History of PostgreSQL (hardened, read-only)
io.github.Eszetael/postgres-mcp-hardened · Registry status: active
Every published change to this entry, most recent first.
| 2026-09-08 | Connection paths (source structure): – → {"packages":[{"registryType":"npm","identifier":"postgres-mcp-hardened","version":"0.1.10","runtimeHint":"npx","transport":"stdio","environment":[{"name":"DATABASE_URL","description":"Connection string for the role the server connects as. Use a role that cannot write — the server refuses writes twice, but a read-only role is the layer that does not depend on us being correct. `--print-setup-sql` prints the SQL that creates one.","required":true,"secret":true},{"name":"MCP_STATEMENT_TIMEOUT","description":"Server-side statement timeout, e.g. `5s`. A question that would pin the database is cancelled by PostgreSQL, not by hope.","required":false,"secret":false},{"name":"MCP_ALLOW_TABLES","description":"Comma-separated allowlist. A table off the list is refused by name, and hiding it inside a CTE, a view or a join does not help.","required":false,"secret":false},{"name":"MCP_AUDIT_LOG","description":"Path to the tamper-evident audit log. Entries are chained by hash and survive a restart; `--verify-audit` checks the chain against an off-host anchor.","required":false,"secret":false}],"additional_arguments_declared":true},{"registryType":"oci","identifier":"ghcr.io/eszetael/postgres-mcp-hardened:0.1.10","transport":"streamable-http","environment":[{"name":"DATABASE_URL","description":"Connection string for a role that cannot write.","required":true,"secret":true},{"name":"MCP_ADDR","description":"Address to bind, default 127.0.0.1:8080.","required":false,"secret":false}],"additional_arguments_declared":false}],"remotes":[]} |
|---|---|
| 2026-09-05 | Declared version: 0.1.9 → 0.1.10 |
| 2026-09-05 | Last changed in the registry (raw): 2026-08-18 → 2026-09-04 |
| 2026-09-05 | First listed in the registry (raw): 2026-08-18 → 2026-09-04 |
| 2026-09-05 | Package versions (raw): 0.1.9 → 0.1.10 |
| 2026-09-05 | Package identifiers (raw): ghcr.io/eszetael/postgres-mcp-hardened:0.1.9, postgres-mcp-hardened → ghcr.io/eszetael/postgres-mcp-hardened:0.1.10, postgres-mcp-hardened |
| 2026-08-26 | Field of use, derived from the vendor description: – → Databases |
| 2026-08-26 | Description (raw): – → Read-only PostgreSQL over MCP. Writes refused at the parsed SQL, plus a READ ONLY transaction. |
| 2026-08-19 | Declared version: 0.1.6 → 0.1.9 |
| 2026-08-19 | Last changed in the registry (raw): 2026-08-15 → 2026-08-18 |
| 2026-08-19 | First listed in the registry (raw): 2026-08-15 → 2026-08-18 |
| 2026-08-19 | Package versions (raw): 0.1.6 → 0.1.9 |
| 2026-08-19 | Package identifiers (raw): ghcr.io/eszetael/postgres-mcp-hardened:0.1.6, postgres-mcp-hardened → ghcr.io/eszetael/postgres-mcp-hardened:0.1.9, postgres-mcp-hardened |
| 2026-08-16 | Declared version: 0.1.5 → 0.1.6 |
| 2026-08-16 | Last changed in the registry (raw): – → 2026-08-15 |
| 2026-08-16 | First listed in the registry (raw): – → 2026-08-15 |
| 2026-08-16 | Registry status message (raw): – → – |
| 2026-08-16 | Schema version of the raw record (raw): – → https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json |
| 2026-08-16 | Icon formats (raw): – → – |
| 2026-08-16 | Environment variable descriptions (raw): – → DATABASE_URL=Connection string for a role that cannot write. · DATABASE_URL=Connection string for the role the server connects as. Use a role that cannot write — the server refuses writes twice, but a read-only role is the layer that does not depend on us being correct. `--print-setup-sql` prints the SQL that creates one. · MCP_ADDR=Address to bind, default 127.0.0.1:8080. · MCP_ALLOW_TABLES=Comma-separated allowlist. A table off the list is refused by name, and hiding it inside a CTE, a view or a join does not help. · MCP_AUDIT_LOG=Path to the tamper-evident audit log. Entries are chained by hash and survive a restart; `--verify-audit` checks the chain against an off-host anchor. · MCP_STATEMENT_TIMEOUT=Server-side statement timeout, e.g. `5s`. A question that would pin the database is cancelled by PostgreSQL, not by hope. |
| 2026-08-16 | Environment variable formats (raw): – → – |
| 2026-08-16 | Delivery form (raw): – → package |
| 2026-08-16 | Remote hosts (raw): – → – |
| 2026-08-16 | Remote URLs (raw): – → – |
| 2026-08-16 | Runtime hints (raw): – → npx |
| 2026-08-16 | Package versions (raw): – → 0.1.6 |
| 2026-08-16 | Package identifiers (raw): – → ghcr.io/eszetael/postgres-mcp-hardened:0.1.6, postgres-mcp-hardened |
| 2026-08-16 | Repository subfolder (raw): – → – |
| 2026-08-16 | Repository platform (raw): – → github |
| 2026-08-16 | Path environment variables (raw): – → – |
| 2026-08-16 | Required secret headers (raw): – → – |
| 2026-08-10 | Declared version: – → 0.1.5 |
| 2026-08-10 | Repository URL listed: – → yes |
| 2026-08-10 | Path argument present: – → no |
| 2026-08-10 | Execution location: – → local |
| 2026-08-10 | Required secrets declared: – → yes |
| 2026-08-10 | Package registries (raw): – → npm, oci |
| 2026-08-10 | Repository (raw): – → https://github.com/Eszetael/postgres-mcp-hardened |
| 2026-08-10 | Path arguments (raw): – → – |
| 2026-08-10 | Transports (raw): – → stdio, streamable-http |
| 2026-08-10 | Required secret variables (raw): – → DATABASE_URL, DATABASE_URL |
| 2026-08-10 | Environment variables (raw): – → DATABASE_URL, MCP_STATEMENT_TIMEOUT, MCP_ALLOW_TABLES, MCP_AUDIT_LOG, DATABASE_URL, MCP_ADDR |
tracevero · https://tracevero.com/mcp/io-github-eszetael-postgres-mcp-hardened/aenderungen