- ui/index.html, ui/styles.css, ui/scripts.js — minimal two-tab UI - Search tab: big search bar, results with size/votes, add-to-queue button - Queue tab: progress bar, speed, downloaded/total, status badges, cancel - Switches to queue tab on load if downloads are active - Backend: GET /api/search, POST /api/queue/add, GET /api/queue, POST /api/queue/cancel - Speed tracking in streamToFile, abort tracking for immediate cancel - No rounded corners, dark theme
5.0 KiB
webshare-api
Node.js/Express proxy that exposes Webshare.cz as protocols *arr apps understand, and as an MCP server for AI agents.
Official Webshare HTTP API documentation: https://webshare.cz/apidoc/
| Role | Endpoints | Purpose |
|---|---|---|
| Torznab indexer | GET /api?t=caps|search|tvsearch|movie |
Search → Torznab RSS/XML |
| Fake torrent | GET /download/:ident |
Minimal .torrent whose webseed points at /stream/:ident |
| Stream | GET /stream/:ident |
Fresh Webshare file_link + HTTP 302 to CDN |
| Fake qBittorrent | /api/v2/* |
Download client API; streams the HTTPS file to disk |
| Debug | GET /resolve/:ident |
JSON with the resolved CDN URL |
| Web UI | GET / |
Two-tab UI: search files and add to queue; queue view with progress, speed, and cancel |
| MCP server | POST /mcp (Streamable HTTP) |
Tools for AI agents: search, resolve links, login check |
Webshare download links expire after roughly ten minutes, so the torrent never embeds a CDN URL—only a path on this service that resolves a fresh link at fetch time.
Layout
src/
index.js # Express app + optional Sonarr missing-episode search
webshare.js # salt/login, search, file_link
md5crypt.js # Unix $1$ MD5-crypt (Webshare password digest)
torznab.js # caps + search feed XML
torrent.js # bencode + fake torrent + info-hash
qbt.js # qBittorrent Web API façade + download queue
mcp-server.js # MCP tool registration (shared)
mcp-http.js # Streamable HTTP transport mount for Express
mcp.js # Optional MCP-only HTTP process
ui/ # Web UI: search & queue management
__tests__/
compose.yaml
Dockerfile
Configuration
Environment variables (required unless noted):
| Variable | Default | Description |
|---|---|---|
WEBSHARE_USERNAME |
— | Webshare username or email |
WEBSHARE_PASSWORD |
— | Webshare password (plain; hashed client-side) |
PORT |
3001 |
HTTP listen port |
BASE_URL |
http://localhost:$PORT |
Public base URL Sonarr must reach (use the Compose service hostname when linking containers) |
DOWNLOAD_PATH |
/downloads/webshare |
Where the fake qBittorrent writes files |
MEDIA_ROOT |
/data |
Media root (used for path reporting) |
MAX_CONCURRENT_DOWNLOADS |
2 |
Parallel stream downloads |
SONARR_URL |
http://sonarr:8989 |
Optional; Sonarr base URL |
SONARR_API_KEY |
(empty) | Optional; enables periodic missing-episode search |
SONARR_SEARCH_INTERVAL_HOURS |
2 |
Interval for that search |
DOWNLOAD_HOST_PATH |
./data/webshare |
Host path mounted at DOWNLOAD_PATH in Compose |
MCP_ENABLED |
true |
Set to 0/false to disable the MCP HTTP endpoint |
MCP_PATH |
/mcp |
HTTP path for the Streamable HTTP MCP endpoint |
Copy .env.example and fill in credentials. Do not commit a filled .env.
Run with Compose
cp .env.example .env
# set WEBSHARE_USERNAME and WEBSHARE_PASSWORD
docker compose up -d --build
See compose.yaml. Override ports, BASE_URL, Sonarr settings, and volume mounts via .env as needed.
Run without Compose
npm install
export WEBSHARE_USERNAME=...
export WEBSHARE_PASSWORD=...
npm start
Sonarr / Radarr
- Indexer (Torznab):
http://<host>:3001/api - Download client (qBittorrent): host/port of this service; any username/password (login accepts all).
When both run on the same Compose network, use the service name, e.g. http://webshare-api:3001.
Sonarr hands .torrent files to the fake qBittorrent API. This service extracts the webseed, streams the file into DOWNLOAD_PATH, and reports progress via /api/v2/torrents/*.
MCP (AI agents)
Exposes Webshare to MCP-compatible clients over Streamable HTTP (not stdio).
With npm start (or Compose), MCP is available on the same process/port:
POST http://<host>:3001/mcp
Optional MCP-only process (no Torznab/qBittorrent):
export WEBSHARE_USERNAME=...
export WEBSHARE_PASSWORD=...
npm run mcp # listens on PORT, serves POST /mcp
Tools
| Tool | Description |
|---|---|
webshare_search |
Search files (query, optional limit / offset / sort / category) |
webshare_get_link |
Resolve a temporary CDN URL for a file ident |
webshare_login_check |
Verify credentials against the Webshare API |
Client configuration example
HTTP / Streamable HTTP (preferred):
[mcp_servers.webshare]
url = "http://127.0.0.1:3001/mcp"
grok mcp add --transport http webshare http://127.0.0.1:3001/mcp
Credentials stay on the server process (WEBSHARE_* env); clients only need the URL.
The transport is stateless Streamable HTTP (POST only).
Tests
npm test
License
You need a valid Webshare account. This project only speaks their documented HTTP API (apidoc). Use at your own risk.