Django AI BoostSAFE
A MCP server for Django applications, inspired by Laravel Boost.
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
A Model Context Protocol (MCP) server for developing Django applications, inspired by Laravel Boost. This server exposes Django project information through MCP tools, enabling AI assistants to better understand and interact with Django codebases.
Table of Contents
- Features
- Screenshots
- Installation
- For End Users
- For Development
- Usage
- Running the Server
- Authentication
- AI Tools Setup
- Cursor
- Claude Desktop
- Github Copilot (VS Code)
- Claude Code (VS Code)
- OpenAI ChatGPT Desktop
- Cline (VS Code)
- Zed Editor
- Generic MCP Client
- Available Tools
- Example Usage
- Development & Testing
- Troubleshooting
- Requirements
- Contributing
- License
Features
- Project Discovery: List models, URLs, and management commands
- Database Introspection: View schema, migrations, and relationships
- Configuration Access: Query Django settings with dot notation
- Log Reading: Access recent application logs with filtering
- Production-Ready Authentication: Bearer token authentication for secure deployments
- Read-Only: All tools are safe, read-only operations
- Fast: Built on FastMCP for efficient async operations
Screenshots
Click to view screenshots
Django AI Boost in Action
 | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (4)
curl http://127.0.0.1:8000/sse
curl -H "Authorization: Bearer your-secret-token" http://127.0.0.1:8000/sse
curl -LsSf https://astral.sh/uv/install.sh | sh
Gates applied: no_behavioural_pass.
fbecc5ecc1f6full audit observations/trust-audit/mcp-server/vintasoftware__django-ai-boost.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-07 | fbecc5ecc1f6 | SAFE | B | 89 | first audit |
Questions
What is the Django AI Boost MCP server?
A MCP server for Django applications, inspired by Laravel Boost.
Is Django AI Boost safe to connect to an agent?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.
What credentials does Django AI Boost need?
It reads DJANGO_MCP_AUTH_TOKEN from the environment. Give it a token scoped to the least it needs — an agent that can be talked into calling a tool can be talked into calling it with your credentials.
How does Django AI Boost run?
It speaks stdio, so it runs as a local process your client starts. It is published on PyPI as django-ai-boost.
How current is this page?
The grade is for one exact copy of the source (fbecc5ecc1f6), read on 2026-10-07. The repository is watched and re-audited when it changes.