or a browser cross-site request (cross_origin)host_not_allowedcross_origin
500Unexpected runtime failure
503The subsystem is not configured on this daemon

Error bodies use the error format.

Example

Request
curl -X DELETE "http://127.0.0.1:7385/admin/adapters/packages?package=PACKAGE" \
  -H "Authorization: Bearer $ADF_DAEMON_TOKEN"
Response 200
{
  "success": true
}

Packages available to the code sandbox

GET/admin/sandbox/packages

Operation listSandboxPackagesAuthBearer token

Responses

StatusDescriptionBody
200PackagesSandboxPackagesResponse
basePathrequiredstring
modulesrequiredarray<string>
packagesrequiredarray<SandboxPackage>
5 fields of packages
namerequiredstring
versionrequiredstring
installedAtrequiredinteger
size_mbrequirednumber
installedBystring
Errors 401 · 403 · 503
401Missing or wrong bearer token (unauthorized)
403The request guard refused it: Host header not allowed (host_not_allowed, DNS-rebinding protection) or a browser cross-site request (cross_origin)host_not_allowedcross_origin
503The subsystem is not configured on this daemon

Error bodies use the error format.

Example

Request
curl "http://127.0.0.1:7385/admin/sandbox/packages" \
  -H "Authorization: Bearer $ADF_DAEMON_TOKEN"

Install a sandbox package

POST/admin/sandbox/packages

Operation installSandboxPackageAuthBearer token

Request bodyapplication/json · PackageInstallBody · required

FieldTypeDescription
packagestring

Package name (alias: name)

namestring
versionstring

Python and sandbox packages

agentNamestring

Sandbox: recorded as installedBy

Responses

StatusDescriptionBody
200InstalledSandboxInstallResponse
successrequiredboolean

Value true

installedrequiredobject
4 fields of installed
namerequiredstring
versionrequiredstring
size_mbrequirednumber
already_installedrequiredboolean
Errors 400 · 401 · 403 · 500 · 503
400Invalid request: missing or malformed field, query parameter or body. A body Fastify cannot parse gets Fastify's own shape (statusCode, code, error, message).bad_requestFST_ERR_CTP_EMPTY_JSON_BODY
401Missing or wrong bearer token (unauthorized)
403The request guard refused it: Host header not allowed (host_not_allowed, DNS-rebinding protection) or a browser cross-site request (cross_origin)host_not_allowedcross_origin
500Unexpected runtime failure
503The subsystem is not configured on this daemon

Error bodies use the error format.

Example

Request
curl -X POST "http://127.0.0.1:7385/admin/sandbox/packages" \
  -H "Authorization: Bearer $ADF_DAEMON_TOKEN" \
  -H "Content-Type: application/json" \
  -d '{"package":"lodash","version":"4.17.21"}'

Uninstall a sandbox package

DELETE/admin/sandbox/packages

Operation uninstallSandboxPackageAuthBearer token

Query parameters

NameTypeDescription
namestring

Package name (alias: package)

example: lodash

packagestring

Alias of name

Responses

StatusDescriptionBody
200success is false when it was not installedSuccessResponse
successrequiredboolean
Errors 400 · 401 · 403 · 503
400Invalid request: missing or malformed field, query parameter or body. A body Fastify cannot parse gets Fastify's own shape (statusCode, code, error, message).bad_requestFST_ERR_CTP_EMPTY_JSON_BODY
401Missing or wrong bearer token (unauthorized)
403The request guard refused it: Host header not allowed (host_not_allowed, DNS-rebinding protection) or a browser cross-site request (cross_origin)host_not_allowedcross_origin
503The subsystem is not configured on this daemon

Error bodies use the error format.

Example

Request
curl -X DELETE "http://127.0.0.1:7385/admin/sandbox/packages" \
  -H "Authorization: Bearer $ADF_DAEMON_TOKEN"
Response 200
{
  "success": true
}

Which of these packages are missing

POST/admin/sandbox/packages/check

Operation checkSandboxPackagesAuthBearer token

Request bodyapplication/json · SandboxCheckBody · required

FieldTypeDescription
packagesrequiredarray<object>
2 fields of packages
namerequiredstring
versionrequiredstring

Responses

StatusDescriptionBody
200Missing packagesSandboxCheckResponse
successrequiredboolean

Value true

missingrequiredarray<object>
2 fields of missing
namerequiredstring
versionrequiredstring
Errors 400 · 401 · 403 · 503
400Invalid request: missing or malformed field, query parameter or body. A body Fastify cannot parse gets Fastify's own shape (statusCode, code, error, message).bad_requestFST_ERR_CTP_EMPTY_JSON_BODY
401Missing or wrong bearer token (unauthorized)
403The request guard refused it: Host header not allowed (host_not_allowed, DNS-rebinding protection) or a browser cross-site request (cross_origin)host_not_allowedcross_origin
503The subsystem is not configured on this daemon

Error bodies use the error format.

Example

Request
curl -X POST "http://127.0.0.1:7385/admin/sandbox/packages/check" \
  -H "Authorization: Bearer $ADF_DAEMON_TOKEN" \
  -H "Content-Type: application/json" \
  -d '{"packages":[{"name":"lodash","version":"4.17.21"}]}'