Atlas MCP
OfficialAllows natural language querying of ClickHouse databases.
Connects to Confluence to ingest documentation into the Knowledge Base.
Allows delivering answers via Discord chat.
Allows natural language querying of DuckDB databases.
Allows natural language querying of Elasticsearch.
Connects to GitBook to ingest documentation into the Knowledge Base.
Allows querying GitHub data via its REST API as a datasource.
Enables delivering answers through Google Chat (coming soon).
Connects to Help Scout to ingest documentation into the Knowledge Base.
Connects to Intercom to ingest documentation into the Knowledge Base.
Allows natural language querying of MySQL databases.
Connects to Notion as both a Knowledge Base connector and a REST API datasource.
Supports Ollama as the LLM backend for generating answers.
Supports OpenAI as the LLM backend for generating answers.
Allows natural language querying of PostgreSQL databases.
Integrates with Salesforce as both a data source and a Knowledge Base connector.
Allows delivering answers through Slack with one-click integration.
Allows natural language querying of Snowflake databases.
Allows natural language querying of SQLite databases.
Allows querying Stripe data via its REST API as a datasource.
Allows delivering answers through Telegram.
Allows delivering answers through WhatsApp.
Connects to Zendesk to ingest documentation into the Knowledge Base.
Click on "Install Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@Atlas MCPWhat's our GMV this quarter?"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
What is Atlas?
Ask two tools what revenue was last quarter and you can get two different numbers. Atlas reads your definitions first.
What grounds an answer
Three context surfaces, each with a different job — and a boundary between them that Atlas enforces rather than trusts:
What it is | Its job | |
Semantic layer | YAML on disk — entities, dimensions, measures, joins, glossary terms, pinned metrics | The sole authoritative surface. The table whitelist, pinned metric SQL, and glossary gating are enforced, not suggested |
Knowledge Base | Your own docs — mirrored through ten vendor connectors (Notion, Confluence, GitBook, Zendesk, Salesforce, Intercom, Front, Help Scout, Freshdesk) or uploaded directly | Descriptive only. Runbooks, definitions, policies. Never queried as data, never extends the whitelist, never gates the agent (ADR-0028) |
Learned patterns | The query shapes Atlas keeps as your team approves them | The canonical joins for your domain — earned from real use rather than authored up front |
That descriptive-vs-authoritative split is the point: a runbook can inform an answer, but only the semantic layer can authorize the SQL behind it.
Every YAML field exists because an LLM needs it to write correct SQL: sample_values ground the agent in real data, glossary.status: ambiguous forces clarifying questions, metrics.objective picks MAX vs MIN, query_patterns teach the canonical join shapes for your domain.
Where the answer shows up
The same grounded agent, reachable however your team already works:
Chat UI — built in, with the SQL on display behind every answer
Dashboards — draft-first and publish-gated, so private work stays private until you ship it (ADR-0029)
MCP server — Claude Desktop, Cursor, Continue, or any MCP client, over stdio or OAuth 2.1
Embeddable widget — script tag or React component, in your own app
Chat platforms — six, Slack one-click; Teams, Discord, Telegram, and WhatsApp with your own bot (Google Chat coming soon)
REST API + CLI — headless, typed, scriptable
Built with Hono, Vercel AI SDK, and bun. Supports Anthropic, OpenAI, Bedrock, Ollama, and Vercel AI Gateway. Works with PostgreSQL, MySQL, ClickHouse, Snowflake, DuckDB, BigQuery, Elasticsearch, and Salesforce.
Related MCP server: Foggy Data MCP Bridge
Try the demo locally
bun create atlas-agent my-app
cd my-app
# edit .env and set your LLM API key (Anthropic / OpenAI / etc.)
bun run dev
# Open http://localhost:3000The scaffold seeds the canonical NovaMart e-commerce dataset (52 tables, ~480K rows) by default — twelve generic e-commerce KPIs ship as starter prompts inside the chat UI; the canonical 5 below drive the eval harness (#2025) and the docs/landing copy. The scaffold defaults to SQLite + Anthropic; pass --defaults for non-interactive setup or follow the prompts to pick PostgreSQL / OpenAI / etc.
