general MCP Server
Google Cloud Spanner Read-Only MCP Server 2026 - Safe Schema Inspect & SELECT Queries
Discovered via github-topic:mcp and last synced 3mo ago.
Install instructions not detected yet
Check the source repository for the latest setup steps.
Description
Emoji
F[24/7 Support Team] subgraph "Security Layer" G[Read-Only Enforcer] H[Query Validator] I[Row Limiter] end B --> G --> H --> I --> C ``` ## 💻 Example Profile Configuration Create a `.env` file or use environment variables: ```bash # Spanner Query AI Gateway Configuration SPANNER_PROJECT_ID=your-project-id SPANNER_INSTANCE_ID=your-instance SPANNER_DATABASE_ID=your-database SPANNER_CREDENTIALS_PATH=/path/to/service-account-key.json # Server Configuration MCP_HOST=0.0.0.0 MCP_PORT=8080 MCP_READ_ONLY=true # Security MAX_ROWS=1000 QUERY_TIMEOUT_SECONDS=30 ALLOWED_QUERY_TYPES=SELECT,SHOW,DESCRIBE,EXPLAIN SENSITIVE_COLUMNS=email,password,ssn # AI Integration OPENAI_API_KEY=sk-your-key-here ANTHROPIC_API_KEY=sk-ant-your-key-here ``` ## 🚀 Example Console Invocation Start the MCP server: ```bash python spanner_query_ai_gateway.py \ --project my-project \ --instance my-spanner-instance \ --database my-db \ --port 8080 \ --read-only ``` Then send queries via MCP protocol: ```python # Example MCP client request import requests payload = { "action": "query", "sql": "SELECT table_name, table_type FROM information_schema.tables WHERE table_catalog = ' '", "parameters": {} } response = requests.post("http://localhost:8080/mcp", json=payload) print(response.json()) ``` ## 🖥️ OS Compatibility Table
Implementing and auditing GCP VPC firewall rules to enforce network segmentation, restrict ingress and egress traffic, apply hierarchical firewall policies across the organization, and monitor firewall rule effectiveness using VPC Flow Logs.
Auditing Google Cloud Platform IAM permissions to identify overly permissive bindings, primitive role usage, service account key proliferation, and cross-project access risks using gcloud CLI, Policy Analyzer, and IAM Recommender.
Configuring Google Cloud Identity-Aware Proxy (IAP) to enforce per-request identity verification for Compute Engine, App Engine, Cloud Run, and GKE services using access levels, context-aware policies, and programmatic access with service accounts.
Implement GCP Binary Authorization to enforce deploy-time security controls that ensure only trusted, attested container images are deployed to Google Kubernetes Engine and Cloud Run.
Sample code and notebooks for Generative AI on Google Cloud, with Gemini Enterprise Agent Platform
The secure gateway connecting AI agents to enterprise systems.
DecisionBox connects to your data warehouse, runs autonomous AI agents that write and execute SQL, and surfaces validated insights and actionable recommendations — without you asking a single question.
Learn how to use the cloud-gcp Claude skill. Complete guide with installation instructions and examples.
Learn how to use the implementing-gcp-vpc-firewall-rules Claude skill. Complete guide with installation instructions and examples.
Learn how to use the auditing-gcp-iam-permissions Claude skill. Complete guide with installation instructions and examples.