Aleph
Query live FP&A data, build reports and update dashboards from your AI assistant.
Query Fullstory product analytics and read session replays.
Opens Agent Studio, where connecting is one click. The connector URL below works in any MCP client.
Paste it into any MCP client. Setup docs
The Fullstory MCP server connects your product analytics and session replay archive to Claude, ChatGPT and any MCP-compatible agent. Fullstory documents 26 tools that build metrics and segments, compute funnels, surface frustration signals, and render actual replay frames of what a real user saw. Sign-in is OAuth or an API key. Every advertised scope is read-only.
Verified connector
Listed by Anthropic as a partner connector in its Connectors Directory.
Connection checked by Agentman on .
Anthropic states this reflects the level of review a connector received, not a security audit.
Tool names from Anthropic's directory listing. This server requires sign-in, so we could not read tool descriptions or parameter schemas.
build_segment and build_funnel as persisting — the discrepancy is Fullstory's, unresolved.session_close is documented as required; Fullstory states open sessions hold server-side resources and failing to close them may block further session_open calls.get_opportunities, get_opportunity and get_sessions_for_opportunity as available only to StoryAI Premium SKU customers.readOnlyHint value is published here.session_open's parameters. The tools reference says device_id and session_id; Fullstory's own session-review skill passes a session_url. Both may be accepted; we could not check.Yes, and this is its defining capability. The agentic session review tools render actual replay frames: session_screenshot returns a rendered image of what one identified end user saw at a timestamp, session_get_a11y_tree returns the page structure with roles and labels, and session_diff reports what changed between two moments. The playback:read scope grants this.
It returns whatever your capture configuration already stores, which is not nothing. Screenshots reproduce the rendered page, and get_session_events returns a full chronological transcript of clicks, navigations, errors and network requests for a named device and session. Fullstory states your masking, exclusion and element-blocking rules carry over unchanged, so the MCP inherits your privacy posture rather than adding one.
Effectively no, despite six tool names beginning with build or update. All eleven OAuth scopes the server advertised on 2026-08-22 end in read, with no write scope of any kind. Fullstory's own documentation states that write operations are not supported and that a metric or segment built through MCP is a draft you must save yourself in the Fullstory UI.
Fullstory documents 26; Anthropic's directory lists 25, and the two lists are not the same 25. Four documented tools are missing from the directory and three directory names appear in no Fullstory documentation we could reach. One documented tool, session_view, Fullstory marks as deprecated and no longer functional.
Treat it as untrusted input, always. Replay records what members of the public typed and saw on your site, so a screenshot, accessibility tree or event transcript can carry text an anonymous visitor chose to put there. That makes every session read a prompt-injection surface. Never let retrieved replay content act as instructions to the agent.
Because StoryAI is switched off for your org. Fullstory states the OAuth handshake still completes successfully when StoryAI is opted out, so your client reports the server as connected while it exposes zero tools. An account admin must enable both the StoryAI toggle and the Model Context Protocol toggle under Settings, then restart the client.
An admin who has enabled two toggles, and a Fullstory org without fine-grained access control. Fullstory requires both StoryAI features and the Model Context Protocol toggle switched on under Settings, Account Management, StoryAI Features. Fullstory also states orgs that require fine-grained access control are not admitted to the beta, because the MCP server does not yet honour it.
Yes, three requests per second with a burst allowance of 20. Fullstory applies that limit per org and per MCP endpoint, and states it is tracked separately from the public Server API limits. Separate caps also apply to results: session-returning tools default to 10 and cap at 50, and group-by queries cap at 50 rows.
/mcp/activations server (retrieved 2026-08-22) · retrieved 2026-08-22www-authenticate challenge naming eleven scopes, RFC 9728 metadata at https://api.fullstory.com/.well-known/oauth-protected-resource/mcp/fullstory, and authorization server metadata at https://auth.fullstory.com/.well-known/oauth-authorization-server (2026-08-22) · retrieved 2026-08-22Connect Fullstory once and your agents call these tools on their own: on a schedule, in a workflow, with nobody at the keyboard.