Agent guides

Connect Windsurf to IPMusk

Add IPMusk to Windsurf's MCP config. Cascade can then read your account and build proxy URLs while it codes.

Who this is for

Developers who use Windsurf and want Cascade to fetch proxy URLs and account details.

What you need

  • An IPMusk account with a verified email address.
  • An IPMusk API key. Create it in Settings → API keys (/app/settings/api-keys). For typical use tick read and connect. Add support only if the assistant should open tickets, and order only if it should create orders that end in a payment link.
  • The key in an environment variable named IPMUSK_API_KEY, for example export IPMUSK_API_KEY="ipm_live_YOUR_KEY" in your shell profile. The examples below read it from there.
  • On Windsurf Teams or Enterprise, an admin may need to allow remote MCP servers.

Set it up

In Cascade, click the MCPs icon, then Configure. This opens ~/.codeium/windsurf/mcp_config.json. Add the server.

  • Windsurf uses serverUrl, not url, for remote servers.
  • Save the file, then click Refresh in the MCPs panel.
~/.codeium/windsurf/mcp_config.json
{
  "mcpServers": {
    "ipmusk": {
      "serverUrl": "https://ipmusk.com/mcp",
      "headers": {
        "Authorization": "Bearer ${env:IPMUSK_API_KEY}"
      }
    }
  }
}

Check it works

Open the MCPs panel in Cascade. ipmusk should be listed with its tools.

Ask the assistant: Which IPMusk account am I connected as? It should call get_account and answer with your email address.

Try these prompts

  • How much IPMusk residential traffic do I have left?
  • Get a sticky US proxy URL for 10 minutes and use it in this script.
  • List my IPMusk Static ISP proxies and when they expire.

If it fails

  • 401 authentication_required: the key is missing, wrong, revoked or expired. Check that IPMUSK_API_KEY is set where the client starts. echo ${#IPMUSK_API_KEY} prints its length without showing the key.
  • The server is greyed out: your team admin has not allowed remote MCP servers.
  • 403 forbidden on one tool: the key lacks that tool's scope, or your email is not verified. Scopes cannot be added to a key, so create a new key with the scope and swap it in.
  • 429 rate_limited: too many calls in one minute (read 60, connect 20, support 30, order 10). Wait a minute and try again.
  • Nothing changed after editing: click Refresh, or restart Windsurf.

Remove access

  • Revoke the key in Settings → API keys (/app/settings/api-keys). It stops working at once.
  • Then delete the ipmusk entry from mcp_config.json and click Refresh.