Install
$ agentstack add mcp-retyc-retyc-cli ✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
Verified badge
Passed review? Show it. Paste this badge into your README, it links to the public security report.
Reliability & compatibility
Declared compatibility
Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.
We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.
How agent discovery & health will work →About
Retyc CLI
> Official command-line interface for Retyc - send transfers and manage datarooms directly from > your terminal. Also runs as a local [MCP server](doc/mcp.md): connect your AI agent and control Retyc in plain > language.
What is Retyc?
Retyc is a European sovereign file-sharing platform with end-to-end post-quantum encryption. Data stays in Europe, GDPR-compliant by design.
retyc-cli lets you integrate Retyc transfers and datarooms into your scripts, pipelines, and workflows - no browser required.
Installation
Pre-compiled binaries (recommended)
Download the binary for your platform from the latest release.
With go install
go install -tags prod github.com/retyc/retyc-cli@latest
From source
git clone https://github.com/retyc/retyc-cli.git
cd retyc-cli
go build -tags prod -ldflags "-X github.com/retyc/retyc-cli/cmd.Version=$(git describe --tags --always)" -o retyc .
With Docker
# Docker Hub
docker pull retyc/retyc-cli:latest
# GitHub Container Registry
docker pull ghcr.io/retyc/retyc-cli:latest
Quick start
# 1. Authenticate (opens a browser tab, no password stored)
retyc auth login
# 2. Send a file
retyc transfer create report.pdf
# 3. List your transfers
retyc transfer ls
# 4. Download a transfer
retyc transfer download
Security
- Authentication: OIDC device flow (no password ever stored locally)
- File data + metadata: end-to-end encrypted with AGE post-quantum hybrid keys
- Private key caching (Linux only): the decrypted AGE identity is stored in the kernel session keyring and is never
written to disk. It is scoped to the current terminal session, isolated from other users and sessions, and uses a sliding TTL (default: 60 seconds). Each access refreshes the expiration timer.
- Transport: TLS enforced by default
MCP Server
retyc-cli runs as a Model Context Protocol server — connect it to your AI agent and control Retyc in plain language:
> "Create a dataroom called 'Release v2', upload ./dist/, and add alice@example.com as editor." > "Send all PDFs in ./reports/ to bob@example.com, expire in 7 days." > "List my latest transfers and download the most recent one into ~/Downloads/."
Quick setup with Claude Code:
# Use read -s to avoid storing the passphrase in shell history
read -rs RETYC_KEY_PASSPHRASE
claude mcp add --transport stdio retyc --env RETYC_KEY_PASSPHRASE="$RETYC_KEY_PASSPHRASE" -- /path/to/retyc mcp serve
Full integration guide (Claude Desktop, Cursor, Windsurf, example prompts): [doc/mcp.md](doc/mcp.md)
Claude Desktop extension (MCPB): each release ships a retyc-.mcpb bundle — double-click to install in Claude Desktop, no terminal needed. See [doc/mcpb.md](doc/mcpb.md).
Privacy Policy
This software (CLI and MCP server) embeds the entire encryption layer: file contents and metadata are encrypted locally (post-quantum AGE) before transmission, and its only network endpoint is the Retyc API — Retyc servers never see plaintext. In MCP mode, tool responses return decrypted metadata (filenames, sizes, member lists) to your MCP client; file contents are never included in responses (see [SECURITY.md](SECURITY.md)). Full policy:
Documentation
| Topic | Link | |------------------------------|----------------------------------------------| | Full commands reference | [doc/commands.md](doc/commands.md) | | MCP server + tools reference | [doc/mcp.md](doc/mcp.md) | | Docker usage | [doc/docker.md](doc/docker.md) | | Claude Desktop bundle (MCPB) | [doc/mcpb.md](doc/mcpb.md) | | CI / CD integration | [doc/ci-cd.md](doc/ci-cd.md) | | Configuration & env vars | [doc/configuration.md](doc/configuration.md) | | Roadmap | [doc/roadmap.md](doc/roadmap.md) |
Development
# Run in dev mode
go run . --help
# Run tests
go test -race ./...
# Production build
go build -tags prod -ldflags "-X github.com/retyc/retyc-cli/cmd.Version=v0.1.0" -o retyc .
License
[MIT](LICENSE) - © Retyc / TripleStack SAS
Source & license
This open-source MCP server is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: retyc
- Source: retyc/retyc-cli
- License: MIT
- Homepage: https://retyc.com
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet, be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.