Cloud & DevOps MCP Servers

MCP servers for cloud platforms, containers, orchestration, deployment and infrastructure. Each entry is scanned with the deterministic Capability-Flow Trust Model — grades are computed, never self-reported.

Heroku Platform Official npm
A
@heroku/mcp-server

Official Heroku Platform MCP server for interacting with Heroku apps and platform resources.

Cloud & DevOps Score 100/100 5 findings 7.1k/wk Cap. High
Harness Source verified npm
A
harness-mcp-v2

MCP server for the Harness.io platform covering pipelines, deployments, cloud costs, chaos engineering, feature flags, SEI, and 125+ resource types through 11 tools.

Cloud & DevOps Score 100/100 2 findings 5.4k/wk Cap. High
Azure DevOps (tiberriver256) Source verified 5 implementations
A
best: @tiberriver256/mcp-server-azure-devops

Reference MCP server for interacting with Azure DevOps.

Cloud & DevOps Best score 100/100 2 findings 4.9k/wk Cap. High
Google Cloud Run Official npm
A
@google-cloud/cloud-run-mcp

Google Cloud tool for deploying applications to Cloud Run via MCP.

Cloud & DevOps Score 100/100 7 findings 2.7k/wk Cap. High
Linux Arm64 Official npm
A
@azure/mcp-linux-arm64

Security scan results for the Linux Arm64 MCP server.

Cloud & DevOps Score 100/100 1 finding 1.8k/wk Cap. High
Darwin X64 Official npm
A
@azure/mcp-darwin-x64

Security scan results for the Darwin X64 MCP server.

Cloud & DevOps Score 100/100 1 finding 1.6k/wk Cap. High
Usgs Water npm
A
@cyanheads/usgs-water-mcp-server

Security scan results for the Usgs Water MCP server.

Cloud & DevOps Score 100/100 0 findings 1.4k/wk Cap. Minimal
Nx Plugin Official npm
A
@aws/nx-plugin-mcp

Security scan results for the Nx Plugin MCP server.

Cloud & DevOps Score 100/100 0 findings 1.4k/wk Cap. Minimal
N8n npm
A
@leonardsellem/n8n-mcp-server

Security scan results for the N8n MCP server.

Cloud & DevOps Score 100/100 0 findings 1.4k/wk Cap. Minimal
Excalidraw npm
A
mcp-excalidraw-server

Security scan results for the Excalidraw MCP server.

Cloud & DevOps Score 100/100 5 findings 1.3k/wk Cap. High
Firefox Devtools Mcp Moz Official npm
A
@mozilla/firefox-devtools-mcp-moz

Security scan results for the Firefox Devtools Mcp Moz MCP server.

Cloud & DevOps Score 100/100 4 findings 1.2k/wk Cap. High
DigitalOcean 2 implementations
A
best: @digitalocean/mcp

Official DigitalOcean MCP implementation for managing DigitalOcean cloud resources from MCP clients.

Cloud & DevOps Best score 100/100 1 finding 1.1k/wk Cap. High
Drawio Source verified npm
A
drawio-mcp-server

Security scan results for the Drawio MCP server.

Cloud & DevOps Score 100/100 2 findings 1.0k/wk Cap. High
Win32 Arm64 Official npm
A
@azure/mcp-win32-arm64

Security scan results for the Win32 Arm64 MCP server.

Cloud & DevOps Score 100/100 1 finding 1.0k/wk Cap. High
Jenkins (kud) Source verified 6 implementations
A
best: @kud/mcp-jenkins

Jenkins MCP server with bearer token authentication support.

Cloud & DevOps Best score 100/100 0 findings 885/wk Cap. Minimal
Docker 10 implementations
A
best: docker-mcp

Lets AI agents interact with Docker containers locally or remotely via SSH, including container operations, logs, monitoring, and cleanup.

