The Vault plugin
Magic: The Gathering rules, cards, decks and collection tools for your AI assistant. Free, unofficial,
and every answer shows where it came from. This folder is generated by scripts/build_plugin.py
from skills/ in the repository; do not edit it by hand.
Contents: skills/ (rules judge, interaction explainer, deck upgrader, shopping assistant, collection
analyst, attribution), mcp.json (the Vault's MCP server), Claude Code extras in .claude-plugin/ and
.mcp.json, the Claude Code agents in agents/, and the GitHub Copilot agents in com.github.copilot/agents/
(Agent Plugins has no agent component, so agents live under the client's reverse-domain namespace).
Install and connect: see docs/skills.md in the repository, or https://mtgvault.cards/connect.html.
Check the connection: ask your assistant to call the Vault's whoami tool. It names you, your scopes and the data
versions the Vault holds (the Comprehensive Rules edition, card data and price dates).
Who this is built on, and how the Vault uses them
The Vault is a thin layer on other people's work. It never presents their material as its own: every answer carries its source, and the sources below are credited everywhere the material appears. What the Vault sends to each service is stated plainly; it never sends your name, e-mail or collection to any of them.
Full credits and licences: https://mtgvault.cards/credits.html
- Wizards of the Coast (data). Magic: The Gathering itself: card names, rules text, mana symbols and art, and the Comprehensive Rules. The Comprehensive Rules are read live from Wizards' own rules page when a rules question is asked (the current edition's text file); the Vault keeps no copy of them and always says which edition it quoted. The Commander Bracket hint for a deck follows the Commander Brackets and Game Changers list Wizards publishes (read once, its limits kept in the code and re-checked every night). Card text and images reach the Vault only through Scryfall. Credit: Magic: The Gathering and its rules, card names, mana symbols and card images are property of Wizards of the Coast LLC. The Vault is unofficial Fan Content permitted under the Fan Content Policy. Not approved/endorsed by Wizards. Portions of the materials used are property of Wizards of the Coast. ©Wizards of the Coast LLC.
- Scryfall (data). Card data (names, types, mana costs, Oracle text, legalities, printings), rulings, images, set icons and daily prices. A daily job downloads Scryfall's bulk files to match your cards and store prices, and the server asks Scryfall's API for a card it does not know yet or for today's prices of your cards. Nothing about you is sent, only card names and ids. Card images and set icons load from Scryfall's image servers straight in your browser or assistant, so Scryfall sees that request. The Vault does not proxy or re-host Scryfall data, shows its dated prices as Scryfall's, and credits each card's artist. Credit: Card data, rulings, images and prices: Scryfall. The Vault is not produced by or endorsed by Scryfall.
- Scryfall Tagger contributors (community). Role tags such as ramp, removal, card draw and sweepers, written by volunteers in Scryfall's Tagger. Downloaded with the daily Scryfall data and used to count a deck's roles. Always shown as the community's opinion with its weight, never as a rule or as the Vault's judgement. Where a card has no Tagger tag the Vault may add a role from its own written rules over the card's Oracle text, always marked as computed by the Vault, never as Scryfall's. Credit: Role tags: Scryfall Tagger, by its community of volunteers.
- Commander Spellbook (community). Known combos for a deck, written and maintained by the Commander Spellbook community. When you ask about a deck's combos, one request with the deck's card names (nothing about you) goes to Commander Spellbook's public API and the answer is shortened. The Vault stores no copy of their data. Each combo is shown as theirs with a link to its page; the list only holds combos they know, so it never proves a deck has none. Credit: Combos: Commander Spellbook and its community.
- Archidekt (community). Public decks that people share, and the community of brewers who built them. When you paste an Archidekt deck link or ask for that deck, the server fetches that one public deck on your request (the deck id only, nothing about you) and keeps that public deck's data, so that repeat reads within ten minutes do not reach Archidekt again (copies are deleted after seven days). The Vault only reads, never writes, never searches or crawls, never uses Archidekt's per-card shop prices, and credits the deck's author and links back to the deck. Credit: Deck lists: Archidekt, by their authors. The Vault is not affiliated with or endorsed by Archidekt.
