Developer · Local MCP server
PostgreSQL (hardened, read-only)
Read-only PostgreSQL over MCP. Writes refused at the parsed SQL, plus a READ ONLY transaction.
What the MCP Registry states
The entry as published to the official MCP Registry (read 2026-10-04), latest version.
- Registry name
io.github.Eszetael/postgres-mcp-hardened- Version
- 0.1.10
- Status
- Active
- Category
- developer
- Transport
- stdio (local process), Streamable HTTP
- Package
- npm, OCI image (Docker)
- Published
- 2026-09-04
- Updated
- 2026-09-04
- Publisher
- Eszetael (GitHub)
- Website
- github.com/Eszetael/postgres-mcp-hardened
- Repository
- github.com/Eszetael/postgres-mcp-hardened
- Source
- Registry API entry
Packages
| Registry | Package | Version | Transport |
|---|---|---|---|
| npmruntime: npx | postgres-mcp-hardened | 0.1.10 | stdio |
| OCI image (Docker) | ghcr.io/eszetael/postgres-mcp-hardened:0.1.10 | — | HTTP |
How to connect PostgreSQL (hardened, read-only)
PostgreSQL (hardened, read-only) runs locally from a Node.js package published to the npm registry: postgres-mcp-hardened version 0.1.10. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Node.js; clients usually start it with npx — the usual command is npx -y postgres-mcp-hardened@0.1.10. It reads these environment variables: DATABASE_URL (required, secret), MCP_STATEMENT_TIMEOUT, MCP_ALLOW_TABLES and MCP_AUDIT_LOG; set them in the client's configuration for this server.
PostgreSQL (hardened, read-only) runs locally from a container image in an OCI registry such as Docker Hub or GitHub Container Registry: ghcr.io/eszetael/postgres-mcp-hardened:0.1.10. The package starts a local server that speaks MCP over Streamable HTTP; the client then connects to it by URL. It reads these environment variables: DATABASE_URL (required, secret) and MCP_ADDR; set them in the client's configuration for this server.
In the mcpServers JSON format that many desktop and editor MCP clients read, the entry looks like this (placeholders in angle brackets):
{
"mcpServers": {
"postgres-mcp-hardened": {
"command": "npx",
"args": [
"-y",
"postgres-mcp-hardened@0.1.10"
],
"env": {
"DATABASE_URL": "<secret>",
"MCP_STATEMENT_TIMEOUT": "<value>",
"MCP_ALLOW_TABLES": "<value>",
"MCP_AUDIT_LOG": "<value>"
}
}
}
}Derived from the registry entry, not tested here. What the server does, and on what terms, is set by its publisher; check its repository or website before giving it access to your accounts or files. How to add an MCP server to an assistant · Before you connect
More developer servers
| Server | Runs |
|---|---|
| Postgres MCPEnterprise PostgreSQL MCP server with NL queries, hybrid search (pgvector+BM25), and web UI. | Local · stdio |
| Postgres MCPPostgreSQL MCP server with 15 tools (SQL, EXPLAIN, health, indexes) plus a Gradio UI with LLM chat. | Local · stdio |
| Postgres Scout MCPScout your PostgreSQL databases with AI - safety features, monitoring, and data quality. | Local · stdio |
| PostgreSQLMCP server for PostgreSQL: local, Docker, RDS, Neon, Supabase, or behind an SSH bastion. | Local · stdio |
| PostgreSQL CVE & Release IntelligencePostgreSQL security for AI agents: CVEs, yanked releases, exploits, and upgrade paths. | Local · stdio |
| PostgreSQL MCP ServerPostgreSQL MCP Server — 27 tools for queries, schema, CRUD, DBA, HA & server management. | Local · stdio |
| PostgreSQL MCP ServerPostgreSQL MCP server with 203 tools, connection pooling, HTTP/SSE, OAuth 2.1, and tool filtering. | Local · stdio |
| PostgreSQL MCP ServerEnterprise PostgreSQL MCP server with 63 tools, 10 resources, 10 prompts for AI-native operations. | Local · stdio |