k8scortex-mcp
Provides a natural-language interface to manage Kubernetes clusters, including workloads, deployments, configurations, observability, and multi-cluster operations.
Click on "Install Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@k8scortex-mcpList all pods in the default namespace"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
K8sCortex — Kubernetes MCP Server
A production-grade Model Context Protocol (MCP) server that gives developers, AI agents, and automation pipelines a single, secure, natural-language interface to Kubernetes — across any cloud, any cluster, any team.
Features
Curated multi-domain toolset across workload, deployment, configuration, observability, jobs, networking, GitOps, cluster admin, and generic read paths
Multi-cluster routing — target any registered cluster with a single
clusterparameterEntra ID OIDC authentication with per-tool RBAC (5-tier role hierarchy)
Structured audit logging — every tool call recorded with caller identity, arguments, and outcome
Dual transport — SSE/HTTP for programmatic clients + stdio for Claude Desktop
Azure Key Vault integration for dynamic credential management with 5-minute TTL cache
Dry-run safety — destructive tools default to simulation mode
Generic read coverage — list/get support for resources outside curated write paths to avoid troubleshooting dead-ends
Related MCP server: mcp-kubernetes-server
Install via npx (Fastest)
npx k8scortex-mcpOr install globally:
npm install -g k8scortex-mcpQuick Start
Prerequisites
Node.js ≥ 18
A Kubernetes cluster (minikube, Rancher Desktop, or AKS)
kubectlconfigured with a valid context
Install & Run
# Clone
git clone https://github.com/apatilgtn/k8scortex-mcp.git
cd k8scortex-mcp
# Install
npm install
# Build
npm run build
# Run (local dev mode — auth bypassed)
DISABLE_AUTH=true PORT=3001 npm run devConnect with MCP Inspector
npx @modelcontextprotocol/inspector sse http://localhost:3001/mcpConnect with Claude Desktop
Add to ~/Library/Application Support/Claude/claude_desktop_config.json:
{
"mcpServers": {
"k8scortex": {
"command": "node",
"args": ["<path-to>/k8scortex-mcp/dist/stdio.js"],
"env": {
"DISABLE_AUTH": "true",
"KUBECONFIG": "~/.kube/config"
}
}
}
}Restart Claude Desktop. Ask: "List all pods in the default namespace".
Tools
K8sCortex intentionally keeps writes curated and governed, while allowing flexible read access for diagnostics.
Domain | Tool | Description |
Workload |
| List pods with status and IP |
Workload |
| Fetch container logs |
Workload |
| Full deployment spec |
Workload |
| List StatefulSets with rollout status |
Workload |
| Detailed StatefulSet spec/status |
Workload |
| List DaemonSets with scheduling status |
Workload |
| Detailed DaemonSet spec/status |
Workload |
| Cluster nodes with Ready status |
Deploy |
| Scale replicas (dry-run default) |
Deploy |
| Delete pod to trigger restart |
Config |
| Read ConfigMap data |
Config |
| Resource quota usage |
Config |
| Recent namespace events |
Config |
| PVC status, bound volume, storage class, capacity |
Config |
| ServiceAccount SubjectAccessReview matrix |
Generic Read |
| Generic list for arbitrary resource kinds |
Generic Read |
| Generic get for arbitrary resource kinds |
Observe |
| HPA metrics and scaling |
Observe |
| Warning events for triage |
Observe |
| Node memory/disk/PID pressure |
Multi |
| All registered clusters |
Multi |
| Node count, versions, architecture |
For the evolving full catalog, see docs/developer-guide.md.
Managed Risk
The largest functional risk in Kubernetes MCP is dead-end visibility on non-curated resources (for example StatefulSets, DaemonSets, PVCs, or CRDs). KubeNexus addresses this by combining:
Governed writes: high-impact operations remain explicit, role-gated, and often dry-run by default.
Flexible reads: generic read tools cover arbitrary resource kinds for diagnostics.
This keeps the governance posture strong while preserving practical troubleshooting coverage.
Scope Boundaries (v1)
K8sCortex is designed as a governed platform interface, not an unrestricted Kubernetes super-client.
