Skip to content

History of PostgreSQL (hardened, read-only)

io.github.Eszetael/postgres-mcp-hardened · Registry status: active

Report data on this entry

Every published change to this entry, most recent first.

Changes
2026-09-08Connection paths (source structure): – → {"packages":[{"registryType":"npm","identifier":"postgres-mcp-hardened","version":"0.1.10","runtimeHint":"npx","transport":"stdio","environment":[{"name":"DATABASE_URL","description":"Connection string for the role the server connects as. Use a role that cannot write — the server refuses writes twice, but a read-only role is the layer that does not depend on us being correct. `--print-setup-sql` prints the SQL that creates one.","required":true,"secret":true},{"name":"MCP_STATEMENT_TIMEOUT","description":"Server-side statement timeout, e.g. `5s`. A question that would pin the database is cancelled by PostgreSQL, not by hope.","required":false,"secret":false},{"name":"MCP_ALLOW_TABLES","description":"Comma-separated allowlist. A table off the list is refused by name, and hiding it inside a CTE, a view or a join does not help.","required":false,"secret":false},{"name":"MCP_AUDIT_LOG","description":"Path to the tamper-evident audit log. Entries are chained by hash and survive a restart; `--verify-audit` checks the chain against an off-host anchor.","required":false,"secret":false}],"additional_arguments_declared":true},{"registryType":"oci","identifier":"ghcr.io/eszetael/postgres-mcp-hardened:0.1.10","transport":"streamable-http","environment":[{"name":"DATABASE_URL","description":"Connection string for a role that cannot write.","required":true,"secret":true},{"name":"MCP_ADDR","description":"Address to bind, default 127.0.0.1:8080.","required":false,"secret":false}],"additional_arguments_declared":false}],"remotes":[]}
2026-09-05Declared version: 0.1.9 → 0.1.10
2026-09-05Last changed in the registry (raw): 2026-08-18 → 2026-09-04
2026-09-05First listed in the registry (raw): 2026-08-18 → 2026-09-04
2026-09-05Package versions (raw): 0.1.9 → 0.1.10
2026-09-05Package identifiers (raw): ghcr.io/eszetael/postgres-mcp-hardened:0.1.9, postgres-mcp-hardened → ghcr.io/eszetael/postgres-mcp-hardened:0.1.10, postgres-mcp-hardened
2026-08-26Field of use, derived from the vendor description: – → Databases
2026-08-26Description (raw): – → Read-only PostgreSQL over MCP. Writes refused at the parsed SQL, plus a READ ONLY transaction.
2026-08-19Declared version: 0.1.6 → 0.1.9
2026-08-19Last changed in the registry (raw): 2026-08-15 → 2026-08-18
2026-08-19First listed in the registry (raw): 2026-08-15 → 2026-08-18
2026-08-19Package versions (raw): 0.1.6 → 0.1.9
2026-08-19Package identifiers (raw): ghcr.io/eszetael/postgres-mcp-hardened:0.1.6, postgres-mcp-hardened → ghcr.io/eszetael/postgres-mcp-hardened:0.1.9, postgres-mcp-hardened
2026-08-16Declared version: 0.1.5 → 0.1.6
2026-08-16Last changed in the registry (raw): – → 2026-08-15
2026-08-16First listed in the registry (raw): – → 2026-08-15
2026-08-16Registry status message (raw): – → –
2026-08-16Schema version of the raw record (raw): – → https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json
2026-08-16Icon formats (raw): – → –
2026-08-16Environment variable descriptions (raw): – → DATABASE_URL=Connection string for a role that cannot write. · DATABASE_URL=Connection string for the role the server connects as. Use a role that cannot write — the server refuses writes twice, but a read-only role is the layer that does not depend on us being correct. `--print-setup-sql` prints the SQL that creates one. · MCP_ADDR=Address to bind, default 127.0.0.1:8080. · MCP_ALLOW_TABLES=Comma-separated allowlist. A table off the list is refused by name, and hiding it inside a CTE, a view or a join does not help. · MCP_AUDIT_LOG=Path to the tamper-evident audit log. Entries are chained by hash and survive a restart; `--verify-audit` checks the chain against an off-host anchor. · MCP_STATEMENT_TIMEOUT=Server-side statement timeout, e.g. `5s`. A question that would pin the database is cancelled by PostgreSQL, not by hope.
2026-08-16Environment variable formats (raw): – → –
2026-08-16Delivery form (raw): – → package
2026-08-16Remote hosts (raw): – → –
2026-08-16Remote URLs (raw): – → –
2026-08-16Runtime hints (raw): – → npx
2026-08-16Package versions (raw): – → 0.1.6
2026-08-16Package identifiers (raw): – → ghcr.io/eszetael/postgres-mcp-hardened:0.1.6, postgres-mcp-hardened
2026-08-16Repository subfolder (raw): – → –
2026-08-16Repository platform (raw): – → github
2026-08-16Path environment variables (raw): – → –
2026-08-16Required secret headers (raw): – → –
2026-08-10Declared version: – → 0.1.5
2026-08-10Repository URL listed: – → yes
2026-08-10Path argument present: – → no
2026-08-10Execution location: – → local
2026-08-10Required secrets declared: – → yes
2026-08-10Package registries (raw): – → npm, oci
2026-08-10Repository (raw): – → https://github.com/Eszetael/postgres-mcp-hardened
2026-08-10Path arguments (raw): – → –
2026-08-10Transports (raw): – → stdio, streamable-http
2026-08-10Required secret variables (raw): – → DATABASE_URL, DATABASE_URL
2026-08-10Environment variables (raw): – → DATABASE_URL, MCP_STATEMENT_TIMEOUT, MCP_ALLOW_TABLES, MCP_AUDIT_LOG, DATABASE_URL, MCP_ADDR

tracevero · https://tracevero.com/mcp/io-github-eszetael-postgres-mcp-hardened/aenderungen