Alibaba Cloud RDS OpenAPICAUTION
MCP server for RDS Services via OPENAPI.
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
English | 中文
MCP server for RDS Services via OPENAPI
Prerequisites
- Install
uvfrom Astral or the GitHub README - Install Python using
uv python install 3.12 - Alibaba Cloud credentials with access to Alibaba Cloud RDS services
Quick Start
Using cherry-studio (Recommended)
- Download and install cherry-studio
- Follow the documentation to install uv, which is required for the MCP environment
- Configure and use RDS MCP according to the documentation. You can quickly import the RDS MCP configuration using the JSON below. Please set ALIBABACLOUDACCESSKEYID and ALIBABACLOUDACCESSKEYSECRET to your Alibaba Cloud AK/SK.
The following error may appear during import, which can be ignored: xxx settings.mcp.addServer.importFrom.connectionFailed
{
"mcpServers": {
"rds-openapi": {
"name": "rds-openapi",
"type": "stdio",
"description": "",
"isActive": true,
"registryUrl": "",
"command": "uvx",
"args": [
"alibabacloud-rds-openapi-mcp-server@latest"
],
"env": {
"ALIBABA_CLOUD_ACCESS_KEY_ID": "$you_access_id",
"ALIBABA_CLOUD_ACCESS_KEY_SECRET": "$you_access_key"
}
}
}
}- Finally, click to turn on MCP
- You can use the prompt template provided below to enhance your experience.
Using Cline
Set you env and run mcp server.
# set env export SERVER_TRANSPORT=sse; export SERVER_HOST=127.0.0.1; # Default: 127.0.0.1. API_KEY is required when binding to a non-loopb
155563892decOBSERVED · 2026-10-08Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control. Replace the environment placeholders with a token scoped to the least it needs.
claude mcp add alibabacloud-rds-openapi-mcp-server --env ACCESS_KEY_ID=${ACCESS_KEY_ID} --env ACCESS_SECRET=${ACCESS_SECRET} --env ALIBABA_CLOUD_ACCESS_KEY_ID=${ALIBABA_CLOUD_ACCESS_KEY_ID} --env ALIBABA_CLOUD_ACCESS_KEY_SECRET=${ALIBABA_CLOUD_ACCESS_KEY_SECRET} -- uvx alibabacloud-rds-openapi-mcp-server{
"mcpServers": {
"alibabacloud-rds-openapi-mcp-server": {
"command": "uvx",
"args": [
"alibabacloud-rds-openapi-mcp-server"
],
"env": {
"ACCESS_KEY_ID": "${ACCESS_KEY_ID}",
"ACCESS_SECRET": "${ACCESS_SECRET}",
"ALIBABA_CLOUD_ACCESS_KEY_ID": "${ALIBABA_CLOUD_ACCESS_KEY_ID}",
"ALIBABA_CLOUD_ACCESS_KEY_SECRET": "${ALIBABA_CLOUD_ACCESS_KEY_SECRET}"
}
}
}
}Exposed tools (35)
26 read · 9 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
add_tags_to_db_instance | write | |
allocate_instance_public_connection | read | |
attach_whitelist_template_to_instance | read | |
create_db_instance | write | Create an RDS instance. |
create_db_instance_account | write | |
decorator | read | item = _RegistrableItem( |
describe_all_whitelist_template | read | |
describe_available_classes | read | Query the RDS instance class_code and storage space that can be purchased in the inventory. |
describe_available_zones | read | Query available zones for RDS instances. |
describe_bills | read | |
describe_db_instance_accounts | read | |
describe_db_instance_attribute | read | |
describe_db_instance_databases | read | |
describe_db_instance_ip_allowlist | read | |
describe_db_instance_net_info | read | |
describe_db_instance_parameters | read | |
describe_db_instance_performance | read | |
describe_db_instances | read | |
describe_error_logs | read | |
describe_instance_linked_whitelist_template | read | |
describe_monitor_metrics | read | |
describe_slow_log_records | read | Query slow log records for an RDS instance. |
describe_sql_insight_statistic | read | |
describe_vpcs | read | Query VPC list. |
