Gmail MCP server — scope-gated tools (readonly / send / modify), path jails for attachments + downloads, hardened OAuth credentials, Sigstore-signed releases.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
process.env. You'll be asked to provide them before it can run.GMAIL_MCP_ATTACHMENT_DIRGMAIL_MCP_AUDIT_LOGGMAIL_MCP_AUDIT_LOG_VERBOSEGMAIL_MCP_DOWNLOAD_DIRGMAIL_MCP_DRY_RUNGMAIL_MCP_PAIRED_PATHGMAIL_MCP_RATE_LIMIT_DISABLE— Rate limit disable =true unset (limiter active) Kill-switch for the entire limiter. Use only for test suites or controlled batch operations.GMAIL_MCP_RATE_LIMIT_deleteGMAIL_MCP_RATE_LIMIT_sendGMAIL_MCP_RECIPIENT_PAIRING— Recipient pairing — pair_recipient (manage the ~/.gmail-mcp/paired.json allowlist when =true)GMAIL_MCP_SOURCEMAPGMAIL_MCP_STATE_DIR— Rate limit state dir =/abs/path ~/.gmail-mcp/ Where the rolling call-history for rate limiting is persisted (ratelimit.json, mode 0o600). Same directory is reused for any future state files.[](https://m8ven.ai/mcp/klodr-gmail-mcp-1i1k81)