Atlas / MCP servers / crewaiinc / CrewAI Enterprise

CrewAI EnterpriseCAUTION

mcp/crewaiinc/crewai-enterprise

MCP Server for kicking off and getting status of your crew deployments

Verdict
CAUTION
Grade
B
Trust score
89 /100
Exposed tools
2 1r · 1w · 0d
Transport
—
License
—
Stars
59
01

Overview

From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.

Overview

A Model Context Protocol (MCP) server implementation that provides deployed CrewAI workflows. This server enables kicking off your deployed crew and inspect the status giving the results of your crew.

Tools

  • kickoff_crew
  • getcrewstatus

Env Variables

retrieve from app.crewai.com MCP_CREWAI_ENTERPRISE_SERVER_URL MCP_CREWAI_ENTERPRISE_BEARER_TOKEN

Usage with Claude Desktop

To use this MCP server with Claude Desktop, follow these steps:

  1. Open Claude Desktop
  2. Go to Settings > Developer Settings
  3. Add a new MCP server with the configuration shown below

Locally, cloned repo:

Install mcp and mcp[cli] locally

{
"mcpServers": {
"crewai_enterprise_server": {
"command": "uv",
"args": [
"run",
"--with",
"mcp[cli]",
"mcp",
"run",
"",
"/crewai_enterprise_server.py"
],
"env": {
"MCP_CREWAI_ENTERPRISE_SERVER_URL": "<>",
"MCP_CREWAI_ENTERPRISE_BEARER_TOKEN": "<>"
}
}
}
}

TODO: Added on PyPI:

Read from source at commit f8e5cdaf1367OBSERVED · 2026-10-08
02

Connect

Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control. Replace the environment placeholders with a token scoped to the least it needs.

claude-code
claude mcp add crew-enterprise-mcp-server-app --env MCP_CREWAI_ENTERPRISE_BEARER_TOKEN=${MCP_CREWAI_ENTERPRISE_BEARER_TOKEN} -- uvx crew-enterprise-mcp-server-app
claude-desktop
{
  "mcpServers": {
    "crew-enterprise-mcp-server-app": {
      "command": "uvx",
      "args": [
        "crew-enterprise-mcp-server-app"
      ],
      "env": {
        "MCP_CREWAI_ENTERPRISE_BEARER_TOKEN": "${MCP_CREWAI_ENTERPRISE_BEARER_TOKEN}"
      }
    }
  }
}
03

Exposed tools (2)

1 read · 1 write · 0 destructive.

ToolRiskDescription
get_crew_statusreadGet the status of a crew task
kickoff_crewwriteStart a new crew task
04

Trust audit

CAUTIONgrade B · trust 89/100 Install with care. The audit found things worth knowing before you trust its output.

LayerWhat it checksResult
L0Provenance & inventoryPASS
L1Static analysis of the codeWARN
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
none-observed
Network
UNDECLARED (2 observation(s))
Shell
none-observed
Dependencies
pinned
Secrets in source
none-found

Findings (4)

MEDIUMNetwork egress · net.client · CWE-200, CWE-319
crewai_enterprise_server.py:25
async with httpx.AsyncClient() as client:
MEDIUMNetwork egress · net.client · CWE-200, CWE-319
crewai_enterprise_server.py:48
async with httpx.AsyncClient() as client:
LOWInventory / provenance · inv.no_license · CWE-1104
Why it matters. no LICENSE file and no repo licence
Fix. add a licence
INFOPrompt injection · scope.undeclared_network · CWE-94, CWE-1427
<declared scope>
network use found in code, not declared in the description
Why it matters. the description does not admit a capability the code has
Fix. declare network use in the description, or remove it

Gates applied: no_behavioural_pass, no_license.

Audited 2026-10-08 · audit v0.4.1 · source sha f8e5cdaf1367full audit observations/trust-audit/mcp-server/crewaiinc__crewai-enterprise.json · Report an issue / request a re-scan
05

Audit history

Every audit this server has had. A grade with a past is a grade somebody is still checking.

DateSourceVerdictGradeScoreChange
2026-10-08f8e5cdaf1367CAUTIONB89first audit
06

Questions

What is the CrewAI Enterprise MCP server?

MCP Server for kicking off and getting status of your crew deployments

What tools does CrewAI Enterprise expose?

2 in total: 1 read-only, 1 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.

Is CrewAI Enterprise safe to connect to an agent?

With care. The audit graded it B (89/100) and found 4 things worth knowing before you trust this server, listed below with the exact line each was found on.

What credentials does CrewAI Enterprise need?

It reads MCP_CREWAI_ENTERPRISE_BEARER_TOKEN from the environment. Give it a token scoped to the least it needs — an agent that can be talked into calling a tool can be talked into calling it with your credentials.

How current is this page?

The grade is for one exact copy of the source (f8e5cdaf1367), read on 2026-10-08. The repository is watched and re-audited when it changes.

Advertisement