Developer · Local MCP server
Midplane
Safe-by-default SQL guardrails for AI agents: AST-checked queries, per-table policy, audit log.
What the MCP Registry states
The entry as published to the official MCP Registry (read 2026-10-04), latest version.
- Registry name
ai.midplane/midplane- Version
- 0.20.0
- Status
- Active
- Category
- developer
- Transport
- stdio (local process), Streamable HTTP
- Package
- npm, OCI image (Docker)
- Published
- 2026-08-25
- Updated
- 2026-08-25
- Publisher
- ai.midplane
- Website
- midplane.ai/docs
- Repository
- github.com/midplaneai/midplane (folder engine/packages/mcp-server)
- Source
- Registry API entry
Packages
| Registry | Package | Version | Transport |
|---|---|---|---|
| npmruntime: npx | midplane | 0.20.0 | stdio |
| OCI image (Docker)runtime: docker | docker.io/midplane/midplane:0.20.0 | — | HTTP |
How to connect Midplane
Midplane runs locally from a Node.js package published to the npm registry: midplane version 0.20.0. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Node.js; clients usually start it with npx — the usual command is npx -y midplane@0.20.0. It reads these environment variables: DATABASE_URL (required, secret), MIDPLANE_POLICY_FILE, DB_PATH and MIDPLANE_TELEMETRY; set them in the client's configuration for this server.
Midplane runs locally from a container image in an OCI registry such as Docker Hub or GitHub Container Registry: docker.io/midplane/midplane:0.20.0. The package starts a local server that speaks MCP over Streamable HTTP; the client then connects to it by URL (the entry names docker as the runtime). It reads these environment variables: DATABASE_URL (required, secret), MIDPLANE_POLICY_FILE and PORT; set them in the client's configuration for this server.
In the mcpServers JSON format that many desktop and editor MCP clients read, the entry looks like this (placeholders in angle brackets):
{
"mcpServers": {
"midplane": {
"command": "npx",
"args": [
"-y",
"midplane@0.20.0"
],
"env": {
"DATABASE_URL": "<secret>",
"MIDPLANE_POLICY_FILE": "<value>",
"DB_PATH": "<value>",
"MIDPLANE_TELEMETRY": "<value>"
}
}
}
}Derived from the registry entry, not tested here. What the server does, and on what terms, is set by its publisher; check its repository or website before giving it access to your accounts or files. How to add an MCP server to an assistant · Before you connect
More developer servers
| Server | Runs |
|---|---|
| Microsoft SQL ServerRead-only-by-default SQL Server: schema, parameterized SELECT, execution plans; writes opt-in. | Local · stdio |
| Microsoft Windows Security Updates (MSRC CVRF) — buy per-query in-session (msrcwatch)MSRC Windows updates: CVE rollups, Patch Tuesday. Register in-session — free testnet funds. | Remote · HTTP |
| MidasLocal-first, source-traceable agent memory — no LLM at ingest, fully offline. | Local · stdio |
| middleBrick MCP-SERVERScan APIs for OWASP Top 10, LLM, and GraphQL security vulnerabilities. | Local · stdio |
| Mifactory Agent MemoryPersistent memory for AI agents across Claude, ChatGPT and any MCP client. | Remote · HTTP |
| MigraFlow - Database Migration AIAI-powered database migration. Analyze schemas, generate SQL, calculate risks. | Local · stdio |
| Migrationpilot112 rules that catch dangerous PostgreSQL migrations, plus a pass/fail gate to call before any DDL. | Local · stdio |
| Migratorxpress MCPMCP server for MigratorXpress — cross-platform database migration with parallel transfer. | Local · stdio |