Aws Mcp Server

devops-infra MCP Server

A lightweight service that enables AI assistants to execute AWS CLI commands (in safe containerized environment) through the Model Context Protocol (MCP). Bridges Claude, Cursor, and other MCP-aware AI tools with AWS CLI for enhanced cloud infrastructure management.

Install Ready
devops-infradevops-infraaws
10 views182 stars31 forksMIT

Why This Matters

Discovered via unknown and last synced 4mo ago.

Install Ready
Source
unknown
Stars
182
Last synced
4mo ago
Install
Instructions detected

Install

1. Install the package

uvx aws-mcp

2. Add to claude_desktop_config.json

{
  "mcpServers": {
    "aws-mcp-server": {
      "command": "uvx",
      "args": [
        "aws-mcp"
      ]
    }
  }
}

Config file location: ~/Library/Application Support/Claude/claude_desktop_config.json (macOS) / %APPDATA%\Claude\claude_desktop_config.json (Windows)

14
Tools
0
Resources
0
Prompts
Standard I/O
Transport

Who Is This For?

DevOps engineers and platform teams who need to automate AWS infrastructure management without leaving their AI-assisted development workflow. Cloud architects and SREs benefit from having Claude execute AWS CLI commands directly, enabling faster troubleshooting, resource inspection, and infrastructure changes through conversational interfaces.

Use Cases

Real-time AWS resource inspection and querying

Query EC2 instances, RDS databases, S3 buckets, and other AWS resources directly through Claude to gather current infrastructure state without switching contexts. Useful for troubleshooting, capacity planning, and generating infrastructure reports on demand.

Automated deployment and configuration management

Execute AWS CLI commands to deploy applications, manage CloudFormation stacks, update security groups, and provision infrastructure through conversational prompts. Reduces manual CLI work and enables infrastructure-as-conversation workflows.

Infrastructure monitoring and incident response

Have Claude fetch CloudWatch metrics, logs, and status checks to diagnose issues and recommend remediation actions. Enables faster incident investigation by combining AI analysis with real-time AWS data.

Multi-account AWS management and auditing

Execute cross-account AWS CLI commands to audit resources, enforce compliance policies, and manage multi-environment deployments through a single AI interface. Simplifies governance across development, staging, and production environments.

Frequently Asked Questions

How does this ensure my AWS credentials stay secure?

The MCP server runs AWS CLI commands in a containerized environment, isolating credentials from the AI model itself. Your AWS credentials are only used locally to authenticate CLI requests, never sent to Anthropic or external services.

Can Claude accidentally delete critical resources?

Claude executes the exact AWS CLI commands you direct it to run. You maintain full control over permissions by using IAM policies that restrict which operations are available. Consider using read-only IAM roles or limited-scope policies for safety.

What AWS CLI commands are supported?

Any command available in the AWS CLI can be executed, including EC2, S3, RDS, Lambda, CloudFormation, IAM, and hundreds of other AWS services. The server is agnostic to specific commands and passes them directly to your local AWS CLI installation.

Do I need special setup beyond installing the MCP server?

You need the AWS CLI installed and configured with valid credentials (via environment variables, credential files, or IAM roles). Once configured, the MCP server automatically uses your existing AWS authentication and can execute commands immediately.

Available Tools (14)

aws_cli_pipeline

Execute AWS CLI commands with optional pipes (`jq`, `grep`, etc.)

AWS_MCP_MAX_OUTPUT

Maximum output size in characters

AWS_REGION

AWS region (also accepts `AWS_DEFAULT_REGION`)

MCP

Server[AWS MCP Server] Server --> CLI[AWS CLI] CLI --> AWS[AWS Cloud] IAM[Your IAM Policy] -.->

AWS_MCP_TRANSPORT

Transport protocol (`stdio`, `sse`, or `streamable-http`)

Tool

Purpose

Description

Default

AWS_CONFIG_FILE

Custom path to AWS config file

AWS_SHARED_CREDENTIALS_FILE

Custom path to credentials file

AWS_MCP_SANDBOX

Sandbox mode (`auto`, `disabled`, `required`)

aws_cli_help

Get documentation for any AWS command

AWS_MCP_TIMEOUT

Command execution timeout in seconds

AWS_PROFILE

AWS profile to use

AWS_MCP_SANDBOX_CREDENTIALS

Credential passing (`env`, `aws_config`, `both`)