← Back to directory
COMPARE UP TO 4 SERVERS

Compare MCP servers

Compare scores, permissions, risks, and fit in one decision-focused table.

DimensionWhatsApp MCPRead, search, and send WhatsApp messages via ClaudeHevy MCPManage your Hevy workout data from AI assistants via MCP.Firecrawl MCP ServerFirecrawl's official MCP server for web search, scraping, and structured extraction for AI agents
FMRS54 / 100 · D77 / 100 · B75 / 100 · B
Reliability7 / 2012 / 2013 / 20
Security and permissions11 / 2016 / 2012 / 20
Maintenance11 / 2016 / 2016 / 20
Documentation15 / 2018 / 2017 / 20
Setup experience10 / 2015 / 2017 / 20
Best for
  • Individual users who want to manage WhatsApp messages with an AI assistant while keeping local message records
  • Developers needing programmatic access to WhatsApp chat data
  • Hevy PRO users who want AI assistants to directly access their workout data
  • People who prefer using MCP clients like Claude, Cursor, Codex for fitness tracking
  • Anyone needing summaries and insights from their training data
  • Scenarios needing clean, structured web context fed to an AI assistant
  • Users already on the Firecrawl platform who want to call its scraping capability directly via MCP
Not for
  • Environments with high security requirements for WhatsApp messages (prompt injection risks)
  • Large enterprise deployments requiring official WhatsApp API support (this server uses unofficial Web API)
  • Multi-user setups or those needing fine-grained access control (current implementation is single-user)
  • Users without a Hevy PRO subscription (API key required)
  • Users who want to use the server without an API key
  • Those needing delete workflows (Hevy API does not expose delete endpoints)
  • Simple static-page scraping where you don't want to depend on a third-party API and incur call costs
  • Sites that explicitly disallow automated access (robots.txt)
Required permissions
  • Read and send WhatsApp messages (via bridge)
  • Read and write message history in local SQLite database
  • Send and receive media files
  • Access local file system (for media file paths)
  • Listen on local REST API port (default 8080)
  • Requires HEVY_API_KEY environment variable for Hevy API authentication
  • Can create, update, and replace workouts, routines, folders, templates, and body measurements via tools
  • Read operations can fetch workouts, routines, folders, templates, history, and user info
  • Requires a Firecrawl API key to call; cost and quota are governed by the Firecrawl account
  • firecrawl_agent/firecrawl_interact perform automated browser interaction, which may trigger login or form-submission flows on the target site
Risks and side effects
  • Prompt injection: malicious messages could trick the AI into performing unintended actions, leading to data exfiltration
  • Unofficial API: uses reverse-engineered WhatsApp Web API, potentially violating WhatsApp's terms of service
  • Sensitive data exposure: messages are stored locally, but the AI might send content to external services
  • No authentication: the MCP server itself has no authentication, and if exposed to network, it can be abused
  • API key can be misused if leaked; do not expose in URLs, logs, or screenshots
  • Create operations may produce duplicates on retry; update operations replace existing records
  • The server sends data to the Hevy API and may send telemetry to external services unless disabled
  • Bulk crawl/map tools can generate significant request volume against a target site — respect the site's rate limits and terms of service
  • firecrawl_agent's interactive action chain is longer — define task boundaries clearly before running it to avoid accidentally triggering actions on a sensitive site
Supported clientsClaude Desktop, CursorClaude Desktop, Cursor, Codex, Google AntigravityClaude Desktop, VS Code, Cursor, Windsurf, Zed, Amp
Tools142611