Base44
Build and edit Base44 apps from an AI assistant, and query data your app's users submit.
Search models, datasets, papers and docs on the Hugging Face Hub, and call Gradio Spaces.
Opens Agent Studio, where connecting is one click. The connector URL below works in any MCP client.
Paste it into any MCP client. Setup docs
The Hugging Face MCP server connects Claude, ChatGPT or any MCP-compatible agent to the Hugging Face Hub — searching models, datasets, papers and documentation. It also carries Gradio Spaces: applications published by other Hub users that an agent can invoke. The tool list is configured per user, so Anthropic's ten are one configuration rather than a fixed surface.
Verified connector
Listed by Anthropic as a partner connector in its Connectors Directory.
Connection checked by Agentman on .
Anthropic states this reflects the level of review a connector received, not a security audit.
Tool names from Anthropic's directory listing. This server requires sign-in, so we could not read tool descriptions or parameter schemas.
gr1_/gr2_ digits are slot numbers in one user's configured list. The same prefix points at different applications for different users.gradio=none is not a documented keyword. The README documents bouquet, mix and the no-image parameter but not this one. Our reading — a Space-ID list matching nothing — comes from source and from a live comparison, not from a vendor statement.contribute-repos, jobs and inference-api are advertised as supported by the resource descriptor.destructiveHint: true and readOnlyHint: false. None appeared in our anonymous session or in the snapshot, but they are part of the server.It controls which Gradio Spaces the server advertises. Hugging Face's source reads the `gradio` parameter as a comma-separated list of Space IDs and forwards it as an internal header. A value matching no real Space, such as none, leaves the Gradio set empty. We confirmed the built-in tools are unaffected: an anonymous handshake returned the same four tools with and without it.
No, and this is the most important thing to know about the listing. Hugging Face resolves tool selection per request from each user's own configuration at their MCP settings page, plus optional URL parameters. The ten tools Anthropic's directory records are one account's configuration captured at snapshot time, not a fixed catalogue every user receives.
Your quota pays. A Gradio Space is an application published by a community member that runs on Hugging Face infrastructure, and calling one executes that third party's code with the arguments your agent sends. Hugging Face documents that ZeroGPU quota is consumed by the caller when the tool runs, and that PRO subscribers receive 40 minutes daily.
Not for basic use. An anonymous handshake succeeded on 2026-08-19 and returned four read-only tools, with the server itself noting that rate limits apply and suggesting a token for higher limits. Hugging Face documents that a read-scoped token is required for Space tools. Accounts are free to create.
For the tools we observed, yes — all four carried a read-only annotation. But the label is scoped to your account, not to compute. Invoking a Gradio Space runs someone else's code and spends your GPU quota without writing to your profile. Hugging Face's source also defines job, sandbox and repository-creation tools that are explicitly not read-only.
Its documentation describes no review step. Any user can publish a Gradio Space, add one line enabling MCP support, and the Space automatically receives a badge letting anyone add it as a tool. The two Spaces named in Anthropic's snapshot are ordinary public demos, but the publishing path itself involves no documented vetting of the code.
The Hub's own catalogues. The live search tool queries models, datasets and Spaces, defaulting to models and datasets, capped at 100 results per repository type and truncated near 12,500 tokens. A second tool reaches documentation, papers, collections and buckets through hf:// URIs. All of it is public Hub content rather than the open web.
.md suffix; the substantive public documentation, and the source for the quota-is-consumed-by-the-caller statement and the one-click Space publishing path) · retrieved 2026-08-19large/xlarge 1×/2× quota cost) · retrieved 2026-08-19gradio becomes x-mcp-gradio and that login sets x-mcp-force-auth) · retrieved 2026-08-19gradio value is a comma-separated Space-ID list) · retrieved 2026-08-19gr1_/gr2_ digits are 1-based slot indexes) · retrieved 2026-08-19limit range 1–100 default 20, default repo types, 12,500-token output cap) · retrieved 2026-08-19destructiveHint: true, readOnlyHint: false) · retrieved 2026-08-19evalstate/flux1_schnell and abidlabs/EasyGhibli — https://huggingface.co/api/spaces/evalstate/flux1_schnell (fetched 2026-08-19; both public Gradio Spaces tagged mcp-server, requesting zero-a10g, and both in error states at check time) · retrieved 2026-08-19POST to https://huggingface.co/mcp returns HTTP 200 and a session; the same request to https://huggingface.co/mcp?login&gradio=none returns HTTP 401 with www-authenticate naming a resource_metadata URL that retains the query string. Server reported version 0.4.9 · retrieved 2026-08-19readOnlyHint: true. The identical 4 were returned with gradio=none appended. prompts/list returned an error stating the method is not supported · retrieved 2026-08-19resource value; the path-insert form returns an HTML application shell) · retrieved 2026-08-19.well-known/openid-configuration) · retrieved 2026-08-19huggingface.co/robots.txt allows all user agents on all paths and lists one sitemap (fetched 2026-08-19). No Content-Signal header was present on the root or on robots.txt, and llms.txt returns 404 · retrieved 2026-08-19Connect Hugging Face once and your agents call these tools on their own: on a schedule, in a workflow, with nobody at the keyboard.