# Grimmory OpenCode MCP Read-only Grimmory `v3.2.4` API integration with manual synchronization to individual Obsidian book notes. ## Security - Grimmory mutations are not implemented. - Authentication uses the current user's local login because annotations and reading progress are user-scoped. - The password is read from a mode `0600` file and is never passed in argv. - Access and refresh tokens remain in process memory only. ## Configure ```bash cd tools/grimmory-mcp npm install npm run configure ``` The default password file is: ```text ~/.config/opencode/secrets/grimmory_password ``` ## Obsidian behavior - Notes: `90 Library/Books/