devops-infra MCP Server
A lightweight service that enables AI assistants to execute AWS CLI commands (in safe containerized environment) through the Model Context Protocol (MCP). Bridges Claude, Cursor, and other MCP-aware AI tools with AWS CLI for enhanced cloud infrastructure management.
Discovered via unknown and last synced 4mo ago.
1. Install the package
uvx aws-mcp
2. Add to claude_desktop_config.json
{
"mcpServers": {
"aws-mcp-server": {
"command": "uvx",
"args": [
"aws-mcp"
]
}
}
}Config file location: ~/Library/Application Support/Claude/claude_desktop_config.json (macOS) / %APPDATA%\Claude\claude_desktop_config.json (Windows)
DevOps engineers and platform teams who need to automate AWS infrastructure management without leaving their AI-assisted development workflow. Cloud architects and SREs benefit from having Claude execute AWS CLI commands directly, enabling faster troubleshooting, resource inspection, and infrastructure changes through conversational interfaces.
Query EC2 instances, RDS databases, S3 buckets, and other AWS resources directly through Claude to gather current infrastructure state without switching contexts. Useful for troubleshooting, capacity planning, and generating infrastructure reports on demand.
Execute AWS CLI commands to deploy applications, manage CloudFormation stacks, update security groups, and provision infrastructure through conversational prompts. Reduces manual CLI work and enables infrastructure-as-conversation workflows.
Have Claude fetch CloudWatch metrics, logs, and status checks to diagnose issues and recommend remediation actions. Enables faster incident investigation by combining AI analysis with real-time AWS data.
Execute cross-account AWS CLI commands to audit resources, enforce compliance policies, and manage multi-environment deployments through a single AI interface. Simplifies governance across development, staging, and production environments.
The MCP server runs AWS CLI commands in a containerized environment, isolating credentials from the AI model itself. Your AWS credentials are only used locally to authenticate CLI requests, never sent to Anthropic or external services.
Claude executes the exact AWS CLI commands you direct it to run. You maintain full control over permissions by using IAM policies that restrict which operations are available. Consider using read-only IAM roles or limited-scope policies for safety.
Any command available in the AWS CLI can be executed, including EC2, S3, RDS, Lambda, CloudFormation, IAM, and hundreds of other AWS services. The server is agnostic to specific commands and passes them directly to your local AWS CLI installation.
You need the AWS CLI installed and configured with valid credentials (via environment variables, credential files, or IAM roles). Once configured, the MCP server automatically uses your existing AWS authentication and can execute commands immediately.
Execute AWS CLI commands with optional pipes (`jq`, `grep`, etc.)
Maximum output size in characters
AWS region (also accepts `AWS_DEFAULT_REGION`)
Server[AWS MCP Server] Server --> CLI[AWS CLI] CLI --> AWS[AWS Cloud] IAM[Your IAM Policy] -.->
Transport protocol (`stdio`, `sse`, or `streamable-http`)
Purpose
Default
Custom path to AWS config file
Custom path to credentials file
Sandbox mode (`auto`, `disabled`, `required`)
Get documentation for any AWS command
Command execution timeout in seconds
AWS profile to use
Credential passing (`env`, `aws_config`, `both`)
Detecting exposed AWS credentials in source code repositories, CI/CD pipelines, and configuration files using TruffleHog, git-secrets, and AWS-native detection mechanisms to prevent credential theft and unauthorized account access.
Detecting data exfiltration attempts from AWS S3 buckets by analyzing CloudTrail S3 data events, VPC Flow Logs, GuardDuty findings, Amazon Macie alerts, and S3 access patterns to identify unauthorized bulk downloads and cross-account data transfers.
Implement Amazon Macie to automatically discover, classify, and protect sensitive data in S3 buckets using machine learning and pattern matching for PII, financial data, and credentials detection.
Implementing AWS Security Hub to aggregate security findings across AWS accounts, enable compliance standards like CIS AWS Foundations and PCI DSS, configure automated remediation with EventBridge and Lambda, and create custom security insights for organizational risk management.
Flexible and powerful framework for managing multiple AI agents and handling complex conversations
为独立开发者准备的精选技术栈和工具仓库来了!这里有你最需要的工具,帮你提升开发效率、节约成本,最重要的是——这些工具都是市场上热门的,经过验证的。🚀A curated collection of tech stacks and tools tailored for independent developers is here! these are proven, popular tools widely used in the industry. 🚀
Learn Cloud Applied Generative AI Engineering (GenEng) using OpenAI, Gemini, Streamlit, Containers, Serverless, Postgres, LangChain, Pinecone, and Next.js
The secure gateway connecting AI agents to enterprise systems.
Learn how to use the cloud-aws Claude skill. Complete guide with installation instructions and examples.
Learn how to use the detecting-aws-iam-privilege-escalation Claude skill. Complete guide with installation instructions and examples.
Learn how to use the detecting-aws-guardduty-findings-automation Claude skill. Complete guide with installation instructions and examples.