Table of contents

When you're writing a recovery scoring system, implementing strain thresholds, or modeling sleep stage transitions, you need to know what WHOOP's API actually returns: exact field names, value ranges, data types, and the shape of nested objects.
That information is only available by running API calls outside Cursor, copying results back in, and hoping the response structure you captured matches what production traffic delivers.
To help your developers easily access WHOOP's physiological data without leaving Cursor, we'll show you how to connect WHOOP with Merge Agent Handler's WHOOP MCP server.
Merge Agent Handler connects Cursor to the WHOOP API through the Merge CLI.
Install the CLI, authenticate once, and run a single setup command from your project root. That command writes a ## Merge CLI section to the project's .cursorrules file, which tells Cursor's agent when to call merge search-tools and merge execute-tool to reach WHOOP.
Once authenticated, Merge handles WHOOP OAuth credentials and token refresh so you never store access tokens locally or manage authorization state in the project.
The registration command:
Related: The steps for connecting a WHOOP MCP with Codex
Before getting started, you'll need the following:
pipx --version to confirm, or install via pip install pipx)developer-dashboard.whoop.com)If you want to connect Merge Agent Handler's WHOOP MCP with internal or customer-facing agentic products, you can follow the steps in our docs.
Install with pipx and verify: pipx install merge-api
Verify your installation: merge --version
Authenticate the CLI with your Merge Agent Handler account: merge login
This links the CLI to your account so it can make authorized requests to WHOOP on your behalf.
Run the following from the root of the project where you want to use Merge tools:
This writes a ## Merge CLI section to .cursorrules so Cursor knows to use the CLI for third-party services. The command is idempotent, so it's safe to re-run if you need to reset.
Related: How to use a WHOOP MCP in Claude Code
Open a Cursor chat in your project and run a query that reflects real development work. For example, you can ask something like "Fetch my most recent WHOOP recovery record and show me the full JSON response, including all field names and their value types, so I can write an accurate TypeScript interface for the data model."
The first time you invoke a WHOOP tool, a Magic Link will appear to complete connector authentication.

{{this-blog-only-cta}}
In case you have more questions on setting up and using the WHOOP MCP in Cursor, we've addressed several more commonly-asked questions below.
With WHOOP connected, Cursor can:
Building directly on WHOOP's API is the right starting point for a single-developer prototype. WHOOP's developer portal at developer.whoop.com documents the OAuth 2.0 flow, the endpoints are well-scoped, and for a personal project or proof of concept the setup takes under an hour.
The challenge arrives when the application supports multiple users.
WHOOP issues per-user access tokens with expiration dates. Every connected user needs their own authorization flow, their own refresh cycle, and their own error handling for revoked or expired credentials. A failed token refresh silently breaks data access for that user, and tracking token health across dozens of accounts with no central view of which connections are active becomes operational work that compounds as users grow.
A self-hosted MCP server doesn't solve this. You still own the OAuth plumbing for every connected user, and now you're also maintaining the server itself.
WHOOP also doesn't publish an official MCP server, so any community implementation comes with no guarantees on maintenance cadence, API coverage, or enterprise support.
Merge Agent Handler solves this by centralizing credential management and handling token refresh for all connected users.
You can scope exactly which WHOOP tools each agent can call. An agent that generates daily readiness summaries, for instance, gets access to recovery and sleep tools, not body measurement endpoints, unless those are explicitly included. Every tool call is also logged.
For applications where users share sensitive physiological data with an agent, the combination of scoped access and audit logging is the baseline for a responsible deployment.
WHOOP's API returns structured physiological data that health and fitness integrations depend on: recovery scores with HRV and resting heart rate, sleep sessions with stage breakdowns, workout records with strain calculations.
For developers building against that API in Cursor, the reference data you need to write correct code sits outside the editor.
Connecting WHOOP to Cursor means you can query real API responses from within a chat session while writing the code that consumes them.
You're not working from documentation that may lag the actual API behavior. And you're not switching to Postman, running a test call, copying the JSON, and switching back.
Use Merge Agent Handler’s 150+ connectors (including WHOOP) to power reliable, secure, and powerful agents.