Skip to main content
Yanked

This release has been yanked by its maintainers, and will be ignored by installers, except when explicitly specified.
Reason given by maintainers: Superceeded by awslabs.aws-api-mcp-server

AWS Labs aws-msk MCP Server

An AWS Labs Model Context Protocol (MCP) server for Amazon Managed Streaming for Kafka (MSK).

Overview

The AWS MSK MCP Server provides a set of tools for interacting with Amazon MSK through the Model Context Protocol. It enables AI assistants to manage, monitor, and optimize Amazon MSK clusters by providing structured access to MSK APIs.

Features

  • Cluster Management: Create, describe, and update MSK clusters (both provisioned and serverless)
  • Configuration Management: Create and manage MSK configurations
  • VPC Connection Management: Create, describe, and manage VPC connections
  • Monitoring and Telemetry: Access cluster metrics, logs, and operational data
  • Security Management: Configure authentication, encryption, and access policies
  • Best Practices: Get recommendations for cluster sizing, configuration, and performance optimization
  • Read-Only Mode: Server runs in write mode by default, switch to read-only to protect against accidental modifications

Tools

Cluster Operations

  • describe_cluster_operation: Gets information about a specific cluster operation
  • get_cluster_info: Retrieves various types of information about MSK clusters
  • get_global_info: Gets global information about MSK resources
  • create_cluster: Creates a new MSK cluster (provisioned or serverless)
  • update_broker_storage: Updates storage size of brokers
  • update_broker_type: Updates broker instance type
  • update_broker_count: Updates number of brokers in a cluster
  • update_cluster_configuration: Updates configuration of a cluster
  • update_monitoring: Updates monitoring settings
  • update_security: Updates security settings
  • reboot_broker: Reboots brokers in a cluster

Configuration Operations

  • get_configuration_info: Gets information about MSK configurations
  • create_configuration: Creates a new MSK configuration
  • update_configuration: Updates an existing configuration

VPC Operations

  • describe_vpc_connection: Gets information about a VPC connection
  • create_vpc_connection: Creates a new VPC connection
  • delete_vpc_connection: Deletes a VPC connection
  • reject_client_vpc_connection: Rejects a client VPC connection request

Security Operations

  • put_cluster_policy: Puts a resource policy on a cluster
  • associate_scram_secret: Associates SCRAM secrets with a cluster
  • disassociate_scram_secret: Disassociates SCRAM secrets from a cluster
  • list_tags_for_resource: Lists all tags for an MSK resource
  • tag_resource: Adds tags to an MSK resource
  • untag_resource: Removes tags from an MSK resource
  • list_customer_iam_access: Lists IAM access information for a cluster

Monitoring and Best Practices

  • get_cluster_telemetry: Retrieves telemetry data for MSK clusters
  • get_cluster_best_practices: Gets best practices and recommendations for MSK clusters

Usage

This MCP server can be used by AI assistants to help users manage their Amazon MSK resources. It provides structured access to MSK APIs, making it easier for AI to understand and interact with MSK clusters.

Prerequisites

  1. Install uv from Astral or the GitHub README
  2. Install Python using uv python install 3.10
  3. Set up AWS credentials with access to AWS services
    • You need an AWS account with appropriate permissions
    • Configure AWS credentials with profile name 'default' with aws configure or environment variables

Installation

Kiro Cursor VS Code
Add to Kiro Install MCP Server Install on VS Code

To use this MCP server with your MCP client, add the following configuration to your MCP client settings:

"awslabs.aws-msk-mcp-server": {
    "command": "uvx",
    "args": [
        "awslabs.aws-msk-mcp-server@latest",
        "--allow-writes"
    ],
    "env": {
        "FASTMCP_LOG_LEVEL": "ERROR"
    },
    "disabled": false,
    "autoApprove": []
}

Windows Installation

For Windows users, the MCP server configuration format is slightly different:

{
  "mcpServers": {
    "awslabs.aws-msk-mcp-server": {
      "disabled": false,
      "timeout": 60,
      "type": "stdio",
      "command": "uv",
      "args": [
        "tool",
        "run",
        "--from",
        "awslabs.aws-msk-mcp-server@latest",
        "awslabs.aws-msk-mcp-server.exe"
      ],
      "env": {
        "FASTMCP_LOG_LEVEL": "ERROR",
        "AWS_PROFILE": "your-aws-profile",
        "AWS_REGION": "us-east-1"
      }
    }
  }
}

Alternatively, you can use the MCP Inspector to test the server:

npx @modelcontextprotocol/inspector \
  uv \
  --directory <absolute path to your server code> \
  run \
  server.py

AWS Credentials

The server requires AWS credentials to access MSK resources. These can be provided through:

  1. Environment variables (AWS_ACCESS_KEY_ID, AWS_SECRET_ACCESS_KEY, AWS_SESSION_TOKEN)
  2. AWS credentials file (~/.aws/credentials)
  3. IAM roles for Amazon EC2 or ECS tasks

Server Configuration Options

--allow-writes

By default, the MSK MCP server runs in write mode.

To disable write operations, remove the --allow-writes parameter to your MCP client configuration:

"args": [
    "--directory",
    "<absolute path to your server code>",
    "run",
    "server.py"
    //Removed "--allow-writes"
]

In this mode, only read operations (tools in directories prefixed with "read_") and utility tools are available. Write operations (tools in directories prefixed with "mutate_") are disabled.

Region Selection

Most tools require specifying an AWS region. The server will prompt for a region if one is not provided.

Example Use Cases

  • Creating and configuring new MSK clusters
  • Monitoring cluster performance and health
  • Implementing best practices for MSK clusters
  • Managing security and access controls
  • Troubleshooting cluster issues

Release files for awslabs.aws-msk-mcp-server 0.0.17

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for awslabs.aws-msk-mcp-server 0.0.17
File Size Uploaded
awslabs_aws_msk_mcp_server-0.0.17.tar.gz 178.2 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for awslabs.aws-msk-mcp-server 0.0.17
File Interpreter ABI Platform
awslabs_aws_msk_mcp_server-0.0.17-py3-none-any.whl Python 3 none any Details

Total release size: 284.8 kB

Release files / awslabs_aws_msk_mcp_server-0.0.17.tar.gz

Download URL awslabs_aws_msk_mcp_server-0.0.17.tar.gz
Size 178.2 kB
Tags Source
SHA-256 checksum
How to use checksums
7d276185ed3afe3e089b680de2dfb1c0ad6f74306d5797d0e125d6bbc32a12d9
BLAKE2b-256 checksum
How to use checksums
37d527de0cfc9f3c9a7a8c5432c1826b8076f3a2e1996483a12a94e79ef0d03b
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.13.7

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Mar 6, 2026.

Transparency log

Release files / awslabs_aws_msk_mcp_server-0.0.17-py3-none-any.whl

Download URL awslabs_aws_msk_mcp_server-0.0.17-py3-none-any.whl
Size 106.6 kB
Tags Python 3
SHA-256 checksum
How to use checksums
8274d6037ae657147237a5fab8f720f7f3b335231ac258b6dd9da40d5468a88d
BLAKE2b-256 checksum
How to use checksums
ba2b8bac2f97d5c4e1000dd202cad40b7cb1672b0c3136076303dd6107df2e7a
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.13.7

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Mar 6, 2026.

Transparency log

Release history Release notifications | RSS feed

This release

0.0.17 This release

2 release files

0.0.13

2 release files

0.0.11

2 release files

0.0.10

2 release files

0.0.9

2 release files

0.0.8

2 release files

0.0.7

2 release files

0.0.6

2 release files

0.0.4

2 release files

0.0.3

2 release files

0.0.2

2 release files

0.0.1

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page