Skip to main content

apolo-mcp

apolo-mcp is a local stdio Model Context Protocol server for typed Apolo platform operations. It is a thin adapter over apolo-sdk: it never shells out to the CLI and uses the configured Apolo identity, permissions, and defaults. Local sessions normally come from apolo login; isolated jobs may use APOLO_PASSED_CONFIG.

The server exposes bounded context discovery and typed platform operations. Every operational tool accepts explicit cluster, org, and project inputs where the SDK supports them; explicit inputs never modify the user's saved context. Secret values and one-time credentials are intentionally outside the model-visible interface.

Installation

Follow the installation and client configuration guide for prerequisites, server and skill installation, Codex and Claude Code registration, per-session policy selection, and verification. Local stdio is the only supported transport; shared-credential remote service operation is unsupported.

See the Apolo MCP documentation for prerequisites, safety controls, the capability matrix, generated tools and skills catalogs, and task-oriented guides.

Development

make setup
make lint
make test
make build

Dependencies are locked with uv.lock. Tests use an ApoloClientProvider fake and do not require credentials. Integration tests, when added, must be opt-in and target an isolated non-production project.

Wheel and source-distribution files are generated release artifacts and must not be committed. Tagged releases build them in CI and publish the exact outputs to PyPI via Trusted Publishing; local dist/ contents are disposable. Maintainers should follow RELEASE.md for changelog, validation, signing, and publication.

Release versions use YY.MM.NN: the two-digit year, the month without a leading zero, and a zero-based release sequence within that month. For example, v26.7.0 is the first July 2026 release, and its Python package version is 26.7.0.

Safety configuration

The server defaults to APOLO_MCP_POLICY_MODE=read-only. Use managed to create resources and manage only their exact journaled lifecycles, or full to permit mutations of any exact-context resource. Policy never grants Apolo permissions or replaces Apolo RBAC, and it is not a security boundary against an agent with direct CLI or SDK access. Never run full with a personal administrator, owner, or other broadly privileged Apolo account. Use a dedicated least-privileged service account and follow the full-mode service-account guide. Select policy per launch rather than permanently storing managed or full; the installation guide contains the client-specific configuration. Read the generated safety model before enabling writes, and consult the capability matrix for the complete current contract.

Licensed under Apache-2.0. See SECURITY.md for private reporting.

Metadata

Release files for apolo-mcp 26.8.1

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for apolo-mcp 26.8.1
File Size Uploaded
apolo_mcp-26.8.1.tar.gz 286.7 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for apolo-mcp 26.8.1
File Interpreter ABI Platform
apolo_mcp-26.8.1-py3-none-any.whl Python 3 none any Details

Total release size: 393.6 kB

Release files / apolo_mcp-26.8.1.tar.gz

Download URL apolo_mcp-26.8.1.tar.gz
Size 286.7 kB
Tags Source
SHA-256 checksum
How to use checksums
5ac49eb8cef9dfcfec24005e2553eac3a507f18dfa17f06afc377f3fcdbbe525
BLAKE2b-256 checksum
How to use checksums
fb6c0261d30677150746ca39a5e3c1ffce34cebf9d9e8a04fe8700f28b7e737a
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Aug 4, 2026.

Transparency log

Release files / apolo_mcp-26.8.1-py3-none-any.whl

Download URL apolo_mcp-26.8.1-py3-none-any.whl
Size 106.9 kB
Tags Python 3
SHA-256 checksum
How to use checksums
72e938f2314d2d7ff085b9da6da9b2b9b178360a0a81b13c094f0df56ea5776b
BLAKE2b-256 checksum
How to use checksums
2cf4e445e9e2a5bae677339d554a94f7d2ec5afbb1b94b42225d7cec507d9798
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Aug 4, 2026.

Transparency log

Release history Release notifications | RSS feed

This release

26.8.1 This release

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page