Ask one of the canonical questions in the chat UI:
"What's our GMV this quarter?"
"What's our top-performing category by GMV this month?"
"Monthly GMV trend over the past 6 months."
"Show me revenue last quarter." — Atlas asks which definition you mean (GMV vs. net revenue vs. seller revenue) because
revenueisstatus: ambiguousin the glossary"What are our most common return reasons?"
The agent reads your YAML semantic layer first, picks the right entities, writes SQL, runs it through the validation pipeline, and returns answers with the underlying SQL on display.
The default landing for fresh installs is chat-first — admins can flip to admin in Settings → Profile. See the Default Landing guide for the underlying preference.
Install Atlas as an MCP server
Once you have an Atlas instance (local from the demo above, self-hosted, or a hosted workspace), add it to Claude Desktop, Cursor, or Continue with one command. Auto-detects the client and merges into its config:
bunx @useatlas/mcp init --local # paste-ready config for a local Atlas instance
bunx @useatlas/mcp init --local --write # merge into the detected client config (with a .bak)
bunx @useatlas/mcp init --hosted --write # for an app.useatlas.dev workspace via OAuth 2.1On WSL2? Bun's
bunxshim has resolution issues on some WSL2 setups — substitutebun x(space-separated) for anybunxcommand above (e.g.bun x @useatlas/mcp init --local). The space-separated form is a bun subcommand and resolves correctly.
Restart Claude Desktop / Cursor and ask the same canonical questions through your AI client. See the MCP guide for the full flow — hosted (mcp.useatlas.dev over OAuth 2.1 + DCR + PKCE) and self-hosted (stdio) live in the same page under tabs.
What's in the YAML?
A 20-line slice of semantic/entities/orders.yml from the bundled NovaMart e-commerce demo (#2021):
name: Orders
type: fact_table
table: orders
grain: one row per order
description: |
Customer orders — the primary fact table for revenue analysis.
shipping_cost uses MIXED UNITS (some rows in dollars, some in cents).
dimensions:
- name: status
sql: status
type: string
sample_values: [pending, processing, shipped, delivered, cancelled]
- name: order_month
sql: TO_CHAR(created_at, 'YYYY-MM')
type: string
virtual: true
measures:
- name: total_gmv_cents
sql: total_cents
type: sum
joins:
- target_entity: Customers
relationship: many_to_one
join_columns: { from: customer_id, to: id }That YAML is the contract between your team and the agent — version-controlled, code-reviewed, diffable. Sibling files (glossary.yml, metrics/*.yml, catalog.yml) round it out: glossary terms with status: ambiguous force the agent to clarify, metrics with objective: maximize / minimize make optimization direction explicit, and the catalog routes the agent to the right entity for a given question.
See the full Semantic Layer reference for the complete schema.
Embed in your app
Atlas also ships an embeddable chat widget for any frontend:
<script
src="https://your-atlas.example.com/widget.js"
data-api-url="https://your-atlas.example.com"
data-theme="dark"
></script>Or use the React component:
import { AtlasChat } from "@useatlas/react";
export default function App() {
return <AtlasChat apiUrl="https://your-atlas.example.com" />;
}The widget supports programmatic control (Atlas.open(), Atlas.ask("..."), Atlas.destroy()), event callbacks, and theming. See the widget docs.
Why Atlas?
