mcp-implementation-patterns

A set of implementation rules for building an OpenStreetMap server with the FastMCP Python framework. OpenStreetMap is a shared map database containing geographic information contributed by users.

In plain words
What is it for?
Use it when implementing an MCP server that reads or modifies OpenStreetMap data. The documented patterns cover map searches, coordinate checks, geocoding, exports, and OAuth-protected edits.
Why use it?
It gives developers a defined structure for separating map-reading, validation, utility, and map-editing operations. This makes the server's tools easier to organise and apply safely.

Cursor rule for Cursor

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add rules/skywinder/osm-edit-mcp/mcp-implementation-patterns
Clone the repo
git clone --depth 1 https://github.com/skywinder/osm-edit-mcp

Made for: Cursor.

Per session 0 Nothing until a file matches its globs; then the whole rule loads.
When invoked 1,693 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00000 $0.01693
Opus 5 $0.00000 $0.00847
Sonnet 5 $0.00000 $0.00339
Haiku 4.5 $0.00000 $0.00169

Measured 2d ago against content hash a9fb3667dac1, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

mcp-implementation-patterns scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

.cursor/rules/mcp-implementation-patterns.mdc · 258 lines

How it starts

The opening of the file, as written. The whole thing — 258 lines — stays where its author put it; the contents beside it link to each section on GitHub.

MCP Implementation Patterns for OSM Server

FastMCP Server Structure

The server.py uses FastMCP framework with this pattern:

from mcp.server.fastmcp import FastMCP

# Initialize server
mcp = FastMCP("osm-edit-mcp")

# Define tools with decorator
@mcp.tool()
async def tool_name(param: type) -> Dict[str, Any]:
    """Tool description for AI assistant."""
    # Implementation

MCP Tool Categories

1. Read Operations (Safe)

Tools that only retrieve data from OSM:

  • get_osm_node, get_osm_way, get_osm_relation
  • get_osm_elements_in_area, get_changeset_history
  • find_nearby_amenities, search_osm_elements

2. Validation and Utility Tools

Non-destructive operations for data validation:

  • validate_coordinates, validate_osm_data
  • get_place_info, smart_geocode
  • get_server_info, export_osm_data

3. Write Operations (OAuth Required)

Tools that modify OSM data:

  • create_osm_node, update_osm_node, delete_osm_node
  • create_osm_way, update_osm_way, delete_osm_way
  • create_osm_relation, update_osm_relation, delete_osm_relation
  • create_changeset, close_changeset

4. Natural Language Processing

Advanced tools for natural language interaction:

  • parse_natural_language_osm_request
  • create_place_from_description
  • find_and_update_place, delete_place_from_description
  • bulk_create_places

Tool Implementation Pattern

Standard Tool Structure

@mcp.tool()
async def tool_name(param1: type, param2: Optional[type] = None) -> Dict[str, Any]:
    """Clear description of what the tool does.

    Args:
        param1: Description of required parameter
        param2: Description of optional parameter

    Returns:
        Dictionary containing result data and status
    """
    try:
        # Log the operation
        logger.debug(f"Operation description with params")

        # Validate inputs
        if not validate_input(param1):
            return {
                "success": False,
                "error": "Validation error message",
                "message": "Human-readable error"
            }

        # Build API URL using configuration
        url = f"{config.current_api_base_url}/endpoint"

        # Make API call
        async with httpx.AsyncClient() as client:
            response = await client.get(url)
            response.raise_for_status()

        # Process response
        result_data = process_response(response)

        return {
            "success": True,
            "data": result_data,
            "message": "Success message"
        }

    except Exception as e:
        logger.error(f"Tool failed: {str(e)}")
        return {
            "success": False,
            "error": str(e),
            "message": f"Failed to perform operation"
        }

Read the full file on GitHub · 258 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 2d ago First seen · 258 lines · 0 tokens per session scan A a9fb3667dac1

Subscribe to this mod's changes

mcp-implementation-patterns is a cursor rule published in the GitHub repository skywinder/osm-edit-mcp (4 stars, last pushed 18d ago), licensed MIT. It costs nothing until one of its globs matches a file; then it loads 1,693 tokens. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.