Developer · Local MCP server
pgops
Safe, audited PostgreSQL operations for AI agents: queries, migrations, EXPLAIN, containers.
What the MCP Registry states
The entry as published to the official MCP Registry (read 2026-10-04), latest version.
- Registry name
io.github.arzharch/pgops-mcp- Version
- 0.1.9
- Status
- Active
- Category
- developer
- Transport
- stdio (local process)
- Package
- PyPI, OCI image (Docker)
- Published
- 2026-09-01
- Updated
- 2026-09-01
- Publisher
- arzharch (GitHub)
- Repository
- github.com/arzharch/pgops-mcp
- Source
- Registry API entry
Packages
| Registry | Package | Version | Transport |
|---|---|---|---|
| PyPIruntime: uvx | pgops-mcp | 0.1.9 | stdio |
| OCI image (Docker) | ghcr.io/arzharch/pgops-mcp:0.1.9 | — | stdio |
How to connect pgops
pgops runs locally from a Python package published to PyPI: pgops-mcp version 0.1.9. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Python; clients usually start it with uvx (from uv) or after pip install — the usual command is uvx pgops-mcp. It reads these environment variables: PGOPS_DSN (required, secret), PGOPS_READONLY_DSN (secret), PGOPS_READ_ONLY, PGOPS_APPROVAL_MODE, PGOPS_AUDIT_LOG, PGOPS_DEFAULT_TIMEOUT_MS, PGOPS_MAX_TIMEOUT_MS and PGOPS_DEFAULT_ROW_LIMIT; set them in the client's configuration for this server.
pgops runs locally from a container image in an OCI registry such as Docker Hub or GitHub Container Registry: ghcr.io/arzharch/pgops-mcp:0.1.9. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Docker or another OCI container runtime; started with docker run — the usual command is docker run -i --rm -e PGOPS_DSN -e PGOPS_READ_ONLY -e PGOPS_AUDIT_LOG ghcr.io/arzharch/pgops-mcp:0.1.9. It reads these environment variables: PGOPS_DSN (required, secret), PGOPS_READ_ONLY and PGOPS_AUDIT_LOG; set them in the client's configuration for this server.
In the mcpServers JSON format that many desktop and editor MCP clients read, the entry looks like this (placeholders in angle brackets):
{
"mcpServers": {
"pgops-mcp": {
"command": "uvx",
"args": [
"pgops-mcp"
],
"env": {
"PGOPS_DSN": "<secret>",
"PGOPS_READONLY_DSN": "<secret>",
"PGOPS_READ_ONLY": "<value>",
"PGOPS_APPROVAL_MODE": "<value>",
"PGOPS_AUDIT_LOG": "<value>",
"PGOPS_DEFAULT_TIMEOUT_MS": "<value>",
"PGOPS_MAX_TIMEOUT_MS": "<value>",
"PGOPS_DEFAULT_ROW_LIMIT": "<value>"
}
}
}
}Derived from the registry entry, not tested here. What the server does, and on what terms, is set by its publisher; check its repository or website before giving it access to your accounts or files. How to add an MCP server to an assistant · Before you connect
More developer servers
| Server | Runs |
|---|---|
| Pg AiguideComprehensive PostgreSQL documentation and best practices, including ecosystem tools. | Remote & Local · HTTP, stdio |
| Pg Migration Lock LintNames every statement in a Rails, Django or raw SQL migration that takes a table-blocking Postgres l. | Local · stdio |
| Pg Readonly MCPA read-only Postgres MCP server that parses SQL rather than pattern-matching it. | Local · stdio |
| PGAuditorHosted MCP server for PostgreSQL diagnostics: slow queries, missing indexes, connection pressure. | Remote · HTTP |
| PH Schools MCP ServerLocal stdio MCP server for searching and analyzing the Philippine schools masterlist dataset. | Local · stdio |
| Phantom SecretsStop AI coding agents from leaking API keys. Local proxy swaps real secrets for phm_ tokens. | Local · stdio |
| PharaohCodebase knowledge graph — architectural awareness for AI coding agents via MCP. | Remote & Local · SSE, stdio |
| Phi Guard MCPLocal-first PHI detection for source code, LLM prompts, logs, and analytics. | Local · stdio |