
Cognitia is a user-authorized memory MCP server. Your client asks for origin groups, the owner approves Off / High-level / Detailed, and you work against their graph — inspectable, revocable, and not locked inside one chat product.
Apps do not get blanket access. Each client is registered, users approve five origin groups, and tokens can be revoked.
1
Your app registers OAuth metadata and redirect URIs. Users never paste a secret into a random form.
POST /api/mcp/oauth/register2
They see the client and five origin groups (Email, Finance, Social, Storage, MCP & Companion) at Off / High-level / Detailed before anything is shared.
/mcp-authorize3
Access is scoped to that user and those grants. There is no blanket graph dump.
POST /api/mcp/tools/list4
unified_memory_agent, unified_memory_retrieve, unified_memory_agent_config, and unified_memory_store run on the signed-in graph.
POST /api/mcp/jsonrpc5
Connected apps and origin grants stay under user control. Tokens can be cut without rebuilding your product.
Bring the user’s graph to the model they already use.
1
They connect Cognitia as an MCP server in the client they prefer.
2
Origin grants decide whether that client sees knowledge-graph memory, raw artifacts, or neither.
3
The same graph grounds chat, coding agents, and follow-ups without re-explaining their life.
User-authorized memory for your agent or app — not a copy of their inbox on your servers.
1
Register an OAuth client and send them to Cognitia consent.
2
Call MCP tools with the token you received for that user.
3
Let them review and revoke in connected apps when they are done.
Personal initialize returns this router as instructions, plus memory.ask / memory.retrieve / memory.remember prompts and cognitia://status + cognitia://profile.
Call action=list once per session. See origin grants, last_ingest_at, and local_files.
People, facts, or a profile. Fast, no LLM. Iterate a node with entity_id.
A written answer, today's inbox, or calendar. Set include_evidence when you will cite.
Only a durable note the user asked to save. Keep source_id. Cannot delete.
Claude, Cursor, ChatGPT, Copilot, Gemini, Windsurf, Zed, and Cline. Install Cognitia as a memory MCP server from MCP & backups after sign-in.
Install Cognitia as a memory MCP server in the client you already use. One JSON or URL, then OAuth. Scripts or clients without OAuth can use a personal API key below.
Desktop, claude.ai, and Claude Code. Highest-conversion memory client.
Same graph in the editor. One JSON block; OAuth on first tool call.
Apps / Developer Mode MCP connector. Same user-authorized memory endpoint.
VS Code / Copilot agent MCP. Default editor for many power users.
Gemini CLI and Google AI Studio MCP. Same user-authorized memory endpoint.
Cascade MCP. Cursor-class editor with the same memory graph.
Native remote MCP in settings.json. Omit Authorization so Zed runs OAuth.
VS Code / Cursor agent. MCP JSON in Cline settings, then OAuth.
Clients connect over JSON-RPC with OAuth. Origin grants are Off / High-level / Detailed (API: off / kg / raw) on Email, Finance, Social, Storage, and MCP & Companion. Ask searches those groups through an inner agent (graph, Pinecone, official live) rather than ungated “search everything.”
https://www.cognitia-ai.com/api/mcp
Listed as a memory MCP server on mcpservers.org. OAuth lives at /api/mcp/oauth/*.
Example client registration
curl -X POST https://www.cognitia-ai.com/api/mcp/oauth/register \
-H "Content-Type: application/json" \
-d '{
"client_name": "My MCP Client",
"redirect_uris": ["https://myapp.com/oauth/callback"],
"grant_types": ["authorization_code", "refresh_token"],
"token_endpoint_auth_method": "none"
}'Example tools discovery
curl -X POST https://www.cognitia-ai.com/api/mcp/tools/list \
-H "Authorization: Bearer <access_token>" \
-H "Content-Type: application/json" \
-d '{}'AI products get better the more they know about someone, so every assistant is building a private profile. That profile does not travel. Cognitia is the graph the person owns; MCP is how Claude, Cursor, or your app asks for a slice with a purpose and an expiry they can revoke.