Hosted/gateway-ready Hevy fitness MCP: workouts, routines, templates.
Fork notice. This is an independently-maintained fork of , repackaged for multi-tenant MCP gateways. It ships the same Hevy tools wrapped in supergateway as an OCI image that speaks MCP streamable-HTTP over HTTP, instead of stdio. Use the upstream npm package for local/stdio use in Claude Desktop, Cursor, etc. A Model Context Protocol (MCP) server for the Hevy fitness tracking app, packaged as a…
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
Read out of the source npm actually ships, at scan time. The package was never executed. Tools registered dynamically at runtime, or hidden inside bundled or minified code, can be missed — so this is a floor on the tool surface, not a complete census of it.
get-body-measurementsNo description publishedThis tool published no description. Forge does not invent one.
get-body-measurementNo description publishedThis tool published no description. Forge does not invent one.
create-body-measurementNo description publishedThis tool published no description. Forge does not invent one.
update-body-measurementNo description publishedThis tool published no description. Forge does not invent one.
get-routine-foldersNo description publishedThis tool published no description. Forge does not invent one.
get-routine-folderNo description publishedThis tool published no description. Forge does not invent one.
create-routine-folderNo description publishedThis tool published no description. Forge does not invent one.
get-routinesNo description publishedThis tool published no description. Forge does not invent one.
get-routineNo description publishedThis tool published no description. Forge does not invent one.
create-routineNo description publishedThis tool published no description. Forge does not invent one.
update-routineNo description publishedThis tool published no description. Forge does not invent one.
get-exercise-templatesNo description publishedThis tool published no description. Forge does not invent one.
get-exercise-templateNo description publishedThis tool published no description. Forge does not invent one.
get-exercise-historyNo description publishedThis tool published no description. Forge does not invent one.
create-exercise-templateNo description publishedThis tool published no description. Forge does not invent one.
search-exercise-templatesNo description publishedThis tool published no description. Forge does not invent one.
get-webhook-subscriptionNo description publishedThis tool published no description. Forge does not invent one.
create-webhook-subscriptionNo description publishedThis tool published no description. Forge does not invent one.
delete-webhook-subscriptionprivilegedNo description publishedThis tool published no description. Forge does not invent one.
get-workoutsNo description publishedThis tool published no description. Forge does not invent one.
get-workoutNo description publishedThis tool published no description. Forge does not invent one.
get-workout-countNo description publishedThis tool published no description. Forge does not invent one.
get-workout-eventsNo description publishedThis tool published no description. Forge does not invent one.
create-workoutNo description publishedThis tool published no description. Forge does not invent one.
update-workoutNo description publishedThis tool published no description. Forge does not invent one.
0 of 25 tools published a description.
Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.
Fork notice. This is an independently-maintained fork of , repackaged for multi-tenant MCP gateways. It ships the same Hevy tools wrapped in supergateway as an OCI image that speaks MCP streamable-HTTP over HTTP, instead of stdio. Use the upstream npm package for local/stdio use in Claude Desktop, Cursor, etc. A Model Context Protocol (MCP) server for the Hevy fitness tracking app, packaged as a supergateway-wrapped OCI image for hosting behind an MCP gateway. Exposes MCP streamable-HTTP on and…
Linked names open Forge’s index of every entry observed exposing that tool. Browse all indexed tools.
This entry publishes no npm package, so Forge has no dependency tree for it. That is a gap in coverage — not a statement that it has no dependencies.