Rockhopper

Audit who changed a cell in Excel or Google Sheets, run approval workflows, comment on versions.

Opens Agent Studio, where connecting is one click. The connector URL below works in any MCP client.

Paste it into any MCP client. Setup docs

What the Rockhopper connector does

The Rockhopper MCP server connects a spreadsheet audit and governance workspace — version control, change attribution and approval workflows over Excel and Google Sheets — to Claude, ChatGPT and any MCP-compatible agent. It answers who changed a cell, whether a human or an AI made the edit, and routes a workbook through sign-off. Sign-in is OAuth or a token.

Verified connector

Listed by Anthropic as a partner connector in its Connectors Directory.

Connection checked by Agentman on .

Anthropic states this reflects the level of review a connector received, not a security audit.

Rockhopper tools (22)

  • add_comment
  • approve_review
  • cancel_review
  • create_review_request
  • create_version
  • discard_changes
  • get_cell_history
  • get_file_comments
  • get_file_versions
  • get_reviews
  • get_unattributed_changes
  • list_files
  • rename_file
  • reply_to_comment
  • resolve_comment
  • search_files

Tool names from Anthropic's directory listing. This server requires sign-in, so we could not read tool descriptions or parameter schemas.

Limits

  • The tool count is not fixed. It varies from 7 to 22 by the granted scope and write families. Any number on a listing page, ours included, describes one configuration.
  • Six registered tools appear in no published list. enroll_file, search_drive_files, list_unenrolled_files, connect_microsoft, microsoft_link_status and disconnect_microsoft are in Rockhopper's published source but in neither Anthropic's directory nor Rockhopper's documentation table.
  • Rockhopper's own README is internally inconsistent. It tables update_file_description, a name no registrar registers, and omits rename_file, which does the job described.
  • The scope boundary does not isolate the destructive write. read-write grants comments, reviews, versions and file lifecycle together, so a token that may post a comment may also call discard_changes. The finer families exist in the code and in the backend's vocabulary, but the OAuth consent screen offers the coarse pair.
  • discard_changes changes a document other people have open. The edits survive in version history, but the live file does not, and recovery is a manual trip through the version list.
  • We could not read tools/list from the wire. The endpoint returned 401 anonymously on 2026-08-23, so the tool inventory and every safety annotation come from the published npm package at version 2.1.38 rather than from the running server. Rockhopper's changelog states the gateway consumes this package, but a deployed gateway could differ from the tag we read.
  • Google Sheets cannot be enrolled through the connector. enroll_file refuses Google links and accepts only SharePoint and OneDrive addresses, despite the product supporting Sheets.
  • Microsoft file discovery may need an administrator. Rockhopper's source returns a refusal stating only a Microsoft 365 administrator can approve Rockhopper's access, and that the user "cannot grant it themselves".
  • Discovery searches are capped at 20 per session and, in Rockhopper's own wording, waiting does not restore the budget.
  • No refresh tokens and no revocation endpoint. Rockhopper documents both as not yet built. Sessions expire after roughly 30 minutes and are revoked from the Access Tokens page instead.
  • The connector never edits cells or formulas. Rockhopper's directory description states this plainly, and no tool in the source contradicts it.

Frequently asked questions

Can the Rockhopper connector change my spreadsheet?

One tool can, and it is the one to watch. discard_changes throws away every uncommitted edit in a live workbook and reverts it to the last committed version, which rewrites what a person sees when they next open the file. No tool writes an individual cell or formula. Rockhopper preserves discarded edits in version history as a snapshot, so the data survives even though the live file does not.

How many tools does the Rockhopper MCP server have?

It depends on your token, so no single number is right. Anthropic's directory lists 16 and Rockhopper's docs table the same 16. The published npm source registers 22, and Rockhopper's own changelog states a read-only token that once saw 16 tools now sees 7. Four write families gate the rest, so the surface is decided at sign-in.

Does the Rockhopper connector reach my Microsoft credentials?

One tool deletes a stored credential. disconnect_microsoft removes the Microsoft grant Rockhopper holds for you, and it sits on the read floor every token gets rather than behind a write scope. Rockhopper requires an interactive login for it, so a personal access token cannot sever a connection it did not create. It appears in neither the directory nor the docs table.

What OAuth scopes does the Rockhopper MCP server request?

Two, and they draw a real line. Rockhopper's RFC 9728 resource descriptor advertised read-only and read-write on 2026-08-23, and its authorization server advertises the same pair. read-only lists files and reads history; read-write adds comments, reviews, versions and renames. The boundary separates reading from writing but not the routine write from the irreversible one.

Can the Rockhopper connector share a file with my colleagues?

Yes, through a parameter rather than a verb. enroll_file takes share_with, and the value team fans the workbook out to every member of your first team, minus you. Rockhopper's source instructs the model to ask the user every time and to refuse to enroll when the value is omitted. No tool name suggests sharing, so a verb census misses this path entirely.

What does the Rockhopper connector let an AI read?

Change history, comments and review records, not cell contents at large. Tools return which cells changed with old and new values, comment text with authors, and reviewer assignments. Rockhopper's data governance page states it does not index, search or analyze file contents beyond change tracking. Comment text is written by colleagues, so treat it as untrusted input.

Does the Rockhopper connector work with Google Sheets?

For reading yes, for adding files no. Rockhopper's directory description and product docs cover both Microsoft Excel and Google Sheets as enrolled file types. But the enroll_file tool in the published source is Microsoft-only — its description states Google Sheets and Drive links are refused, and only SharePoint and OneDrive addresses resolve. Enroll a Sheet from the web app instead.

Are there rate limits on the Rockhopper MCP server?

Yes, two separate ones. Rockhopper documents personal access tokens as throttled to 120 requests per minute by default, surfaced as a too-many-requests error. Separately the published source caps OneDrive and SharePoint discovery at 20 searches per session, and its own refusal text states this is a fixed limit that waiting does not restore.

Do remote Rockhopper sessions use long-lived tokens?

No. Rockhopper documents that its hosted gateway mints a short-lived personal access token per session, defaulting to 30 minutes, and rotates it automatically. Long-lived tokens never leave Rockhopper's infrastructure. There is no refresh token and no revocation endpoint yet, so an expired session means repeating the sign-in flow.

Sources

Use it in an agent

Put Rockhopper to work.

Connect Rockhopper once and your agents call these tools on their own: on a schedule, in a workflow, with nobody at the keyboard.

Call (650) 285-1019Our AI receptionist answers.