Hostaway PMS: reservations, listings, calendars, financials, and guest messaging.
An open-source Model Context Protocol (MCP) server that connects AI assistants like Claude Desktop, Claude Code, and Cursor to the Hostaway property management API. Query reservations, listings, calendars, financials, and guest conversations using natural language. 1. Get your Account ID and Client Secret from your Hostaway dashboard under Settings > API 2. Make sure you have Node.js 18+…
Inferred from the transports this listing declares (stdio). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
Read out of the source npm actually ships, at scan time. The package was never executed. Tools registered dynamically at runtime, or hidden inside bundled or minified code, can be missed — so this is a floor on the tool surface, not a complete census of it.
list_reservationsNo description publishedThis tool published no description. Forge does not invent one.
get_reservationNo description publishedThis tool published no description. Forge does not invent one.
update_reservation_host_noteNo description publishedThis tool published no description. Forge does not invent one.
list_reservations_by_propertyNo description publishedThis tool published no description. Forge does not invent one.
list_listingsNo description publishedThis tool published no description. Forge does not invent one.
get_listingNo description publishedThis tool published no description. Forge does not invent one.
get_listing_imagesNo description publishedThis tool published no description. Forge does not invent one.
get_listing_custom_fieldsNo description publishedThis tool published no description. Forge does not invent one.
get_calendarNo description publishedThis tool published no description. Forge does not invent one.
get_gap_nightsNo description publishedThis tool published no description. Forge does not invent one.
create_calendar_blockNo description publishedThis tool published no description. Forge does not invent one.
delete_calendar_blockprivilegedNo description publishedThis tool published no description. Forge does not invent one.
get_reservation_financialsNo description publishedThis tool published no description. Forge does not invent one.
get_revenue_summaryNo description publishedThis tool published no description. Forge does not invent one.
get_payout_reportNo description publishedThis tool published no description. Forge does not invent one.
list_conversationsNo description publishedThis tool published no description. Forge does not invent one.
get_conversationNo description publishedThis tool published no description. Forge does not invent one.
send_messageNo description publishedThis tool published no description. Forge does not invent one.
0 of 18 tools published a description.
Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.
An open-source Model Context Protocol (MCP) server that connects AI assistants like Claude Desktop, Claude Code, and Cursor to the Hostaway property management API. Query reservations, listings, calendars, financials, and guest conversations using natural language. 1. Get your Account ID and Client Secret from your Hostaway dashboard under Settings > API 2. Make sure you have Node.js 18+ installed 3. Pick your AI client below and add the config — no cloning or building required Open your Claude…
Linked names open Forge’s index of every entry observed exposing that tool. Browse all indexed tools.
This package was last scanned before Forge began storing the resolved tree. The next scan will record it.