Production-Ready MCP Server for Firefox Relay Anonymous Email Operations
// crafted for the security community β funding keeps it maintained
Firefox Relay MCP Server (anonsec-mcp-server) is a production-grade Model Context Protocol server that provides comprehensive anonymous email management capabilities through Firefox Relay addresses. Built with privacy, security, and operational excellence as core principles, this server enables AI agents and applications to send, receive, and process emails while maintaining complete anonymity.
- Privacy-First: All email operations maintain sender anonymity through Firefox Relay infrastructure
- PQC-Ready: Post-Quantum Cryptography ready encryption architecture for data at rest
- Production-Grade: Built with golden-standard programming practices for reliability and security
- MCP Native: Full Model Context Protocol 2.0 compliance with tools and resources
- Node.js >= 18.0.0
- npm or yarn
- Firefox Relay account and API access
# Clone the repository
git clone https://github.com/VRIL-LABS/anonsec-mcp-server.git
cd anonsec-mcp-server
# Install dependencies
npm install
# Build the project
npm run build
# Start the server
npm run devCreate a .env file with your Firefox Relay credentials:
FIREFOX_RELAY_API_KEY=your_api_key_here
ENCRYPTION_KEY=your_32_byte_hex_key_here
DATABASE_PATH=./data/anonsec.sqlite
PORT=3000The encryption key must be exactly 32 bytes (64 hex characters). Generate one with:
node -e "console.log(require('crypto').randomBytes(32).toString('hex'))"- List new/unread emails from Firefox Relay addresses
- Read full email content with decryption
- Retrieve all emails with filtering
- Get latest email from any relay address
- Extract OTP codes from emails
- Validate OTP format and confidence
- Check OTP expiration
- Re-extract OTP from email body
- Send anonymous emails through relay addresses
- Support for plain text and HTML content
- Custom headers and metadata
- OTP email simulation
.
βββ src/
β βββ index.ts # Server entry point and configuration
β βββ api/
β β βββ index.ts # Firefox Relay API client
β βββ config/
β β βββ index.ts # Configuration management
β βββ db/
β β βββ index.ts # SQLite database service
β βββ tools/
β β βββ all_emails.ts
β β βββ latest_email.ts
β β βββ latest_email_otp.ts
β β βββ new_emails.ts
β β βββ read_emails.ts
β β βββ send_anon_email.ts
β βββ types/
β β βββ index.ts # Type definitions
β βββ utils/
β βββ crypto.ts # Encryption utilities
β βββ otp.ts # OTP extraction utilities
βββ package.json
βββ tsconfig.json
βββ LICENSE
βββ README.md
The server provides 6 MCP tools:
- new_emails - Retrieve new/unread emails
- read_emails - Read full email content
- all_emails - List all emails with filtering
- latest_email - Get the latest email
- latest_email_otp - Extract OTP from latest email
- send_anon_email - Send anonymous emails
urn:anonsec:relay/addresses- Firefox Relay address managementurn:anonsec:email/collection- Email collection accessurn:anonsec:otp/emails- OTP emails collectionurn:anonsec:server/info- Server informationurn:anonsec:audit/logs- Audit logsurn:anonsec:email/{emailId}- Individual email access
- AES-256-GCM Encryption for data at rest
- Immutable audit logs for all operations
- Request ID tracking for traceability
- Security validation for sensitive operations
- OTP code masking in responses (never exposed)
- Sensitive data redaction in audit logs
The server follows a clean, production-ready architecture:
- MCP Server Layer - Server initialization, tool registration, request handling
- Tools Layer - Individual tool implementations
- Core Services Layer - Database, API client, configuration, types, utilities
- Data Layer - SQLite database with PQC-ready encryption
Contributions are welcome! See CONTRIBUTING.md for guidelines.
See SECURITY.md for vulnerability reporting and security practices.
This project is licensed under the MIT License - see LICENSE for details.