PRDCT-580 followup: deferred project selection + storage-token deprecation - #1060
Conversation
…ation The MCP server's OAuth login now requests a projectless scope and no longer picks a single project at the authorize step -- project selection happens afterward via get_accessible_projects/ set_project_scope tool calls in the conversation. Updates all per-client setup steps accordingly and adds one shared "Choosing Your Project(s)" section. Also documents the browser-based login/logout CLI as the recommended local-server auth path and flags the static KBC_STORAGE_TOKEN configuration as deprecated (still works during a migration period, removal planned for a future release).
|
@claude review |
|
The latest updates on your projects. Learn more about Vercel for GitHub.
|
There was a problem hiding this comment.
Pull request overview
This PR updates the Keboola MCP Server documentation to reflect the newer “projectless” OAuth flow (project selection deferred to in-conversation scoping) and to introduce guidance around deprecating legacy static token-based local setups in favor of browser-based CLI login.
Changes:
- Replaces “authenticate and select the project” phrasing across client setup steps with deferred project selection, and adds a shared “Choosing Your Project(s)” section.
- Adds a Storage Token deprecation callout plus a new “Authenticating Without a Static Storage Token” section documenting
login/logoutand non-interactive alternatives.
💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.
The page's tool inventory is a hand-copy of TOOLS.md in keboola/mcp-server, so it drifts. Swept the whole page against TOOLS.md (sha 3848c2f, 2026-07-30): - TOOLS.md annotates 20 tools `read-only`; the page listed 16. The delta is exactly the four Semantic tools — added as a `Semantic` row. - Available Tools covered every TOOLS.md category except Semantic — added a "Semantic layer" bullet in the page's existing voice. - Every other tool name and category on the page is still current; no other edits needed. Deliberately not touched: `get_accessible_projects` / `set_project_scope` are not in TOOLS.md and are covered by #1060 (Martin Vasko), which lands the deferred-project-selection copy. Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
keboola-pr-reviewer-bot
left a comment
There was a problem hiding this comment.
Verdict: needs_human (risk 3/5) · profile docs
Escalate: well-written MCP docs update, but it asserts new unverifiable product behaviour and is stacked on an open PR.
Impact flags: possible rollback re-introduction — see Check Run summary.
Concerns:
src/content/docs/ai/mcp-server/index.md: Unverifiable claim: OAuth now defers project selection via a projectless scope.src/content/docs/ai/mcp-server/index.md: Unverifiable claim: KBC_STORAGE_TOKEN deprecated; login/logout CLI and token-prefix semantics.src/content/docs/ai/mcp-server/index.md: Stacked on still-open #1050; base is feature branch, not main.
Suggested reviewers: @keboola/docs
Jira issue(s): PRDCT-580 (follow-up)
Changes:
PRDCT-580-mcp-mergeas the base, notmain.projectlessscope and defers project selection to in-conversationget_accessible_projects/set_project_scopetool calls. Added one shared "Choosing Your Project(s)" section, linked from each client's steps.KBC_STORAGE_TOKENlocal/CLI setups (Docker + uv sections), and documents the browser-basedlogin/logoutCLI as the recommended replacement, including theKBC_PROJECT_ID/kbc_at_/kbc_pat_path for containers/CI where a browser isn't available.npm run buildclean, 256 pages (same count as PRDCT-580: merge dev MCP page into help MCP (unit 2) #1050's own verification).Context: this was originally two separate PRs (keboola/developers-docs#404, closed — that page is being deleted per this PRDCT-580 effort; and an earlier connection-docs PR #1059, closed — it was based on the pre-consolidation duplicate page). Re-landing here against the actual future content.