MCP Bridge — Zero-Gap Automation
OpenPawz ships with 400+ native integrations compiled into the Rust binary. The MCP Bridge extends this to 25,000+ by embedding an n8n engine and connecting to it via the Model Context Protocol (MCP). Your agents discover, install, and execute any of n8n’s community packages — automatically, at runtime, with zero configuration.This is the feature that makes OpenPawz the most connected AI agent platform in existence. No other tool — open source or commercial — offers this level of integration coverage.
How It Works
The flow is fully automatic. The user just asks for what they need — the agent figures out which workflow to use, deploys it if necessary, and executes it.Architecture
The MCP Bridge has four layers:1. Embedded n8n Engine
n8n is auto-provisioned at app launch with zero user configuration:
The engine starts 8 seconds after app launch in a background thread. Health checks run before every MCP operation via
lazy_ensure_n8n().
2. MCP Transport — Streamable HTTP
n8n’s MCP server uses Streamable HTTP at/mcp-server/http. This was confirmed working with n8n MCP Server v1.0.0 (protocol version 2024-11-05).
The transport is implemented in
transport.rs alongside Stdio and legacy SSE transports.
3. n8n MCP Tools — Workflow-Level Operations
n8n’s MCP server exposes three workflow-level tools — not individual node operations. This is the key architectural insight:
The
execute_workflow tool supports three input types:
n8n also declares
listChanged: true capability — the server notifies when new workflows appear.
4. Workflow-First Integration
When an agent needs to use a community package (e.g. Instagram, Puppeteer):- The community package is installed inside the n8n container via npm
- n8n restarts and loads the new node types
- Paw auto-deploys a workflow via
engine_n8n_deploy_mcp_workflow— e.g. “OpenPawz MCP — Instagram” - The workflow becomes executable through
execute_workflow(workflowId, inputs) - The Librarian indexes the new workflow for semantic discovery
The Architect/Worker Pattern
Cloud LLMs (Gemini, Claude, GPT) act as Architects — they plan and orchestrate. A cheaper Worker model executes MCP tool calls at reduced cost (or zero cost if running locally on Ollama). This is wired directly into the main chat loop: every MCP tool call from your cloud AI is automatically intercepted and delegated to the worker. Any model from any provider can serve as the Worker — local Ollama is recommended for zero-cost execution.How It Works in Practice
When you say “Send a message to #general on Slack”:- Architect (Gemini/Claude) decides to call
execute_workflowfor the Slack messaging workflow - The engine intercepts the MCP tool call before execution
- Worker (local Ollama, free) receives the task and the MCP tool schemas
- Worker calls
execute_workflow(workflowId, webhookData)via MCP → n8n executes the workflow → Slack API - Result flows back: Worker → Engine → Architect → User
This is the breakthrough: The worker model doesn’t need to know how to use 25,000+ integrations. n8n’s MCP server is self-describing — it tells the worker what workflows are available and how to execute them. Any new workflow Paw deploys is instantly discoverable and executable with zero configuration, zero training, zero cost.
Fallback Behavior
If noworker_model is configured in Settings → Models → Model Routing, MCP tool calls fall back to direct JSON-RPC execution (the engine calls MCP servers directly). This still works but means the Architect model handles tool call formatting, costing more tokens.
Setup (Ollama — Zero Cost)
- Install Ollama and pull the base model:
ollama pull qwen2.5-coder:7b - Go to Settings → Advanced → Ollama and click Setup Worker Agent
- In Settings → Models → Model Routing, set
worker_modeltoworker-qwen - That’s it — all MCP tool calls now route through the free local worker
Setup (Cloud — Any Provider)
- Go to Settings → Models → Model Routing
- Set your Worker Model to any cheap model (e.g.
gpt-4o-mini,gemini-2.0-flash,claude-haiku-4-5) - All MCP tool calls now route through the cloud worker at a fraction of the Architect’s cost
What Can Agents Do?
With the MCP Bridge, your agents can access any service that has an n8n community package — via auto-deployed workflows. Here are some examples that require no API keys:
And with API keys configured in n8n:
All Five Directions
The workflow-first architecture supports every integration pattern:Setup
The MCP Bridge requires zero configuration for basic operation. Everything is auto-provisioned.Prerequisites
Ollama Models (Recommended for Zero Cost)
If using Ollama locally, three models power the system:Verify It’s Working
After launching OpenPawz, check the logs for:Community Node Browser
OpenPawz includes a built-in Community Browser UI for discovering and managing n8n community packages:- Open the Integrations tab → Community section
- Search the n8n community registry (25,000+ packages via ncnodes.com + npm)
- Click Install to add a package — Paw runs
npm install, restarts n8n, and refreshes MCP tools - Switch to the Installed tab to see all installed packages
- Click the delete icon to uninstall — shows a “Removing…” spinner, then restarts n8n and clears stale tools
npm commands when the REST API is unavailable (n8n 2.9.x). Process mode uses npm in ~/.openpawz/n8n-data; Docker mode uses docker exec.
Alternatively, agents can discover and install packages conversationally:
“I need to generate QR codes” Agent searches community nodes, finds the QR code package, installs it, deploys a workflow, and generates the QR code — all in one conversation.
vs. Zapier / Make / n8n Standalone
Troubleshooting
Security
- n8n runs locally — no cloud relay, no data leaves your machine
- Community packages are installed from the official npm registry
- MCP transport uses localhost-only connections (127.0.0.1:5678)
- MCP auth uses a JWT with
mcp-server-apiaudience — separate from the REST API key. Stale/redacted keys are auto-rotated via/rest/mcp/api-key/rotate - The n8n encryption key is stored in your unified OS keychain vault (
openpawz), not on the filesystem - All tool calls go through OpenPawz’s Human-in-the-Loop approval system
- Credential injection for n8n nodes uses the same AES-256-GCM encrypted vault
- The MCP Bridge inherits all 10 security layers from the core platform

