ADK RedisCAUTION
Redis integration for Google Agent Development Kit (ADK) - Memory, Sessions, Search Tools, MCP
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
×
Redis Integrations for Google Agent Development Kit
[](https://badge.fury.io/py/adk-redis) [](https://opensource.org/licenses/Apache-2.0) [](https://www.python.org/downloads/) [](https://github.com/google/pyink) [](https://mypy-lang.org/)
[PyPI](https://pypi.org/project/adk-redis/) • [Documentation](https://redis-developer.github.io/adk-redis/) • Examples • [Redis Agent Memory](https://redis.io/docs/latest/integrate/google-adk/redis-agent-memory/) • [RedisVL](https://docs.redisvl.com)
adk-redis is the Redis layer for Google ADK agents. It implements ADK's BaseMemoryService, BaseSessionService, and BaseTool interfaces against Redis, Redis Vector Library, Redis Agent Memory. It also ships MCP toolset helpers and semantic-cache providers.
2d59d187d66fOBSERVED · 2026-10-08Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control. Replace the environment placeholders with a token scoped to the least it needs.
claude mcp add adk-redis --env AGENT_MEMORY_API_KEY=${AGENT_MEMORY_API_KEY} --env GEMINI_API_KEY=${GEMINI_API_KEY} --env GOOGLE_API_KEY=${GOOGLE_API_KEY} --env LANGCACHE_API_KEY=${LANGCACHE_API_KEY} -- uvx adk-redis{
"mcpServers": {
"adk-redis": {
"command": "uvx",
"args": [
"adk-redis"
],
"env": {
"AGENT_MEMORY_API_KEY": "${AGENT_MEMORY_API_KEY}",
"GEMINI_API_KEY": "${GEMINI_API_KEY}",
"GOOGLE_API_KEY": "${GOOGLE_API_KEY}",
"LANGCACHE_API_KEY": "${LANGCACHE_API_KEY}"
}
}
}
}Exposed tools (2)
2 read · 0 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
keyword_search | read | Keyword search for exact terms and phrases. |
semantic_search | read | Semantic similarity search for conceptual queries. |
Trust audit
CAUTIONgrade C · trust 75/100 Install with care. The audit found things worth knowing before you trust its output.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | WARN |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- found
Findings (16)
redis://default:[email protected]:12345
redis-cli -u "redis://default:password@your-host:port" ping
export REDIS_URL="redis://default:password@your-host:port"
redis_url="redis://cache-user:[email protected]:6379",
export REDIS_URL=redis://default:password@your-redis-cloud-host:port
uv run mkdocs serve # http://127.0.0.1:8000
ADK web opens at `http://127.0.0.1:8000`. Pick the
# REDISVL_MCP_URL=http://127.0.0.1:8765/mcp
`http://127.0.0.1:8765/mcp`.
and listens on `http://127.0.0.1:8765/mcp`.
read-only credential fails on lookup, not just on write.
cat > .env << EOF
curl -LsSf https://astral.sh/uv/install.sh | sh
curl -LsSf https://astral.sh/uv/install.sh | sh
curl -LsSf https://astral.sh/uv/install.sh | sh
curl -LsSf https://astral.sh/uv/install.sh | sh
Gates applied: no_behavioural_pass.
2d59d187d66ffull audit observations/trust-audit/mcp-server/redis-developer__adk-redis.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-08 | 2d59d187d66f | CAUTION | C | 75 | first audit |
Questions
What is the ADK Redis MCP server?
Redis integration for Google Agent Development Kit (ADK) - Memory, Sessions, Search Tools, MCP
What tools does ADK Redis expose?
2 in total: 2 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is ADK Redis safe to connect to an agent?
With care. The audit graded it C (75/100) and found 16 things worth knowing before you trust this server, listed below with the exact line each was found on.
What credentials does ADK Redis need?
It reads AGENT_MEMORY_API_KEY, GEMINI_API_KEY, GOOGLE_API_KEY, LANGCACHE_API_KEY, REDISVL_MCP_AUTH_TOKEN, REDIS_AGENT_MEMORY_API_KEY and TAVILY_API_KEY from the environment. Give it a token scoped to the least it needs — an agent that can be talked into calling a tool can be talked into calling it with your credentials.
How does ADK Redis run?
It speaks streamable-http, so it runs as a service you connect to over the network. It is published on PyPI as adk-redis.
How current is this page?
The grade is for one exact copy of the source (2d59d187d66f), read on 2026-10-08. The repository is watched and re-audited when it changes.