Xata AgentBLOCK
AI agent expert in PostgreSQL
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
Xata Agent is an open source agent that monitors your database, finds root causes of issues, and suggests fixes and improvements. It's like having a new SRE hire in your team, one with extensive experience in Postgres.
Letting the agent introduce itself:
Hire me as your AI PostgreSQL expert. I can: - watch logs & metrics for potential issues. - proactively suggest configuration tuning for your database instance. - troubleshoot performance issues and make indexing suggestions. - troubleshoot common issues like high CPU, high memory usage, high connection count, etc. - and help you vacuum (your Postgres DB, not your room). More about me: - I am open source and extensible. - I can monitor logs & metrics from RDS & Aurora via Cloudwatch. - I use preset SQL commands. I will never run destructive (even potentially destructive) commands against your database. - I use a set of tools and playbooks to guide me and avoid
bfe90f931dd3OBSERVED · 2026-09-25Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.
claude mcp add db-agent -- npx -y [email protected]
{
"mcpServers": {
"db-agent": {
"command": "npx",
"args": [
"-y",
"[email protected]"
]
}
}
}Exposed tools (6)
3 read · 3 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
generalMonitoring | read | General monitoring of the database, checking logs, slow queries, main metrics, etc. |
investigateHighConnectionCount | write | Investigate high connection count. This playbook should be execute while the connection count is elevated. |
investigateHighCpuUsage | write | Investigate high CPU usage. This playbook should be execute while the CPU usage is elevated. |
investigateLowMemory | write | Investigate low freeable memory. This playbook should be execute while the freeable memory is low. |
investigateSlowQueries | read | Investigate slow queries using pg_stat_statements and EXPLAIN calls. |
tuneSettings | read | Tune configuration settings for the database, based on the instance type, the database schema. |
Trust audit
BLOCKgrade D · trust 69/100 Do not install this without reading the findings. The audit found something that could harm you or your machine.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | FAIL |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- declared (5 observation(s))
- Network
- declared (8 observation(s))
- Shell
- none-observed
- Dependencies
- not all pinned
- Secrets in source
- none-found
Findings (13)
rejectUnauthorized: false // Allow self-signed certificates
rejectUnauthorized: false // Allow self-signed certificates
.env.production
.prettierignore
.prettierrc.js
.prettierrc.precommit.js
.env.eval.example
import { Markdown } from '../../../message/markdown';import { ArtifactKind } from '../../artifact';import { Suggestion } from '../../suggestion';import { evalEnvSchema } from '../../lib/env/eval';@ai-sdk/anthropic, @ai-sdk/deepseek, @ai-sdk/google, @ai-sdk/openai, @ai-sdk/provider, @ai-sdk/react, @ai-sdk/ui-utils, @anthropic-ai/sdk
@eslint/compat, @types/node, @types/react, @xata.io/tsconfig, eslint, husky, lint-staged, prettier
Gates applied: no_behavioural_pass.
bfe90f931dd3full audit observations/trust-audit/mcp-server/xataio__xata-agent.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-09-25 | bfe90f931dd3 | BLOCK | D | 69 | first audit |
Questions
What is the Xata Agent MCP server?
AI agent expert in PostgreSQL
What tools does Xata Agent expose?
6 in total: 3 read-only, 3 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is Xata Agent safe to connect to an agent?
No — not without reading the findings first. The audit graded it D (69/100) and found 2 critical or high issues in the source. Each one is listed on this page with the file and line it is on.
What credentials does Xata Agent need?
No credential environment variables were found in its source, so it appears to need none.
How current is this page?
The grade is for one exact copy of the source (bfe90f931dd3), read on 2026-09-25. The repository is watched and re-audited when it changes.