
Security News
Ruby's Bundler 4.0.18 Extends Cooldown to bundle lock and bundle cache
The supply chain control that delays freshly published gems now covers lockfile generation and gem vendoring in Ruby projects.
@microservices-sh/mcp
Advanced tools
MCP server for AI agents building Cloudflare-native apps with verified modules, local checks, and approval-gated deploy plans.
MCP server for AI agents that generate, verify, and deploy Cloudflare-native apps from reusable microservices.sh modules.
This package is a standalone stdio MCP server. It vendors a small microservices.sh SDK/module-contract snapshot until the public SDK is split out.
@microservices-sh/mcp gives coding agents a typed planning layer for building production-oriented Cloudflare apps. Agents can discover verified templates and modules, inspect module contracts, compose an app plan, validate configuration, generate project files for review, run readiness checks, and prepare approval-gated preview deployments through the microservices.sh control plane.
It is useful when an agent needs to build apps with common product modules such as auth, booking, customer records, payments, files, and audit logs without inventing each integration from scratch.
pnpm add -D @microservices-sh/mcp
Or run it directly after publish:
pnpm dlx @microservices-sh/mcp
Or install from Glama:
{
"mcpServers": {
"microservices": {
"command": "microservices-mcp",
"env": {
"MICROSERVICES_API_URL": "https://api.microservices.sh",
"MICROSERVICES_API_KEY": "favored-secret-manager-reference"
}
}
}
}
For local development inside this repo:
{
"mcpServers": {
"microservices-local": {
"command": "node",
"args": ["/absolute/path/to/mcp/dist/index.js"]
}
}
}
Build the local package first:
pnpm build
For agent-oriented one-click install guidance, see llms-install.md.
Read-only and local planning tools:
list_templatesinspect_templatelist_modulesinspect_modulelist_module_docsget_module_doccompose_appvalidate_configgenerate_projectrun_checksplan_add_modulecheck_updatesplan_module_upgradeget_secrets_statuscreate_preview_planRemote control-plane tools:
deploy_previewget_deployment_statusdeploy_preview is mutating and requires confirm: "preview". Run create_preview_plan first.
| Variable | Purpose |
|---|---|
MICROSERVICES_API_URL | Remote control-plane URL. Defaults to https://api.microservices.sh. |
MICROSERVICES_API_KEY | Bearer token for remote tools. |
MICROSERVICES_TOKEN | Fallback bearer token. |
Secret values are never returned by the MCP tools.
The package is published to npm, listed in the official MCP Registry, and verified by Glama:
@microservices-sh/mcpsh.microservices/mcp@microservices-sh/mcphttps://api.microservices.sh/mcpThe package declares "mcpName": "sh.microservices/mcp" in package.json. Docker/OCI packaging should wrap this same stdio server rather than forking behavior.
FAQs
MCP server for AI agents building Cloudflare-native apps with verified modules, local checks, and approval-gated deploy plans.
We found that @microservices-sh/mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
The supply chain control that delays freshly published gems now covers lockfile generation and gem vendoring in Ruby projects.

Security News
During a UK cyber test, a Mythos 5 agent used sockpuppets, social engineering, and prompt injection to try to get a maintainer to merge malware.

Company News
Socket is now in the AWS Security Hub Extended plan. Adopt it through AWS, apply committed spend, and block malicious open source packages.