DbutilsSAFE
数读 是一件可以让你的大模型安全连接到数据库的MCP工具。| DButils is an all-in-one MCP service that enables your AI to do data analysis by harnessing versatile types of database (sqlite, mysql, postgres, and more) within a unified configuration of multiple connections in a secured way (like SSL and controlled write access).
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
[](https://github.com/donghao1393/mcp-dbutils/actions) [](https://github.com/donghao1393/mcp-dbutils/actions) [](https://sonarcloud.io/dashboard?id=donghao1393_mcp-dbutils)
[](https://pypi.org/project/mcp-dbutils/) [](https://pypi.org/project/mcp-dbutils/) [](https://smithery.ai/server/@donghao1393/mcp-dbutils)
[](https://www.python.org/) [](LICENSE) [](https://github.com/donghao1393/mcp-dbutils/stargazers)
English | Français | Español | العربية | Русский | 文档导航
简介
MCP Database Utilities 是一个多功能的 MCP 服务,它使您的 AI 能够通过统一的连接配置安全地访问各种类型的数据库(SQLite、MySQL、PostgreSQL 等)进行数据分析。
您可以将其视为 AI 系统和数据库之间的安全桥梁,允许 AI 在不直接访问数据库或冒数据修改风险的情况下读取和分析您的数据。
核心特性
- 安全优先:严格只读操作,无直接数据库访问,隔离连接,按需连接,自动超时
- 隐私保障:本地处理,最小数据暴露,凭证保护,敏感数据屏蔽
- 多数据库支持:使用相同的接口连接 SQLite、MySQL、PostgreSQL
- 简单配置:所有数据库连接使用单个 YAML 文件
- 高级功能:表格浏览、架构分析和查询执行
🔒 安全说明:MCP 数据库工具采用安全优先的架构设计,非常适合注重数据保护的企业、初创公司和个人用户。详细了解我们的安全架构。
快速入门
我们提供了多种安装方式,包括 uvx、Docker 和 Smithery。详细的安装和配置步骤请参阅[安装指南](
fc6ab07406c1OBSERVED · 2026-10-07Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.
claude mcp add mcp-dbutils -- uvx mcp-dbutils
{
"mcpServers": {
"mcp-dbutils": {
"command": "uvx",
"args": [
"mcp-dbutils"
]
}
}
}Exposed tools (8)
5 read · 2 write · 1 destructive. Blast radius: 1 tool can delete or overwrite — an agent that can be talked into calling a tool can be talked into calling this one.
| Tool | Risk | Description |
|---|---|---|
dbutils-describe-table | read | Provides detailed information about a table |
dbutils-execute-write | destructive | CAUTION: This tool executes data modification operations (INSERT, UPDATE, DELETE) on the specified database. It requires explicit configuration and confirmation. Only available for connections with |
dbutils-explain-query | read | Get execution plan for a SQL query |
dbutils-get-audit-logs | write | Retrieves audit logs for database write operations. Shows who performed what operations, when, and with what results. Useful for security monitoring, compliance, and troubleshooting. |
dbutils-list-tables | read | List all available tables in the specified database connection |
dbutils-run-query | write | Execute read-only SQL query on database connection |
query | read | 执行只读SQL查询 |
test-tool | read | Test tool |
Trust audit
SAFEgrade B · trust 85/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | WARN |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- UNDECLARED (1 observation(s))
- Network
- declared (4 observation(s))
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (16)
dbutils-execute-write
.coveragerc
.pre-commit-config.yaml
.releaserc.json
schema = eval(schema_str)
result = eval(result_str)
result = eval(result_str)
result = eval(result_str)
result = eval(result_str)
CUSTOM_BOT_NOTE: Bot检测到issue内容不是英文,自动翻译如下。Bot detected the issue body's language is not English, translate it automatically. 👯👭🏻🧑🤝🧑👫🧑🏿🤝🧑🏻👩🏾🤝👨🏿👬🏿
严格只读操作,无直接数据库访问
curl -LsSf https://astral.sh/uv/install.sh | sh
curl -LsSf https://astral.sh/uv/install.sh | sh
curl -LsSf https://astral.sh/uv/install.sh | sh
curl -sSf https://raw.githubusercontent.com/astral-sh/uv/main/install.sh | bash
curl -sSf https://raw.githubusercontent.com/astral-sh/uv/main/install.sh | bash
Gates applied: no_behavioural_pass.
fc6ab07406c1full audit observations/trust-audit/mcp-server/donghao1393__dbutils.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-07 | fc6ab07406c1 | SAFE | B | 85 | first audit |
Questions
What is the Dbutils MCP server?
数读 是一件可以让你的大模型安全连接到数据库的MCP工具。| DButils is an all-in-one MCP service that enables your AI to do data analysis by harnessing versatile types of database (sqlite, mysql, postgres, and more) within a unified configuration of multiple connections in a secured way (like SSL and controlled write access).
What tools does Dbutils expose?
8 in total: 5 read-only, 2 that write, and 1 that can delete or overwrite (dbutils-execute-write). Every one is listed on this page with its risk.
Is Dbutils safe to connect to an agent?
The audit found nothing in the source that contradicts what it says it does, and graded it B (85/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B. Separately from the audit: 1 of its tools can destroy data, so scope the token you give it to what you actually need.
What credentials does Dbutils need?
No credential environment variables were found in its source, so it appears to need none.
How does Dbutils run?
It speaks stdio, so it runs as a local process your client starts. It is published on PyPI as mcp-dbutils.
How current is this page?
The grade is for one exact copy of the source (fc6ab07406c1), read on 2026-10-07. The repository is watched and re-audited when it changes.