npm · @mgcrea/mcp-apple-messages
$npx -y @mgcrea/mcp-apple-messages@1.26.0 APPLE_MESSAGES_ALLOW_WRITES — Register the mutating tools. Off by default, and the gate decides whether the write tools exist at all rather than merely refusing — an agent with writes off cannot see them.
APPLE_MESSAGES_ALLOW_CODES — Register apple_messages_find_codes, which reads one-time codes out of recent messages. Its own gate rather than allowWrites: it is a read, and the one read most worth an explicit decision.
APPLE_MESSAGES_ALLOW_FILE_SEND — Let apple_messages_send_message attach a local file. Off by default even with writes on, because a path argument is a way to send anything the server can read.