Repository navigation
docs(typeform): align README with new MCP docs and document CIMD - #504
alirezainfotech wants to merge 2 commits into
Conversation
|
Hi @poteto, I'm Alireza Khosravian, a Senior Software Engineer at Typeform. We'd like to update the documentation for our MCP server in the Cursor plugins docs. Would you be able to take a look at and consider merging this PR? We're also planning to deprecate DCR OAuth in the future. If possible, could you point us to the right person on your team to discuss updating the integration to use CIMD instead of DCR? cc: @cursoragent Thanks! |
|
Checked both against |
Refreshes the Typeform plugin README against Typeform's new MCP docs (https://www.typeform.com/developers/mcp/), and documents that Typeform's authorization server uses Client ID Metadata Documents (CIMD).
Changes
client_idis an HTTPS URL to a metadata document: no allowlist, no registration call, no client secret), PKCES256required, scopes granted all together,offline_accessfor refresh tokens, and.well-knowndiscovery.regionfield fromaccounts-list_accounts.accounts-list_accountsfirst,forms-public_get_capabilitiesbefore editing,validate_patch→patch_form→publish_form,insights-public_discoverbefore analytics.plugin.json:homepageupdated to the new docs URL, version bumped to 1.0.1.CHANGELOG.mdentry added.mcp.jsonis unchanged.Verification
Scopes, issuers,
client_id_metadata_document_supported: trueandcode_challenge_methods_supported: ["S256"]were checked against the live/.well-known/oauth-authorization-serverand the401challenge onapi.typeform.com,api.eu.typeform.comandapi.typeform.eu. The four developer-docs links return 200.Note
Low Risk
Documentation and plugin metadata only; no changes to MCP endpoints, auth implementation, or runtime behavior.
Overview
Bumps the Typeform Cursor plugin to 1.0.1 and refreshes user-facing docs to match Typeform’s new MCP site (
www.typeform.com/developers/mcp/).The README gains a dedicated Authentication section (OAuth 2.0, CIMD, required PKCE, bundled scopes,
offline_access, and well-known discovery), a data residency table for default vs two EU MCP hosts and their authorization servers, an expanded capability matrix (themes, automations, contacts, insights, feedback), recommended call order for accounts/forms/insights, and stronger Notes (scopes, plan gating, destructive actions, MCP gaps).plugin.jsonhomepage and doc links are updated; CHANGELOG records the docs refresh. MCP wiring is unchanged.Reviewed by Cursor Bugbot for commit 7336dd1. Bugbot is set up for automated code reviews on this repo. Configure here.