Search Upsalt venues, check availability, and book, view, or cancel a reservation.
Inferred from the transports this listing declares (streamable-http). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
Read from a real MCP initialize → tools/list handshake against the declared endpoint. No tool was ever invoked — tools/list is the read-only introspection call the protocol defines for this. It reflects what the server advertised at that moment; a hosted endpoint is not pinned to any version and can change without notice.
https://ai.upsalt.io/mcp/booking5 tools · 1435msfind-companyFind a company by its slug and return its public profile: services, opening hours, and booking configuration. Use this first to obtain the company_id needed by the other tools.Find a company by its slug and return its public profile: services, opening hours, and booking configuration. Use this first to obtain the company_id needed by the other tools.
| Parameter | Type | Description |
|---|---|---|
| slug* | string | The company slug, as found in its booking page URL. |
| business_type | string | Optional business type filter. |
list-available-slotsList the available booking slots for a company on a given date. Returns shifts and bookable hours; use the shift_id and hour when creating a booking.List the available booking slots for a company on a given date. Returns shifts and bookable hours; use the shift_id and hour when creating a booking.
| Parameter | Type | Description |
|---|---|---|
| company_id* | integer | The company id, as returned by the find-company tool. |
| date* | string | The date to check, in YYYY-MM-DD format (e.g. 2026-07-20). |
create-bookingCreate a booking for a company as a guest. Requires a date (YYYY/MM/DD), an hour and shift_id obtained from list-available-slots, and the guest contact details. On success, returns the reservation details including a token that can be used with get-booking-info and cancel-booking.Create a booking for a company as a guest. Requires a date (YYYY/MM/DD), an hour and shift_id obtained from list-available-slots, and the guest contact details. On success, returns the reservation details including a token that can be used with get-booking-info and cancel-booking.
| Parameter | Type | Description |
|---|---|---|
| company_id* | integer | The company id, as returned by the find-company tool. |
| date* | string | Booking date in YYYY/MM/DD format (e.g. 2026/07/20). Note the slashes. |
| hour* | string | Booking hour in HH:MM format, taken from list-available-slots. |
| shift_id* | integer | The shift id, taken from list-available-slots. |
| adults* | integer | Number of adults. |
| name* | string | Guest first name. |
| surname* | string | Guest last name. |
| email* | string | Guest email address. The booking confirmation and management token are sent here. |
| phone* | string | Guest phone number. |
| children | integer | Number of children. |
| babies | integer | Number of babies. |
| pets | integer | Number of pets. |
| vegan | boolean | Whether the party includes vegan guests. |
| vegetarian | boolean | Whether the party includes vegetarian guests. |
| gluten_free | boolean | Whether the party needs gluten-free options. |
| nuts_allergy | boolean | Whether the party has a nut allergy. |
| message | string | Optional message for the business. |
| pushchair | integer | Number of pushchairs. |
| wheelchair | integer | Number of wheelchairs. |
| highchair | integer | Number of highchairs. |
| optin | integer | Marketing opt-in flag (1 or 0). |
| latitude | number | Guest latitude, if known. |
| longitude | number | Guest longitude, if known. |
| country | string | Guest country. |
get-booking-infoRetrieve the details of an existing booking using the management token returned by create-booking.Retrieve the details of an existing booking using the management token returned by create-booking.
| Parameter | Type | Description |
|---|---|---|
| company_id* | integer | The company id the booking belongs to. |
| token* | string | The booking management token returned by create-booking. |
cancel-bookingCancel an existing booking using the management token returned by create-booking. This action is irreversible; confirm with the guest before calling it.Cancel an existing booking using the management token returned by create-booking. This action is irreversible; confirm with the guest before calling it.
| Parameter | Type | Description |
|---|---|---|
| token* | string | The booking management token returned by create-booking. |
5 of 5 tools published a description.
Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.
Search Upsalt venues, check availability, and book, view, or cancel a reservation.
Linked names open Forge’s index of every entry observed exposing that tool. Browse all indexed tools.
This entry publishes no npm package, so Forge has no dependency tree for it. That is a gap in coverage — not a statement that it has no dependencies.