Skip to main content

MCP server for read-only SQL Server access via Windows Authentication

Project description

MSSQL MCP Server

A Model Context Protocol (MCP) server that provides read-only access to Microsoft SQL Server databases using Windows Authentication.

Built for environments where:

  • 🔐 Windows Authentication is required (no username/password storage)
  • 🛡️ Read-only access is mandated by IT security policy
  • 🖥️ SQL Server is accessed from Windows workstations
  • 🤖 AI assistants need safe database access (Claude Code, etc.)

Features

  • Windows Authentication - Uses Trusted_Connection via pyodbc, no credentials to manage
  • Read-only by design - Only SELECT queries allowed, dangerous keywords blocked
  • Row limiting - Prevents accidental large result sets (configurable, max 1000)
  • Schema exploration - List tables, views, describe columns, find relationships
  • MCP compatible - Works with Claude Code, Claude Desktop, and any MCP client

Available Tools

Tool Description
ListTables List all tables in the database, optionally filtered by schema
ListViews List all views in the database, optionally filtered by schema
DescribeTable Get column definitions for a specific table
GetTableRelationships Find foreign key relationships for a table
ReadData Execute a SELECT query (with security filtering)

Installation

Prerequisites

  • Python 3.10+
  • Windows with ODBC Driver 17+ for SQL Server
  • Network access to your SQL Server
  • Windows domain account with SELECT permissions on target database

Install from PyPI (Coming Soon)

pip install pyodbc-mcp-server

Install from Source

git clone https://github.com/yourusername/mssql-mcp-server.git
cd mssql-mcp-server
pip install -e .

Install ODBC Driver (if needed)

Download and install Microsoft ODBC Driver 17 for SQL Server.

Configuration

Environment Variables

Variable Default Description
MSSQL_SERVER localhost SQL Server hostname or IP
MSSQL_DATABASE master Target database name
ODBC_DRIVER ODBC Driver 17 for SQL Server ODBC driver name

Claude Code Configuration

Add to your ~/.claude.json (or %USERPROFILE%\.claude.json on Windows):

{
  "mcpServers": {
    "mssql": {
      "type": "stdio",
      "command": "cmd",
      "args": ["/c", "python", "-m", "mssql_mcp_server"],
      "env": {
        "MSSQL_SERVER": "your-sql-server",
        "MSSQL_DATABASE": "your-database"
      }
    }
  }
}

Alternative: Direct script execution

{
  "mcpServers": {
    "mssql": {
      "type": "stdio",
      "command": "cmd",
      "args": [
        "/c",
        "python",
        "C:\\path\\to\\mssql-mcp-server\\src\\mssql_mcp_server\\server.py"
      ],
      "env": {
        "MSSQL_SERVER": "your-sql-server",
        "MSSQL_DATABASE": "your-database"
      }
    }
  }
}

Note for Windows users: The cmd /c wrapper is required for proper stdio communication with MCP clients on Windows.

Claude Desktop Configuration

Add to your Claude Desktop config (%APPDATA%\Claude\claude_desktop_config.json):

{
  "mcpServers": {
    "mssql": {
      "command": "python",
      "args": ["-m", "mssql_mcp_server"],
      "env": {
        "MSSQL_SERVER": "your-sql-server",
        "MSSQL_DATABASE": "your-database"
      }
    }
  }
}

Usage Examples

Once configured, you can ask Claude to:

Explore Schema

"List all tables in the dbo schema"
"Describe the structure of the customers table"
"What are the foreign key relationships for the orders table?"

Query Data

"Show me the first 10 rows from the products table"
"Find all orders from the last 30 days"
"What are the top 5 customers by total order value?"

Analyze Relationships

"Find all tables that reference the customer table"
"Show me the relationship between orders and order_lines"

Security

This server is designed with security as a primary concern:

Read-Only Enforcement

  • Only queries starting with SELECT are allowed
  • Dangerous keywords are blocked even in subqueries:
    • INSERT, UPDATE, DELETE, DROP, CREATE, ALTER
    • EXEC, EXECUTE, TRUNCATE, GRANT, REVOKE, DENY
    • BACKUP, RESTORE, SHUTDOWN, DBCC

Windows Authentication

  • Uses Trusted_Connection=yes - no passwords stored or transmitted
  • Leverages existing Windows domain security
  • Your database permissions are enforced by SQL Server

Row Limiting

  • Default limit: 100 rows per query
  • Maximum limit: 1000 rows per query
  • Prevents accidental retrieval of large datasets

Development

Running Tests

pip install -e ".[dev]"
pytest

Running Locally

# Set environment variables
export MSSQL_SERVER=your-server
export MSSQL_DATABASE=your-database

# Run the server
python -m mssql_mcp_server

Troubleshooting

"ODBC Driver not found"

Install the Microsoft ODBC Driver for SQL Server:

"Login failed" or "Cannot connect"

  1. Verify your Windows account has access to the SQL Server
  2. Test connection with sqlcmd -S your-server -d your-database -E
  3. Check firewall allows connection on port 1433

"Tools not appearing in Claude Code"

  1. Ensure type: "stdio" is in your config
  2. Use the cmd /c wrapper on Windows
  3. Restart Claude Code after config changes
  4. Check Claude Code logs for MCP errors

Contributing

Contributions are welcome! Please:

  1. Fork the repository
  2. Create a feature branch
  3. Add tests for new functionality
  4. Submit a pull request

License

MIT License - see LICENSE file.

Acknowledgments

  • Built with FastMCP for MCP protocol handling
  • Uses pyodbc for SQL Server connectivity
  • Inspired by the need for safe AI access to enterprise databases

Related Projects

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

pyodbc_mcp_server-0.1.0.tar.gz (9.1 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

pyodbc_mcp_server-0.1.0-py3-none-any.whl (8.9 kB view details)

Uploaded Python 3

File details

Details for the file pyodbc_mcp_server-0.1.0.tar.gz.

File metadata

  • Download URL: pyodbc_mcp_server-0.1.0.tar.gz
  • Upload date:
  • Size: 9.1 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.13.9

File hashes

Hashes for pyodbc_mcp_server-0.1.0.tar.gz
Algorithm Hash digest
SHA256 51996883798402d6bd44362551f5bf863d4721d9b0d86185df1e77273189cfb0
MD5 3163639de2df9092979a4bc55cbd318e
BLAKE2b-256 2521f5c040c041858bf563fa0a9af1b03f1121a1aa136d0a6d014911dd6fe1d3

See more details on using hashes here.

File details

Details for the file pyodbc_mcp_server-0.1.0-py3-none-any.whl.

File metadata

File hashes

Hashes for pyodbc_mcp_server-0.1.0-py3-none-any.whl
Algorithm Hash digest
SHA256 0a24f28446a551dd900b4f5be0ba584d8b87f7f209649d69c3b0777c00af9248
MD5 5419577a80cffbabdcfe6f82dc234645
BLAKE2b-256 3d4eaccba46540af27bb38085f1554cb44bc7003aaa5e0589309f35d1df2f1d7

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page