Generic write for any resource: intentionally out of scope in v1. Writes are curated and role-gated by design.
Pod exec interactive sessions: intentionally out of scope in v1. This requires stronger session controls and command-level auditing that are planned for a later version.
Architecture
Claude / Prism Agent / CI-CD
│
▼
┌──────────────────────────────┐
│ K8sCortex MCP Server │
│ OIDC → RBAC → Tool → Audit │
│ │ │
│ Cluster Store (Key Vault) │
└──────────┬───────────────────┘
│
┌──────┼──────┐
▼ ▼ ▼
AKS EKS GKESecurity
Authentication: Entra ID OIDC tokens validated on every request
Authorization: Role-based tool access (
developer→platform-engineer)Audit: JSON-structured log per invocation with user, tool, args, status
Network: ClusterIP only — no public endpoint
Credentials: Key Vault with 5-minute TTL cache, no kubeconfigs on disk
Project Structure
src/
├── index.ts # Express SSE server
├── stdio.ts # Stdio entry point (Claude Desktop)
├── auth.ts # OIDC middleware
├── roles.ts # RBAC role hierarchy
├── audit.ts # Audit logger
├── context.ts # AsyncLocalStorage user context
├── cluster-store.ts # Dynamic K8s client factory
├── kubernetes.ts # Client re-export
└── tools/
├── workload.ts # list_pods, get_pod_logs, describe_deployment, list_nodes
├── deployment.ts # scale_deployment, restart_pod
├── configuration.ts # get_configmap, describe_namespace_quota, list_events
├── observability.ts # get_hpa_status, list_warning_events, get_node_pressure
└── multicluster.ts # list_clusters, get_cluster_info
kubernetes/ # Production manifests
├── namespace.yaml
├── deployment.yaml
├── service.yaml
├── rbac.yaml
├── network-policy.yaml
├── hpa.yaml
├── secret-provider-class.yaml
└── alerts.yaml # Prometheus alerting rules
docs/
├── developer-guide.md # End-user documentation
├── operator-runbook.md # Platform team operations
├── slos.md # Service level objectives
└── adrs/ # Architecture decision records
├── ADR-001-tool-taxonomy.md
├── ADR-002-idp-integration.md
├── ADR-003-role-model.md
└── ADR-004-credential-management.mdDocumentation
Developer Guide — How to connect, available tools, example queries
Operator Runbook — Deploy, upgrade, rotate credentials, incident response
SLOs — Availability, latency, and alerting targets
Document Files
Word documents are consolidated in docs/docx.
Current files:
K8sCortex_Cloud_Testing_Publishing_Plan.docxK8sCortex_Project_Plan.docxK8sCortex_Project_Plan_v3.docxK8sCortex_Project_Plan_v4.docx
License
Internal — Platform Engineering
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Related MCP Servers
- Alicense-qualityDmaintenanceAn MCP server that enables interaction with Kubernetes/Minikube clusters through natural language, allowing AI agents like Codename Goose to manage Kubernetes resources via the Model Context Protocol.Last updated2MIT
- Alicense-qualityDmaintenanceAn MCP server that enables AI assistants to interact with Kubernetes clusters by translating natural language into kubectl and Helm operations. It allows users to query, manage, and diagnose Kubernetes resources and cluster states through a seamless integration.Last updated19Apache 2.0
- Alicense-qualityBmaintenanceAn MCP server that lets AI assistants safely inspect and operate on Kubernetes clusters through natural conversation.Last updatedMIT
- Alicense-qualityDmaintenanceA lightweight MCP server that enables natural language interaction with Kubernetes clusters, allowing management of pods, deployments, namespaces, and cluster resources through conversational queries or API endpoints.Last updated1MIT
Related MCP Connectors
MCP server for AI agents to plan, verify, and deploy Cloudflare-native apps.
An MCP server for Arcjet - the runtime security platform that ships with your AI code.
Hosted MCP server for LLM cost estimation, model comparison, and budget-aware routing.
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/apatilgtn/k8scortex-mcp'
If you have feedback or need assistance with the MCP directory API, please join our Discord server