describe_vswitches | read | Query VSwitch list. |
explain_sql | read | |
get_current_time | read | Get the current time. |
modify_db_instance_description | write | |
modify_db_instance_spec | write | Modify RDS instance specifications. |
modify_parameter | write | Modify RDS instance parameters. |
modify_security_ips | write | modify security ips。 |
query_sql | read | |
restart_db_instance | write | Restart an RDS instance. |
show_create_table | write | |
show_engine_innodb_status | read |
Trust audit
CAUTIONgrade B · trust 87/100 Install with care. The audit found things worth knowing before you trust its output.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | WARN |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- declared (3 observation(s))
- Network
- declared (6 observation(s))
- Shell
- declared (2 observation(s))
- Dependencies
- not all pinned
- Secrets in source
- none-found
Findings (21)
importlib.import_module(module_name)
importlib.import_module(module_name)
.coveragerc
REPO_ROOT="$(cd "$SCRIPT_DIR/../../.." && pwd)"
INFO: Uvicorn running on http://127.0.0.1:8000 (Press CTRL+C to quit)
remote_server = "http://127.0.0.1:8000/sse";
INFO: Uvicorn running on http://127.0.0.1:8000 (Press CTRL+C to quit)
remote_server = "http://127.0.0.1:8000/sse";
INFO: Uvicorn running on http://127.0.0.1:8000 (Press CTRL+C to quit)
dingtalk-stream, dashscope, loguru, python-dotenv, alibabacloud-tea-openapi, alibabacloud-tea-util, alibabacloud-dingtalk, lark-oapi
alibabacloud_rdsai20250507, alibabacloud_tea_openapi, alibabacloud_tea_util
assets/buy_rds.gif
assets/buy_rds_cn.gif
assets/cherry_studio_list_tools.png
assets/claude_skill.png
assets/diagnose.gif
On instance rm-bp1696hd82oc438fl in cn-hangzhou region, create a read-only account readonly_user with password: Strong!Pa$$word and grant it read-only access to the report_db database.
Set up Alibaba Cloud access credentials (required):
Alibaba Cloud access credentials not found. Please set environment variables:
curl -LsSf https://astral.sh/uv/install.sh | sh
curl -LsSf https://astral.sh/uv/install.sh | sh
Gates applied: no_behavioural_pass.
155563892decfull audit observations/trust-audit/mcp-server/aliyun__alibaba-cloud-rds-openapi.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-08 | 155563892dec | CAUTION | B | 87 | first audit |
Questions
What is the Alibaba Cloud RDS OpenAPI MCP server?
MCP server for RDS Services via OPENAPI.
What tools does Alibaba Cloud RDS OpenAPI expose?
35 in total: 26 read-only, 9 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is Alibaba Cloud RDS OpenAPI safe to connect to an agent?
With care. The audit graded it B (87/100) and found 21 things worth knowing before you trust this server, listed below with the exact line each was found on.
What credentials does Alibaba Cloud RDS OpenAPI need?
It reads ACCESS_KEY_ID, ACCESS_SECRET, ALIBABA_CLOUD_ACCESS_KEY_ID, ALIBABA_CLOUD_ACCESS_KEY_SECRET, ALIBABA_CLOUD_SECURITY_TOKEN, ALLOW_HEADER_CREDENTIALS, API_KEY, DINGTALK_APP_CLIENT_SECRET, FEISHU_APP_SECRET, QQ_CLIENT_SECRET, UNRELATED_SECRET and WECOM_SECRET from the environment. Give it a token scoped to the least it needs — an agent that can be talked into calling a tool can be talked into calling it with your credentials.
How does Alibaba Cloud RDS OpenAPI run?
It speaks streamable-http, so it runs as a service you connect to over the network. It is published on PyPI as alibabacloud-rds-openapi-mcp-server.
How current is this page?
The grade is for one exact copy of the source (155563892dec), read on 2026-10-08. The repository is watched and re-audited when it changes.