MCP Tools Directory
← Browse integrations

Developer tools

Outlook Personal MCP

Free account · sign-in required

Contact Outlook Personal MCP

Loading secure sign-in…

Tools for autonomous AI agents

About this integration

Full-control MCP server for a personal Outlook.com mailbox and calendar (Microsoft Graph).

Transport
stdio
Authentication
oauth
Initial setup
user-authorization
Runtime
unattended
Evidence
documented
Version
0.1.1
Package
mcp-outlook-personal
Last compatibility test
Not independently tested

Connect your agent

mcp-outlook-personal

Publisher documentation was reviewed from pinned captures. The package was not executed and no mailbox authorization occurred; documented tools can send mail and destructively modify mail or calendar data.

Capabilities: mail management, draft management, attachment handling, folder management, calendar management

Connected profiles

Additional details

Registry identifier

io.github.salahawad/outlook-personal-mcp

Source ↗ · Checked 2026-09-17
Published version

0.1.1

Source ↗ · Checked 2026-09-17
Metadata license

CC0-1.0; package licenses are separate

Source ↗ · Checked 2026-09-17
Package ecosystem

pypi

Source ↗ · Checked 2026-09-17
Required configuration names

OUTLOOK_MCP_CLIENT_ID

Source ↗ · Checked 2026-09-17
Source artifact

mcp-outlook-personal

Source ↗ · Checked 2026-09-19
Source manifest version

0.1.1

Source ↗ · Checked 2026-09-19
Unattended configuration

The server runs as a child process of the MCP host over local stdio and is launched through the documented uvx configuration.

Source ↗ · Checked 2026-09-19
Authentication and prerequisites

The operator registers an Azure application and completes per-user device-code OAuth; a local token cache is refreshed on later runs.

Source ↗ · Checked 2026-09-19
Connection configuration

The local server connects directly to Microsoft Graph and the configured Microsoft login authority; mailbox content does not use a publisher relay.

Source ↗ · Checked 2026-09-19
Review scope

Publisher documentation reviewed; package and integration endpoint not executed or independently security-audited.

Source ↗ · Checked 2026-09-19