npm · canvas-parent-mcp
$npx -y canvas-parent-mcp@2.1.9 CANVAS_BASE_URL (required) — Canvas instance base URL, e.g. https://cms.instructure.com
CANVAS_USERNAME — Canvas login username/email (recommended) — pair with CANVAS_PASSWORD for auto-login. No SSO/2FA.
CANVAS_PASSWORD · secret — Canvas password (recommended) — required iff CANVAS_USERNAME is set
CANVAS_TOKEN · secret — Canvas personal access token (advanced) — most schools have disabled token creation
CANVAS_CLIENT_ID — Canvas OAuth client ID (advanced — for SSO accounts that can't use username/password)
CANVAS_CLIENT_SECRET · secret — Canvas OAuth client secret (advanced)
CANVAS_REFRESH_TOKEN · secret — Canvas OAuth refresh token (advanced) — bootstrap via canvas-parent-mcp-qr-login
CANVAS_NAME — Friendly name for the Canvas instance (defaults to the host portion of the base URL)
CANVAS_SESSION_CACHE — Set to false to disable the on-disk session cache and re-authenticate on every process start. Defaults to enabled.
CANVAS_SESSION_FILE — Absolute path for the session cache file. Defaults to $MCP_DATA_DIR/.canvas-parent-mcp/session.json.
CANVAS_OUTPUT_DIR — Directory canvas_download_file may write into (default ~/Downloads). A relative destinationPath is resolved against it.
CANVAS_DISABLE_FETCHPROXY — Set to 1 to turn off the browser (fetchproxy) fallback, so missing credentials are a hard error instead.
FETCHPROXY_WS_PORT — Localhost port of the fetchproxy concentrator the ContextMint Bridge extension connects to (default 37149). Every MCP on one machine shares it, so move it for all of them or not at all.
FETCHPROXY_WS_HOST — Bind interface for the fetchproxy concentrator, a literal IP only (default 127.0.0.1). Keep on loopback; it exists for hosted deployments that run each MCP in its own network namespace.
FETCHPROXY_IDENTITY_DIR — Absolute path where the fetchproxy long-term identity keypair is stored (default ~/.fetchproxy/identity/).