Skip to content

mcp-toolbox

AI Agents & Assistants

MCP Toolbox for Databases is an open source MCP server for databases.

Go Latest v1.3.0 · 13d ago Security brief →

Features

  • Provides a ready‑to‑use MCP server for instant database access via prebuilt generic tools
  • Offers a framework to create custom, secure AI tools with structured queries and semantic search
  • Supports connection pooling, IAM authentication, and OpenTelemetry observability out of the box

Recent releases

View all 12 releases →
Review required
v1.3.0 Mixed
Auth RCE / SSRF

Auth scopes + IP propagation + bug fixes

v1.2.0 New feature
Notable features
  • Add support for HTTPS/TLS listener
  • **source/bigquery:** Add maximumBytesBilled source config
  • **source/cloud-storage:** Add bucket and object management tools, list_objects and read_object capabilities, plus write/copy/move/delete operations
Full changelog

1.2.0 (2026-05-07)

Features

  • Add support for HTTPS/TLS listener (#3126) (8bc385d)
  • source/bigquery: Add maximumBytesBilled source config (#2724) (42f2d07)
  • source/cloud-storage: Add bucket and object management tools (#3129) (8de9bcf)
  • source/cloud-storage: Add Cloud Storage source with list_objects and read_object tools (#3081) (da27b37)
  • source/cloud-storage: Add write/copy/move/delete object tools (#3139) (b225fc4)
  • tools/knowledge-catalog: Search Data Quality Scans (#2444) (1c63551)

Bug Fixes

  • Allow converting string literal block with list (#3050) (36ab2a9), closes #3023
  • mcp: Implement router-level logger injection for MCP auth (#3067) (ccc7cf5)
  • Prevent test.db from being created during unit tests (#3042) (d10d2ca)
  • Remove hardcoded * allowed origin for sse (#3054) (c4c7bd9)
  • sources/postgres: Apply URL encoding to query string params (#3020) (6b860f4)
  • tool/looker-conversational-analytics: OAuth token in GDA payload fix (#3058) (6632d96)
  • tools/bigquery-execute-sql: Avoid surfacing invalid queries as MCP 500s (#3056) (7ed92c8)
  • tools/looker: Fix OAuth for Converational Analytics (#3044) (f9e3e55)

| OS/Architecture | Description | SHA256 Hash |
| --------------------------------------------------------------------------------------------------------- | ------------------------------------------------------------------------------------------------------------------------ | ------------------------------------------------------------------- |
| linux/amd64 | For Linux systems running on Intel/AMD 64-bit processors. | b2574e37945f5ecf8cd2a1cdcd4dabcbb32f93aafb2a5fac16db5f6289173f40 |
| darwin/arm64 | For macOS systems running on Apple Silicon (M1, M2, M3, etc.) processors. | e414fd5bf05798bdc31139ff9f4f9712a7d404aba68f0f6cafdbbf712ab0f409 |
| darwin/amd64 | For macOS systems running on Intel processors. | 89a97dd5df0d67134c5ea7ca70894d8340993e8f67dfd86a6ed51783aa6bcb43 |
| windows/amd64 | For Windows systems running on Intel/AMD 64-bit processors. | 6682d5d1bd384c0ead116ae0c88b75b78a8ddd5b070bd241959b7d912063d00f |

v1.0.0 Breaking risk
Breaking changes
  • elasticsearch: removed query passing through param, added vector search support
  • looker: refactored looker-git-branch tool into 5 separate tools
Notable features
  • opaque token validation support
  • BigQuery semantic search
  • MySQL table statistics tool
v0.32.0 Breaking risk
Breaking changes
  • Repository name updated
Notable features
  • MCP tool annotations
  • BigQuery conversational analytics

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

About

Stars
15,430
Forks
1,576
Languages
Go JavaScript HTML
Downloads/week
10,009 ↑134%
NPM Maintainers
5
Contributors
131

Install & Platforms

Install via
npm go

Community & Support

Beta — feedback welcome: [email protected]