Connect Cursor to Measurebase
Measurebase speaks MCP - the open protocol AI assistants use to reach external tools - and your editor speaks it too. Add Measurebase to Cursor as a remote MCP server and your tracking answers arrive without leaving the file you're working in.
What you can ask
- "How much traffic did we process this month, and which domain was busiest?"
- "Are there any open alerts on my accounts?"
- "Is Enhanced Ad Blocker Protection actually working on my site?"
- "Did my test hit from five minutes ago arrive?"
- "How far into my request quota am I this billing cycle?"
- "Compare last week's consent-denied share to the week before."
- "Generate the tracking script for my new domain."
Cursor answers with your live data: statistics, request types, browser and bot breakdowns, Consent Mode v2 signals, request logs, alerts, plan usage, and the ad-block detection status - across every account you're a member of.
Connect in two minutes
- Open Cursor Settings โ Tools & MCP and choose New MCP Server - this drops you into
~/.cursor/mcp.json(use.cursor/mcp.jsoninside a project for project-scoped config). - Add the server:
{
"mcpServers": {
"measurebase": {
"url": "https://mcp.measurebase.com/mcp"
}
}
}
- Cursor discovers the Measurebase authorization server on its own (the MCP authorization spec), opens your browser for the Measurebase login, and shows the consent screen that spells out what it gets.
- Click Allow. The Measurebase tools appear under the server - ask away in the chat.
๐ Read-only by design
New connections are read-only unless you explicitly tick read & write on the consent screen - and read-only means exactly that: it can never change anything, not your domains, not your settings, not your tokens. With write access the assistant can also toggle power-ups, verify DNS, generate tracking scripts, and set up new accounts and domains (returning the exact DNS record to add) - never more than your own role on each account allows, and Auto Grant Consent is excluded permanently.
Prefer a token?
You can skip the OAuth flow with a static header. Create a personal API token in the dashboard under Settings โ API tokens (read-only by default, valid until you revoke it) and add it to the server entry:
"headers": { "Authorization": "Bearer YOUR_TOKEN" }
One caution: a project's .cursor/mcp.json tends to end up in version control - keep token headers in your global config, or stick with OAuth.
How access and privacy work
- Personal, not account-wide. A connection authenticates as you and follows your own memberships: it sees the accounts you can see, nothing else. Colleagues connect for themselves.
- Your roles apply, live. Every request re-checks your membership and role on the account it touches. Lose access to an account and the connection loses it that same second.
- Revocable in one click. Every connection shows up under Settings โ API tokens - OAuth ones included. Revoke it there and the connection is dead immediately.
- Nothing is stored in between. The connector service keeps no credentials and no data; it forwards your token to the Measurebase API over TLS and returns the answer. Only a hash of any token is ever stored server-side.
- Standards, not improvisation. The flow is OAuth 2.1 with mandatory PKCE and single-use, short-lived authorization codes.
๐ค For agencies
Your connection follows your agency access too: clients who approved your link are queryable in the same conversation. "Which of my clients had alerts this week?" is one question instead of ten dashboard visits.