Cloud & DevOps Best score 100/100 2 findings 884/wk Cap. Moderate
Aws Athena npm
A
@lishenxydlgzs/aws-athena-mcp

Security scan results for the Aws Athena MCP server.

Cloud & DevOps Score 100/100 0 findings 767/wk Cap. Minimal
Atlassian Source verified npm
A
@xuandev/atlassian-mcp

Security scan results for the Atlassian MCP server.

Cloud & DevOps Score 100/100 0 findings 729/wk Cap. Minimal
Clinicaltrialsgov npm
A
clinicaltrialsgov-mcp-server

Security scan results for the Clinicaltrialsgov MCP server.

Cloud & DevOps Score 100/100 0 findings 719/wk Cap. Minimal
Eur Lex npm
A
@cyanheads/eur-lex-mcp-server

Security scan results for the Eur Lex MCP server.

Cloud & DevOps Score 100/100 0 findings 677/wk Cap. Minimal
Calendar Autoauth npm
A
@gongrzhe/server-calendar-autoauth-mcp

Security scan results for the Calendar Autoauth MCP server.

Cloud & DevOps Score 100/100 0 findings 670/wk Cap. Minimal
Courtlistener npm
A
@cyanheads/courtlistener-mcp-server

Security scan results for the Courtlistener MCP server.

Cloud & DevOps Score 100/100 0 findings 653/wk Cap. Minimal
Protein npm
A
@cyanheads/protein-mcp-server

Security scan results for the Protein MCP server.

Cloud & DevOps Score 100/100 0 findings 484/wk Cap. Minimal
Whatsapp Source verified 2 implementations
A
best: @lizzythelizard/whatsapp-mcp

Security scan results for the Whatsapp MCP server.

Cloud & DevOps Best score 100/100 0 findings 471/wk Cap. Minimal

Best MCP servers for cloud infrastructure, Kubernetes and CI/CD

One casual prompt — "why is checkout latency spiking?" — can now send an AI assistant into a Kubernetes cluster, a CloudWatch dashboard and a deployment history at once. That is what cloud and DevOps MCP servers do: through the Model Context Protocol, assistants like Claude and Cursor talk directly to AWS, Azure and Google Cloud APIs, Docker registries, Terraform state, CI/CD pipelines and observability stacks such as Prometheus or Grafana. The assistant stops describing infrastructure and starts operating it, which is why security scrutiny matters more here than almost anywhere else.

  • Diagnose and deploy: tail pod logs, inspect a failing pipeline, then roll a release forward or back without leaving the editor.
  • Provision and audit: draft Terraform plans, list exposed security groups, or review IAM roles across accounts on request.
  • Understand the blast radius: a Kubernetes or AWS MCP server usually holds kubeconfigs, IAM keys or API tokens, and a malicious or over-permissioned one could exfiltrate those secrets, widen IAM policies, spin up expensive compute or delete production resources. Prompt injection hidden in a log line or ticket can steer an agent into doing exactly that.

Because DevOps tooling pairs read access to secrets with write access to live systems, compare candidates in the full MCP Trust Registry first — and if the same agent also drives browsers or customer records, the Browser Automation and Business & CRM categories deserve an equally close look.

How safe is that Kubernetes or AWS MCP server? Reading the Trust Score

Every package listed here was analyzed by the deterministic, open-source mcptrustchecker engine, which reads the published npm or PyPI code and produces an A-F Trust Score, a capability profile and findings backed by evidence. Identical input always earns an identical grade, no LLM sits in the loop, and placement cannot be bought. Treat the result as an automated opinion about published code rather than a certification, then weigh it against blast radius: a server that only reads metrics deserves a lower bar than one that can apply Terraform or restart clusters. The full model is documented under how the algorithm works.

Is it safe to connect an MCP server to a production cloud account?

Only with deliberate limits. Use scoped, short-lived credentials and read-only roles wherever possible, check the server's Trust Score and findings before the first call, and prove the setup in a staging account before granting write access to production one capability at a time.