
Security News
Happy Birthday, Shai-Hulud
It has been one year since Shai-Hulud made its first appearance on npm.
mcp-redhat-account
Advanced tools
An MCP server for the Red Hat Account Management API. Lets AI assistants query account info, manage users, roles, and permissions.
| Tool | Description |
|---|---|
listAccounts | List account details for the current user's Red Hat accounts |
getCurrentUser | Get personal information of the currently authenticated user |
listUsers | List all users under an account (Org Admin only) |
getUserDetails | Get details of a specific user |
createUser | Create a new user under an account (Org Admin only) |
updateUser | Update a user's details (email, roles, permissions, address, etc.) |
getUserStatus | Get the current status of a user |
updateUserStatus | Enable or disable a user (Org Admin only) |
getUserRoles | Get all roles assigned to a user |
assignUserRole | Assign a role to a user (Org Admin only) |
removeUserRole | Remove a role from a user (Org Admin only) |
inviteUsers | Invite new users to join an account by email (Org Admin only) |
Set your Red Hat offline API token in your shell profile:
export REDHAT_TOKEN="your-offline-token-here"
In enterprise environments, provide REDHAT_TOKEN through your secrets management solution (e.g. HashiCorp Vault, Kubernetes secrets, or your CI platform's secret variables) rather than shell profiles.
Add to ~/.gemini/settings.json:
{
"mcpServers": {
"redhat-account": {
"command": "npx",
"args": ["-y", "mcp-redhat-account"],
"env": {
"REDHAT_TOKEN": "$REDHAT_TOKEN"
}
}
}
}
# Add a connection for the Red Hat API token
orchestrate connections add --app-id "redhat-account"
orchestrate connections configure --app-id redhat-account --env draft --kind key_value --type team --url "https://access.redhat.com"
orchestrate connections set-credentials --app-id "redhat-account" --env draft -e REDHAT_TOKEN=your-offline-token-here
# Import the MCP toolkit
orchestrate toolkits import --kind mcp \
--name redhat-account \
--description "Red Hat Account Management" \
--command "npx -y mcp-redhat-account" \
--tools "*" \
--app-id redhat-account
Add to ~/.claude/settings.json:
{
"mcpServers": {
"redhat-account": {
"command": "npx",
"args": ["-y", "mcp-redhat-account"],
"env": {
"REDHAT_TOKEN": "${REDHAT_TOKEN}"
}
}
}
}
Add to .vscode/mcp.json in your workspace:
{
"mcpServers": {
"redhat-account": {
"type": "stdio",
"command": "npx",
"args": ["-y", "mcp-redhat-account"],
"env": {
"REDHAT_TOKEN": "${REDHAT_TOKEN}"
}
}
}
}
The server exchanges your Red Hat offline API token for a short-lived bearer token via Red Hat SSO. Tokens are cached and refreshed automatically.
MIT
FAQs
MCP server for Red Hat Account Management API
The npm package mcp-redhat-account receives a total of 9 weekly downloads. As such, mcp-redhat-account popularity was classified as not popular.
We found that mcp-redhat-account demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
It has been one year since Shai-Hulud made its first appearance on npm.

Research
/Security News
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.

Security News
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.