Connect
Optimize
Secure
Announcing StackOne Defender: leading open-source prompt injection guard for your agent • Read More →
Production-ready PostHog MCP server with 63 extensible actions — plus built-in authentication, security, and optimized execution.
Coverage
Create, read, update, and delete across PostHog — and extend your agent's capabilities with custom actions.
Authentication
Per-user OAuth in one call. Your PostHog MCP server gets session-scoped tokens with zero credentials stored on your infra.
Agent Auth →Security
Every PostHog tool response scanned for prompt injection in milliseconds — 88.7% accuracy, all running on CPU.
Prompt Injection Defense →Performance
Free up to 96% of your agent's context window to enhance reasoning and reduce cost, on every PostHog call.
Tools Discovery →A PostHog MCP server lets AI agents read and write PostHog data through the Model Context Protocol — Anthropic's open standard for connecting LLMs to external tools. StackOne's PostHog MCP server ships with 63 pre-built actions, fully extensible via the Connector Builder — plus managed authentication, prompt injection defense, and optimized agent context. Connect it from MCP clients like Claude Desktop, Cursor, and VS Code, or from agent frameworks like OpenAI Agents SDK, LangChain, and Vercel AI SDK.
Every action from PostHog's API, ready for your agent. Create, read, update, and delete — scoped to exactly what you need.
Retrieve details of a specific action
Update an action's configuration
Delete an action (soft delete)
Retrieve details of a specific dashboard
Update a dashboard's configuration
Retrieve details of a specific feature flag
Update a feature flag's configuration
Create a new metric for a group type
Retrieve details of a specific group type metric
Update a group type metric's configuration
Delete a group type metric
Retrieve details of a specific insight
Update an insight's configuration
Delete an insight (soft delete)
Update a member's details
Remove a member from the organization
Create a new organization
Retrieve a list of organizations
Delete an organization
Create a new project within an organization
Retrieve a list of all projects in the organization
Delete a project
Create a new role
Retrieve details of a specific role
Update a role's details
Delete a role
Assign a user to a role
Retrieve details of a specific role membership
Remove a user from a role
Update a session recording's metadata
Delete a session recording
Retrieve details of a specific user
Update a user's details
Delete a user
Create a new action
Create a new dashboard
Create a new feature flag
Create a new insight
Retrieve a list of all actions
Retrieve activity log entries for a project
Retrieve a list of all alerts
Retrieve a list of all dashboards
Retrieve a list of all feature flags
Retrieve a list of all group types
Retrieve metrics for a specific group type
Retrieve a list of all insights
Retrieve a list of organization members
Retrieve details of a specific organization
List all organization-level integrations
List all projects in an organization
Retrieve details of a specific project
Retrieve a list of all roles
List all memberships for a specific role
Retrieve a list of all session recordings
Retrieve a list of all users
Update group types metadata
Update an organization's settings
Update a project's configuration
Mark product onboarding as complete
Delete a group type
Send a single event to PostHog
Send multiple events to PostHog in a single request
Move a project to a different organization
One endpoint. Any framework. Your agent is talking to PostHog in under 10 lines of code.
MCP Clients
Agent Frameworks
{
"mcpServers": {
"stackone": {
"command": "npx",
"args": [
"-y",
"mcp-remote@latest",
"https://api.stackone.com/mcp?x-account-id=<account_id>",
"--header",
"Authorization: Basic <YOUR_BASE64_TOKEN>"
]
}
}
}114+ actions
104+ actions
101+ actions
100+ actions
80+ actions
53+ actions
34+ actions
Anthropic's code_execution processes data already in context. Custom MCP code mode keeps raw tool responses in a sandbox. 14K tokens vs 500.
11 min
Benchmarking BM25, TF-IDF, and hybrid search for MCP tool discovery across 916 tools. The 80/20 TF-IDF/BM25 hybrid hits 21% Top-1 accuracy in under 1ms.
10 min
MCP tools that read emails, CRM records, and tickets are indirect prompt injection vectors. Here's how we built a two-tier defense that scans tool results in ~11ms.
12 min
origin_owner_id.All the tools you need to build and scale AI agent integrations, with best-in-class connectivity, execution, and security.