Atlas | Traditional BI | Other text-to-SQL | |
Semantic layer | YAML on disk — | Proprietary metadata, GUI-authored | None or limited |
Your docs as context | Knowledge Base pillar — ten vendor connectors, descriptive-only by construction (never extends the SQL whitelist) | Separate wiki, unlinked | None |
Dashboards | Draft-first, publish-gated — built from chat answers, private until you ship | Core product, GUI-authored | Rare |
Agent-native | MCP server first — Claude Desktop, Cursor, Continue with | Bolted-on AI feature | Standalone chat UI |
Embeddable | Script tag, React component, headless API, MCP, 6 chat platforms (Slack one-click; Teams/Discord/Telegram/WhatsApp bring-your-own-bot; Google Chat coming soon) | Standalone app | Standalone app |
Deploy anywhere | Docker, Railway, Vercel, or your own infra | Vendor-hosted | Vendor-hosted |
Plugin ecosystem | 24 plugins across 5 types — extend anything | Closed | Limited |
Open source | AGPL-3.0 core, MIT client libs | Proprietary | Varies |
Multi-database | PostgreSQL, MySQL, ClickHouse, Snowflake, DuckDB, BigQuery, Elasticsearch, Salesforce | Usually one | Usually one |
REST APIs as datasources | Stripe, GitHub, Notion, any OpenAPI spec — read like a datasource, write-gated; generic OpenAPI installs auto-refresh | None | None |
Deploy
Docker:
git clone https://github.com/AtlasDevHQ/atlas-starter-docker.git && cd atlas-starter-docker
cp .env.example .env # Set your API key + database URL
docker compose upPlatform | Starter | Guide |
Vercel | Next.js + embedded Hono API + Neon Postgres | |
Railway | Docker + sidecar sandbox + Railway Postgres | |
Docker | Docker Compose + optional nsjail isolation |
How It Works
User (or agent) asks a natural language question — over MCP, the chat widget, the API, or a chat platform (Slack, Teams, Discord, Telegram, or WhatsApp; Google Chat coming soon)
Agent explores the YAML semantic layer — entities, glossary, metrics, query patterns
Agent writes SQL, validated through a 7-layer security pipeline (empty check, regex guard, AST parse, table whitelist, RLS injection, auto-LIMIT, statement timeout)
Results are returned with charts and an interpreted narrative
Question → YAML semantic layer → SQL generation → 7-layer validation → Query execution → Charts + narrativeGenerate the semantic layer
bun run atlas -- init # Profile DB and generate YAMLs
bun run atlas -- init --enrich # Profile + LLM enrichment
bun run atlas -- init --demo # Load NovaMart demo data + profileArchitecture
atlas/
├── packages/
│ ├── api/ # @atlas/api — Hono API server + agent loop + tools + auth
│ ├── web/ # @atlas/web — Next.js frontend + chat UI components
│ ├── cli/ # @atlas/cli — CLI (profiler, schema diff, enrichment)
│ ├── mcp/ # @atlas/mcp — MCP server (Claude Desktop, Cursor, etc.)
│ ├── sandbox-sidecar/ # @atlas/sandbox-sidecar — Isolated explore sidecar
│ ├── sdk/ # @useatlas/sdk — TypeScript SDK
│ ├── react/ # @useatlas/react — Embeddable chat component + hooks
│ ├── types/ # @useatlas/types — Shared wire-format types
│ ├── schemas/ # @useatlas/schemas — Shared Zod schemas
│ ├── plugin-sdk/ # @useatlas/plugin-sdk — Plugin type definitions
│ ├── webhook-publisher/# @useatlas/webhook-publisher — HMAC-signed outbound webhooks
│ ├── oauth-helper/ # @atlas/oauth-helper — OAuth 2.1 + DCR + PKCE primitives (internal)
│ ├── okf-bundle/ # @atlas/okf-bundle — OKF knowledge-bundle builder (internal)
│ └── fumadocs-okf/ # @atlas/fumadocs-okf — Fumadocs → OKF adapter (internal)
├── plugins/ # 24 plugins (datasource, context, interaction, action, sandbox)
├── ee/ # @atlas/ee — Enterprise features (source-available, commercial license)
├── create-atlas/ # Scaffolding CLI (bun create atlas-agent)
├── apps/
│ ├── www/ # Landing page (useatlas.dev)
│ └── docs/ # Documentation (docs.useatlas.dev)
└── examples/ # Docker + Vercel deploy examplesSecurity
SQL validation runs through multiple layers. Your database credentials and query results never leave your infrastructure — only questions reach the LLM provider (use Ollama for fully self-hosted).
