npm · untappd-mcp
$npx -y untappd-mcp@2.3.1 UNTAPPD_ACCESS_TOKEN · secret — An Untappd access token you already hold. Supply it and no password is needed (username/password become optional).
UNTAPPD_USERNAME — Your Untappd username or login email. Required unless UNTAPPD_ACCESS_TOKEN is set.
UNTAPPD_PASSWORD · secret — Your Untappd account password (used only for xauth login). Required unless UNTAPPD_ACCESS_TOKEN is set.
UNTAPPD_CLIENT_ID · secret — Untappd mobile app client id (obtained by intercepting the app; see README). Needed to log in with username/password and for every write; a pre-seeded access token can read without it.
UNTAPPD_CLIENT_SECRET · secret — Untappd mobile app client secret. Needed to log in with username/password and for every write; a pre-seeded access token can read without it.
UNTAPPD_DEVICE_ID — Stable device UUID the token is keyed to (a default is provided).
UNTAPPD_UTV — API version param (default 4.0.0).
UNTAPPD_USER_AGENT — Override the User-Agent (default mimics the app).
UNTAPPD_TIMEZONE — IANA timezone (e.g. America/New_York) that check-ins are stamped with when the call doesn't pass timezone. Set it when the server runs somewhere other than the drinker's zone (e.g. a hosted connector, usually UTC). Defaults to the server process's zone.
UNTAPPD_PHOTO_DIR — The directory untappd_checkin's photo_path must be inside (several allowed, separated by :). Defaults to ~/Downloads/untappd-mcp — put a photo there to attach it. Any other file is refused, so a prompt-injected shout or comment can't publish an arbitrary image from your disk.
UNTAPPD_CACHE_DB — Path to the local check-in cache SQLite file (default ~/.untappd-mcp/checkins.db; created owner-only — dir 0700, file 0600). Local/stdio only.