InfluxDBSAFE
An MCP Server for querying InfluxDB
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
[](https://mseep.ai/app/idoru-influxdb-mcp-server)
[](https://smithery.ai/server/@idoru/influxdb-mcp-server)
[](https://archestra.ai/mcp-catalog/idoru__influxdb-mcp-server)
A Model Context Protocol (MCP) server that exposes access to an InfluxDB v2 instance using the InfluxDB OSS API v2. Mostly built with Claude Code.
Features
This MCP server provides:
- Resources: Access to organization, bucket, and measurement data
- Tools: Write data, execute queries, and manage database objects
- Prompts: Templates for common Flux queries and Line Protocol format
Resources
The server exposes the following resources:
- Organizations List:
influxdb://orgs - Displays all organizations in the InfluxDB instance
- Buckets List:
influxdb://buckets - Shows all buckets with their metadata
- Bucket Measurements:
influxdb://bucket/{bucketName}/measurements - Lists all measurements within a specified bucket
- Query Data:
influxdb://query/{orgName}/{fluxQuery} - Executes a Flux query and returns results as a resource
Tools
The server provides these tools:
write-data: Write time-series data in line protocol format- Parameters: org, bucket, data, precision (optional)
query-data: Execute Flux queries- Parameters: org, query
create-bucket: Create a new bucket- Parameters: name, orgID, retentionPeriodSeconds (optional)
create-org: Create a new organization- Parameters: name, description (optional)
Prompts
The server offers these prompt templates:
flux-query-examples: Common Flux query examplesline-protocol-guide: Guide to InfluxDB line protocol format
Configuration
The server requires these environment var
e0583882e755OBSERVED · 2026-10-08Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control. Replace the environment placeholders with a token scoped to the least it needs.
claude mcp add influxdb-mcp-server --env INFLUXDB_TOKEN=${INFLUXDB_TOKEN} -- npx -y [email protected]{
"mcpServers": {
"influxdb-mcp-server": {
"command": "npx",
"args": [
"-y",
"[email protected]"
],
"env": {
"INFLUXDB_TOKEN": "${INFLUXDB_TOKEN}"
}
}
}
}Exposed tools (4)
0 read · 4 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
create-bucket | write | Provision a new bucket under an organization so that subsequent write-data calls have a destination. |
create-org | write | Create a brand-new organization to isolate users or projects before generating buckets and tokens. |
query-data | write | Execute a Flux query inside an organization to inspect measurement schemas, run aggregations, or validate recently written data. |
write-data | write | Stream newline-delimited line protocol records into a bucket. Use this after composing measurements so the LLM can insert real telemetry, optionally controlling timestamp precision. |
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- not all pinned
- Secrets in source
- none-found
Findings (2)
console.log("Token created:", tokenData.token ? "success" : "failure");@modelcontextprotocol/sdk, commander, express, node-fetch, zod, @jest/globals, @types/dockerode, @types/jest
Gates applied: no_behavioural_pass.
e0583882e755full audit observations/trust-audit/mcp-server/idoru__influxdb.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-08 | e0583882e755 | SAFE | B | 89 | first audit |
Questions
What is the InfluxDB MCP server?
An MCP Server for querying InfluxDB
What tools does InfluxDB expose?
4 in total: 0 read-only, 4 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is InfluxDB safe to connect to an agent?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.
What credentials does InfluxDB need?
It reads INFLUXDB_TOKEN from the environment. Give it a token scoped to the least it needs — an agent that can be talked into calling a tool can be talked into calling it with your credentials.
How does InfluxDB run?
It speaks stdio and streamable-http, so it runs as a local process your client starts. It is published on npm as influxdb-mcp-server at 0.2.0.
How current is this page?
The grade is for one exact copy of the source (e0583882e755), read on 2026-10-08. The repository is watched and re-audited when it changes.