Layer | What it does |
Read-only enforcement | Only SELECT queries allowed (regex + AST validation) |
AST parsing |
|
Table whitelist | Only tables in your semantic layer are queryable |
Auto LIMIT | Every query gets a LIMIT (default 1000) |
Statement timeout | Queries killed after 30s (configurable) |
Sandboxed execution | Filesystem access runs in Vercel Sandbox, nsjail, or the sidecar — with e2b, Daytona, and Railway available as bring-your-own-cloud backends |
Row-level security | Optional RLS injection per-user |
See sandbox architecture for the full threat model.
Environment Variables
Variable | Default | Description |
|
| LLM provider ( |
| Provider default | Model ID override |
| — | Atlas internal Postgres for auth, audit, settings |
| — | Analytics datasource (PostgreSQL, MySQL, etc.) |
|
| Max rows per query |
|
| Query timeout in ms |
See .env.example for all options.
Documentation
The Semantic Layer — Entities, dimensions, measures, joins, glossary, metrics — the YAML format reference
Knowledge Base — Mirror your own docs as descriptive context, via connectors or upload
Dashboards — Draft-first, publish-gated dashboards built from chat answers
MCP Server — Use Atlas from Claude Desktop, Cursor, Continue
Quick Start — Local dev from zero to asking questions
Demo Dataset — NovaMart e-commerce dataset and canonical questions
Deploy Options — Docker, Railway, Vercel, and more
Connect Your Data — Connect to an existing database safely
Widget Embedding — Script tag and React component
Bring Your Own Frontend — Nuxt, SvelteKit, React/Vite, TanStack Start
Plugin Authoring — Build custom plugins
Security & Sandbox — Threat model, isolation tiers
Enterprise Boundary —
/eefeatures, AGPL vs commercial split,requireEnterpriseAPI
Contributing
Quick development setup:
git clone https://github.com/AtlasDevHQ/atlas.git && cd atlas
bun install
bun run db:up # Start Postgres + sandbox sidecar
cp .env.example .env # Set ATLAS_PROVIDER + API key
bun run dev # http://localhost:3000Acknowledgments
Atlas was inspired by Abhi Sivasailam's work on Vercel's internal data agent d0 and the open-source vercel-labs/oss-data-analyst template. The core insight — invest in a rich semantic layer, trust the model, and keep the tool surface minimal — came from that work.
License
The Atlas server and core packages (@atlas/api, @atlas/cli, @atlas/web, @atlas/mcp, @atlas/sandbox-sidecar) are licensed under AGPL-3.0. If you modify the server and serve it to users, you must share those modifications.
The client libraries (@useatlas/sdk, @useatlas/react, @useatlas/types, @useatlas/plugin-sdk) and all plugins are licensed under MIT. Embed them in proprietary apps with no restrictions.
The ee/ directory (@atlas/ee — SSO, SCIM, custom roles, approval workflows, residency, branding, and the rest of the SaaS surfaces) is source-available under a commercial license. Self-hosted users get the full AGPL core for free; the commercial license adds enterprise governance and the polished hosted experience. See the Enterprise Boundary page for the full feature inventory.
This server cannot be installed
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Related MCP Servers
- Alicense-qualityDmaintenanceAn MCP (Model Context Protocol) server that exposes natural language to SQL functionality, allowing any MCP-compatible client to convert plain English questions into SQL queries for database interaction using AI.Last updated3MIT
- Alicense-qualityBmaintenanceA semantic layer query engine with MCP support, enabling AI assistants to query structured data through natural language and declarative interfaces.Last updated2Apache 2.0
- Alicense-qualityCmaintenanceA database-agnostic MCP server that enables natural language queries to your database through Claude or Copilot, automatically writing and executing SQL.Last updated2MIT
- Flicense-qualityBmaintenanceEnables natural-language Q&A, human-approved actions, and dashboard generation over a data ontology via MCP.Last updated
Related MCP Connectors
Analytical memory for AI agents: a real Postgres queried in plain English over MCP. One command.
GibsonAI MCP server: manage your databases with natural language
The grounded data layer for any LLM: governed SQL, metrics, lineage and catalog over your data.
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/AtlasDevHQ/atlas'
If you have feedback or need assistance with the MCP directory API, please join our Discord server