Skip to main content
Glama
X1pheR
by X1pheR

dbackup-mcp

A typed Model Context Protocol server for curated backup administration of DBackup through its authenticated API.

This community project is not affiliated with or endorsed by the DBackup project. DBackup is licensed under GPL-3.0; dbackup-mcp is a separate integration project licensed under MIT.

What it covers

dbackup-mcp exposes explicit MCP workflows instead of a generic HTTP escape hatch. The current source package version is 0.1.0 and exposes 43 curated tools across:

  • backup jobs and read-only job planning;

  • execution history, cancellation and notification logs;

  • database, storage and notification adapters;

  • credential-profile references without credential reveal;

  • backup inspection, verification and bounded restore workflows;

  • capability and health diagnostics.

The server deliberately excludes raw HTTP, credential reveal, backup download/deletion, API-key administration, user/RBAC/SSO administration and unsupported DBackup UI-internal server actions.

See the complete Tool reference for every tool, mutation classification, destructive semantics, permissions and important guards.

Related MCP server: pbs-mcp

Requirements

  • Python 3.12+

  • DBackup 3.2.0 as the tested and supported baseline; other versions are unverified unless explicitly documented

  • a DBackup API key with only the permissions required by the enabled MCP workflows

  • an MCP client or gateway that supports STDIO servers

  • uv for the documented source workflow

Configuration

Variable

Required

Default

Meaning

DBACKUP_BASE_URL

yes

-

DBackup HTTP(S) origin without /api, for example https://backup.example.com.

DBACKUP_API_KEY_FILE

yes

-

Private regular file containing one DBackup API key. Group/other permissions are rejected.

DBACKUP_CREDENTIAL_SECRET_DIR

no

-

Private directory containing mode-0600 JSON credential payload files for explicit credential create/update tools.

DBACKUP_REQUEST_TIMEOUT_SECONDS

no

15

Per-request timeout in seconds, greater than zero and at most 120.

Example MCP registration from an installed package:

{
  "mcpServers": {
    "dbackup": {
      "command": "dbackup-mcp",
      "env": {
        "DBACKUP_BASE_URL": "https://backup.example.com",
        "DBACKUP_API_KEY_FILE": "/run/secrets/dbackup-api-key",
        "DBACKUP_CREDENTIAL_SECRET_DIR": "/run/secrets/dbackup-credentials"
      }
    }
  }
}

Omit DBACKUP_CREDENTIAL_SECRET_DIR when the MCP should not create or update DBackup credential profiles from local secret files.

Running from source

The repository includes uv.lock for a reproducible source environment.

uv sync --frozen --extra test
DBACKUP_BASE_URL=https://backup.example.com \
DBACKUP_API_KEY_FILE=/run/secrets/dbackup-api-key \
uv run --frozen dbackup-mcp

A gateway can also launch the checkout with uv run --frozen --directory /path/to/dbackup-mcp dbackup-mcp and the same environment variables.

Permissions

DBackup remains the authorization boundary. Grant only the permissions required by the workflows exposed to a given MCP consumer; a gateway can further restrict the visible tool set.

The full 43-tool surface can require job, history, source, destination, notification, storage/restore and credential-reference permissions. It does not require credential reveal, backup download/delete, API-key administration, user/RBAC/SSO administration or recovery-kit access. See the Tool reference for the exact full-surface permission set.

Security

  • API keys and credential payloads are file-backed and are never accepted as plaintext MCP arguments.

  • Secret input files must be private regular files; adapter inputs reject DBackup-sensitive configuration keys and use credential-profile references instead.

  • DBackup responses and error details are sanitized before model-visible output is returned.

  • No generic request escape hatch exists.

  • Destructive tools are explicitly annotated and confirmation is enforced where required; selected-file restore supports a dry-run path.

  • All tools publish openWorldHint=false.

See SECURITY.md for vulnerability reporting and the maintained security boundary.

Compatibility

DBackup 3.2.0 is the tested and supported baseline. The bundled OpenAPI description does not fully cover directory-job and granular file-restore behavior, so this project keeps a small source-verified 3.2.0 compatibility layer covered by contract tests.

Some objects used by DBackup's web job editor are available only through application-internal server actions rather than public API-key REST discovery. dbackup-mcp does not depend on those internal UI actions; known IDs may be supplied where the public job API accepts them. See the Tool reference for details.

Development and release

Run the repository-local verification entry point:

./scripts/verify.sh

GitHub Actions uses the same verification path. Dependabot maintains the locked dependency set within accepted compatibility ranges.

Normal development does not publish a release. An accepted strict SemVer tag (vMAJOR.MINOR.PATCH) triggers the release workflow, which fails closed while the repository is private, verifies the tag and package version, reruns verification, builds reproducible wheel/source artifacts plus SHA256SUMS, and publishes a GitHub Release. It does not publish to PyPI.

License

MIT. See LICENSE.

A
license - permissive license
-
quality - not tested
B
maintenance

Maintenance

Maintainers
Response time
Release cycle
Releases (12mo)
Commit activity

Resources

Unclaimed servers have limited discoverability.

Looking for Admin?

If you are the server author, to access and configure the admin panel.

Related MCP Servers

  • A
    license
    A
    quality
    C
    maintenance
    MCP server for Proxmox Backup Server. Exposes datastore status, snapshot inventory, garbage collection, verify, and prune over the PBS REST API as 13 LLM-callable tools.
    17
    1
    GPL 3.0
  • A
    license
    A
    quality
    A
    maintenance
    MCP server for Backrest that provides read-only and gated write access to backup configuration, snapshots, and operations, with layered safety controls to protect backup data.
    8
    MIT
  • A
    license
    B
    quality
    D
    maintenance
    MCP server for Duplicati backup management. Enables checking status, running backups, viewing logs, and controlling the scheduler.
    21
    MIT

View all related MCP servers

Related MCP Connectors

  • Personal assistant MCP server with search, execute, packages, jobs, secrets, and integrations.

  • MCP server exposing the Backtest360 engine API as tools for AI agents.

  • The MCP server for Azure DevOps, bringing the power of Azure DevOps directly to your agents.

View all MCP Connectors

Latest Blog Posts

MCP directory API

We provide all the information about MCP servers via our MCP API.

curl -X GET 'https://glama.ai/api/mcp/v1/servers/X1pheR/dbackup-mcp'

If you have feedback or need assistance with the MCP directory API, please join our Discord server