MCP servers for cloud platforms, containers, orchestration, deployment and infrastructure. Each entry is scanned with the deterministic Capability-Flow Trust Model — grades are computed, never self-reported.
Official Heroku Platform MCP server for interacting with Heroku apps and platform resources.
MCP server for the Harness.io platform covering pipelines, deployments, cloud costs, chaos engineering, feature flags, SEI, and 125+ resource types through 11 tools.
Reference MCP server for interacting with Azure DevOps.
Google Cloud tool for deploying applications to Cloud Run via MCP.
Security scan results for the Linux Arm64 MCP server.
Security scan results for the Darwin X64 MCP server.
Security scan results for the Usgs Water MCP server.
Security scan results for the Nx Plugin MCP server.
Security scan results for the N8n MCP server.
Security scan results for the Excalidraw MCP server.
Security scan results for the Firefox Devtools Mcp Moz MCP server.
Official DigitalOcean MCP implementation for managing DigitalOcean cloud resources from MCP clients.
Security scan results for the Drawio MCP server.
Security scan results for the Win32 Arm64 MCP server.
Jenkins MCP server with bearer token authentication support.
Lets AI agents interact with Docker containers locally or remotely via SSH, including container operations, logs, monitoring, and cleanup.
Security scan results for the Aws Athena MCP server.
Security scan results for the Atlassian MCP server.
Security scan results for the Clinicaltrialsgov MCP server.
Security scan results for the Eur Lex MCP server.
Security scan results for the Calendar Autoauth MCP server.
Security scan results for the Courtlistener MCP server.
Security scan results for the Protein MCP server.
Security scan results for the Whatsapp MCP server.
One casual prompt — "why is checkout latency spiking?" — can now send an AI assistant into a Kubernetes cluster, a CloudWatch dashboard and a deployment history at once. That is what cloud and DevOps MCP servers do: through the Model Context Protocol, assistants like Claude and Cursor talk directly to AWS, Azure and Google Cloud APIs, Docker registries, Terraform state, CI/CD pipelines and observability stacks such as Prometheus or Grafana. The assistant stops describing infrastructure and starts operating it, which is why security scrutiny matters more here than almost anywhere else.
Because DevOps tooling pairs read access to secrets with write access to live systems, compare candidates in the full MCP Trust Registry first — and if the same agent also drives browsers or customer records, the Browser Automation and Business & CRM categories deserve an equally close look.
Every package listed here was analyzed by the deterministic, open-source mcptrustchecker engine, which reads the published npm or PyPI code and produces an A-F Trust Score, a capability profile and findings backed by evidence. Identical input always earns an identical grade, no LLM sits in the loop, and placement cannot be bought. Treat the result as an automated opinion about published code rather than a certification, then weigh it against blast radius: a server that only reads metrics deserves a lower bar than one that can apply Terraform or restart clusters. The full model is documented under how the algorithm works.
Only with deliberate limits. Use scoped, short-lived credentials and read-only roles wherever possible, check the server's Trust Score and findings before the first call, and prove the setup in a staging account before granting write access to production one capability at a time.