windbg-mcp
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@windbg-mcpanalyze crash dump and show !analyze -v output"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
windbg-mcp
MCP server that lets LLM agents use cdb.exe and kd.exe for crash dump analysis, live process debugging, and kernel debugging.
Windows x64 or ARM64. Requires Node.js ≥ 22 or Bun, plus the Windows Debugging Tools (
cdb.exe/kd.exe).
Usage
Add to your MCP client configuration (Node):
{
"mcpServers": {
"windbg-mcp": {
"command": "npx",
"args": ["-y", "windbg-mcp@latest"]
}
}
}Or with Bun:
{
"mcpServers": {
"windbg-mcp": {
"command": "bun",
"args": ["x", "--bun", "windbg-mcp@latest"]
}
}
}Debugging Tools are auto-detected from Windows Kits or the Store-installed WinDbg. For a custom installation, pass cdb_path or kd_path to the relevant open/attach tool.
Related MCP server: dump-analyzer-mcp-server
Tools
Tool | Purpose |
| Open a crash dump (.dmp/.mdmp/.hdmp) for analysis |
| Launch a process under cdb |
| Attach to a running process by pid or name |
| Connect kd to a kernel target (KDNET / pipe / serial) |
| Run a debugger command or collect its output |
| List active sessions and their state |
| Interrupt a live target or a long-running debugger command |
| Search the WinDbg command reference |
| Close the debugger; may terminate user-mode targets |
| Detach and leave a live user-mode or kernel target running |
The agent can use windbg_search_commands and read the returned command resource for full documentation. The windbg://guide/overview resource explains the debugging workflow and tool usage.
Usage notes
Pass the
session_idreturned by an open/attach tool to subsequent session operations.For long-running commands such as
g, usewait_for_completion: false. A timeout does not stop the command; usewindbg_interrupt_targetwhen it needs to stop.Output is paginated. Omit
commandto collect output, and read all needed pages before starting another command or ending the session. Exited sessions are removed and their output is no longer available for collection.If a live target must keep running, use
windbg_detachbefore disconnecting the MCP client. Disconnecting cleans up debugger sessions and may terminate their targets.Debugger command text is ASCII-only. Pass Unicode executable, dump and symbol paths through the dedicated tool parameters instead.
Security: Use only trusted clients and inputs. Debugger commands and extensions can execute native code; this server is not a sandbox.
This server cannot be deployed
Maintenance
Related MCP Connectors
MCP server exposing the Backtest360 engine API as tools for AI agents.
- UnifAPIOAuthcom.unifapi
Hosted MCP server for live public-data APIs and Skills for AI agents.
An MCP server that provides an API to LLMs to manage their JumpCloud resources.
Related MCP Servers
- FlicenseNot gradedqualityDmaintenanceAn MCP server for debugging Windows processes using WinDbg and CDB. It enables users to attach to processes, manage breakpoints, inspect memory, and control execution flow through natural language.2-
- AlicenseNot gradedqualityCmaintenanceMCP server for remote Windows Crash Dump analysis. Enables AI agents to analyze crash dumps via CDB commands through standard MCP interfaces.3MIT
- AlicenseBqualityCmaintenanceMCP server that wraps gdb to enable LLMs to drive live debugging sessions, including starting sessions on binaries, attaching to processes, and running commands.71,683 PyPI4MIT
- AlicenseNot gradedqualityAmaintenanceMCP server that exposes WinDbg/DbgEng to AI agents over stdio for user-mode, kernel-mode, crash-dump, and Time Travel Debugging workflows.14MIT