- Moxfield (format). A collection and deck format that many players already use. The Vault reads Moxfield's CSV export and plain-text decklists that you upload or paste, and writes your collection back in the format Moxfield imports. It never connects to Moxfield or your Moxfield account and never fetches its decks. Credit: Moxfield file format. The Vault is not affiliated with or endorsed by Moxfield.
- Dragon Shield (Card Manager) (format). The collection export that most Vault collections start from. The Vault imports the CSV file the Dragon Shield app exports and exports your collection back in the same format. Only the file you choose is used; the Vault never connects to your Dragon Shield account. Credit: Dragon Shield export format. Dragon Shield is a trademark of Arcane Tinmen ApS. The Vault is not affiliated with or endorsed by them.
- TCGplayer, Cardmarket and Cardhoarder (data). The marketplaces behind Scryfall's prices: US dollar prices from TCGplayer, euro prices from Cardmarket, MTGO tickets from Cardhoarder. Used only indirectly, through Scryfall's daily prices. The Vault never contacts these marketplaces, has no live price, stock or shipping from any shop, and never says which shop is cheapest. Shop links are plain search links you open yourself. Credit: Prices: TCGplayer, Cardmarket and Cardhoarder via Scryfall, dated. Names are trademarks of their owners; naming them is an acknowledgement, not a partnership.
- EDHREC (community). Commander popularity, from the community's deck lists. Only the popularity rank that Scryfall includes with each card is shown. The Vault does not contact EDHREC. Popularity is not power and is never presented as it. Credit: Popularity rank: EDHREC, via Scryfall.
- 17Lands (data). Per-card Limited statistics for recent sets: win rates, how often a card is seen and taken, and where in a pack, from the Magic Arena games and drafts of people who use the 17Lands tracker. A weekly job downloads 17Lands' public data sets (CC BY 4.0) from their file host, one file at a time and only when a new version exists, reads each file as a stream, keeps only per-card counts and throws the file away; nothing about you is sent. The percentages, ranges and sample-size warnings are computed by the Vault from those counts, so they can differ from 17lands.com, and every answer says the set, the format, the dates and how many games are behind each figure. The data is from Arena, not paper Magic. Credit: Limited statistics: data from 17Lands, licensed under CC BY 4.0 (changed by the Vault: reduced to per-card counts and recomputed). The Vault is not produced or endorsed by 17Lands.
- Card illustrators (community). Every card image is an illustrator's work. Images are shown whole, with the artist credited next to the image wherever the Vault shows one. Credit: Illustrated by the credited artist.
- Google, Microsoft, Apple and Facebook sign-in, and passkeys (signin). Sign-in, so the Vault never holds a password. Only the provider you pick is contacted. It tells the Vault your name, e-mail address and an account id, nothing else. Credit: Sign-in by the account you already have.
- Vercel, Neon and GitHub (hosting). Vercel hosts the app, Neon hosts the database, GitHub hosts the open source code and runs the daily data job. They process what the Vault stores, as the privacy notice lists. Vercel Web Analytics and Speed Insights count visits and measure page speed anonymously, with no cookies and no page address beyond its path; they are skipped for visitors who send Do Not Track or Global Privacy Control. The code is public under the MIT licence. Credit: Hosting and code: Vercel, Neon, GitHub.
- Open source software (community). The libraries the Vault is built on, including mtg-toolkits, FastAPI, SQLAlchemy and React. Used as libraries under their own licences, listed on the credits page and in THIRD_PARTY_NOTICES.md. Credit: Built on open source: see the credits page.
The Vault is unofficial Fan Content permitted under the Fan Content Policy. Not approved/endorsed by Wizards. Portions of the materials used are property of Wizards of the Coast. ©Wizards of the Coast LLC.