Atlas / MCP servers / eniayomi / GCP

GCPSAFE

mcp/eniayomi/gcp

A Model Context Protocol (MCP) server that enables AI assistants like Claude to interact with your Google Cloud Platform environment. This allows for natural language querying and management of your GCP resources during conversations.

Verdict
SAFE
Grade
B
Trust score
89 /100
Exposed tools
9 8r · 1w · 0d
Transport
stdio
License
MIT
Stars
200
01

Overview

From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.

A Model Context Protocol (MCP) server that enables AI assistants like Claude to interact with your Google Cloud Platform environment. This allows for natural language querying and management of your GCP resources during conversations.

Features

  • 🔍 Query and modify GCP resources using natural language
  • ☁️ Support for multiple GCP projects
  • 🌐 Multi-region support
  • 🔐 Secure credential handling (no credentials are exposed to external services)
  • 🏃♂️ Local execution with your GCP credentials
  • 🔄 Automatic retries for improved reliability

Prerequisites

  • Node.js
  • Claude Desktop/Cursor/Windsurf
  • GCP credentials configured locally (application default credentials)

Installation

  1. Clone the repository:
git clone https://github.com/eniayomi/gcp-mcp
cd gcp-mcp
  1. Install dependencies:
npm install

Configuration

Claude Desktop

  1. Open Claude desktop app and go to Settings -> Developer -> Edit Config
  1. Add the following entry to your claude_desktop_config.json:

via npm:

{
"mcpServers": {
"gcp": {
"command": "sh",
"args": ["-c", "npx -y gcp-mcp"]
}
}
}

If you installed from source:

{
"mcpServers": {
"gcp": {
"command": "npm",
"args": [
"--silent",
"--prefix",
"/path/to/gcp-mcp",
"start"
]
}
}
}

Replace /path/to/gcp-mcp with the actual path to your project directory if using source installation.

Cursor

  1. Open Cursor and go to Settings (⌘,)
  2. Navigate to AI -> Model Context Protocol
  3. Add a new MCP configuration:
{
"gcp": {
"command": "npx -y gcp-mcp"
}
}

Windsurf

  1. Open ~/.windsurf/config.json (create if it doesn't exist)
  2. Add the MCP configuration:
{
"mcpServers": {
"gcp": {
"command": "npx -y gcp-mcp"
}
}
}

GCP Setup

  1. Set up GCP credentials:
  2. Set up application default credentials u
Read from source at commit 58100c7cd8f7OBSERVED · 2026-10-06
02

Connect

Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.

claude-code
claude mcp add gcp-mcp -- npx -y [email protected]
claude-desktop
{
  "mcpServers": {
    "gcp-mcp": {
      "command": "npx",
      "args": [
        "-y",
        "[email protected]"
      ]
    }
  }
}
03

Exposed tools (9)

8 read · 1 write · 0 destructive.

ToolRiskDescription
get-billing-budgetreadGet billing budgets for the current project
get-billing-inforeadGet billing information for the current project
get-cost-forecastreadGet cost forecast for the current project
get-logsreadGet Cloud Logging entries for the current project
list-gke-clustersreadList all GKE clusters in the current project
list-projectsreadList all GCP projects accessible with current credentials
list-sql-instancesreadList all Cloud SQL instances in the current project
run-gcp-codewriteRun GCP code
select-projectreadSelects GCP project to use for subsequent interactions
04

Trust audit

SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.

LayerWhat it checksResult
L0Provenance & inventoryPASS
L1Static analysis of the codePASS
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
none-observed
Network
none-observed
Shell
none-observed
Dependencies
not all pinned
Secrets in source
none-found

Findings (1)

LOWSupply chain · supply.unpinned · CWE-829, CWE-1357
package.json
@google-cloud/bigquery, @google-cloud/billing, @google-cloud/billing-budgets, @google-cloud/compute, @google-cloud/container, @google-cloud/functions, @google-cloud/logging, @google-cloud/resource-man
Why it matters. 20 dependency range(s) float
Fix. pin exact versions or ship a lockfile

Gates applied: no_behavioural_pass.

Audited 2026-10-06 · audit v0.4.1 · source sha 58100c7cd8f7full audit observations/trust-audit/mcp-server/eniayomi__gcp.json · Report an issue / request a re-scan
05

Audit history

Every audit this server has had. A grade with a past is a grade somebody is still checking.

DateSourceVerdictGradeScoreChange
2026-10-0658100c7cd8f7SAFEB89first audit
06

Questions

What is the GCP MCP server?

A Model Context Protocol (MCP) server that enables AI assistants like Claude to interact with your Google Cloud Platform environment. This allows for natural language querying and management of your GCP resources during conversations.

What tools does GCP expose?

9 in total: 8 read-only, 1 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.

Is GCP safe to connect to an agent?

The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.

What credentials does GCP need?

No credential environment variables were found in its source, so it appears to need none.

How does GCP run?

It speaks stdio, so it runs as a local process your client starts. It is published on npm as gcp-mcp at 1.0.2.

How current is this page?

The grade is for one exact copy of the source (58100c7cd8f7), read on 2026-10-06. The repository is watched and re-audited when it changes.

Advertisement