About Pico Bay
An App and MCP Server for managing Raspberry Pi Pico and ESP32 boards with MicroPython or CircuitPython over USB. It runs with Node.js built-in modules and needs no browser extension or runtime npm dependencies.
Port 7426 spells PICO on a phone keypad, a nod to the T9 years and flip-phone era.
Security
Pico Bay can run code, overwrite files, reset a board, and erase its filesystem. It is intended for a trusted local workstation.
- The server listens on 127.0.0.1 by default, or 0.0.0.0 when the host is a Raspberry Pi.
- State-changing requests require the expected HTTP method and same-origin access.
- Device paths reject invalid or traversing path segments.
- The app has no authentication, TLS, authorization, or multi-user isolation.