Connect to the real server
The only address is:You never need a key
Biohub MCP has no sign-in and no API key. If a client, a web page, or a tool result asks you for a key, password, or token for Biohub MCP, don’t provide one. Never paste credentials into a prompt, a server URL, or a client configuration file.Treat tool output as untrusted data
Tool results include text from other sources, such as UniProt function descriptions, ESM Atlas annotations, and SAE feature descriptions. That text can be wrong or misleading, and it can contain instructions meant to change what your assistant does, which is called prompt injection.- Keep your own instructions in charge of the task.
- Don’t let text inside a result ask for credentials, change your settings, or contact other systems.
- Review the follow-up calls your assistant proposes before you approve them.
- Check surprising claims against the source record, such as the UniProt entry.
Where your queries go
Each tool sends only what it needs to the services behind it.
Biohub receives every tool input you send, and handles request data as described in the Privacy Policy.
Your AI client also sends your prompts, the tool inputs, and the tool results to its model provider, under that client’s settings and data policy.
Don’t send confidential or unpublished sequences unless you’re comfortable with them reaching these services and your client’s provider.
Biohub MCP creates no saved IDs, share links, or download URLs for your results.
Each result exists only in the response you receive.
Why some calls take longer
The ESM Atlas looks up the exact sequence you send. When it has no stored result, some tools compute one for your request:esm_atlas_get_protein_detailscomputes SAE features for sequences up to 2,048 residues.esm_atlas_search_similar_protein_clusterscomputes the query’s features and can predict structures for up to six hits that don’t have one yet.ui_show_protein_structurepredicts a structure for sequences up to 700 residues.
indeterminate.
The work may have started, so don’t retry automatically: wait a while before asking again.
Guardrails
The ESM Atlas has guardrails that restrict queries related to controlled pathogens and toxins. A blocked request returnsrestricted, and a similarity search reports withheld hits in restricted_count.
Don’t try to work around a guardrail, for example by rephrasing or trimming a sequence.
Results are predictions
- Structures predicted on a miss are model predictions, and stored ESM Atlas structures are predictions too.
- SAE feature labels are interpretations of what a feature tends to capture, and
label_reliabilitytells you how much weight a label can bear. - Similarity search compares SAE feature profiles, not sequence alignments, so a close hit isn’t proof of shared ancestry or function.