GitLab MCP Server is answering right now. Last checked 1 min ago. 278 installs a week from npm. It exposes 3 tools. Last commit 18 Sep 2026.
Go MCP server for GitLab: 2 dynamic tools reach 1000+ REST/GraphQL actions. Free/CE, no paid tier.
We read the source, 2 h ago · tools taken from the live server · rules 3dff92dd89df
What this server is able to do. For an MCP server this is often the job itself — a terminal server runs commands because that is what it is for. Listed so you know what you are plugging in, not as an accusation.
const result = spawnSync(binary, process.argv.slice(2), {
Found in continuous integration, deployment or infrastructure files, or in a neighbouring package of the same monorepo. None of this is installed when you add the server: it describes how the project is built and released. We list it because a leaked key in a build pipeline is still a real problem, but it is not something this server does on your machine.
netip.MustParseAddr("169.254.169.254"): "the cloud instance metadata address",
out = append(out, filepath.Join(docsRoot, name))
Is this your server and something here is wrong? Tell us — corrections are free and do not require a plan.
We found places where it runs commands, builds paths or queries from values it is given. None of that is a flaw by itself — it becomes one when the code changes, and code changes quietly between releases. We re-read it on every one.
Endpoint below is the one we actually reach during checks — not the one copied from a README. Last verified 1 min ago.
claude mcp add gitlab-mcp-server --transport http https://gitlab-mcp-server.fly.dev/
{
"mcpServers": {
"gitlab-mcp-server": {
"url": "https://gitlab-mcp-server.fly.dev/"
}
}
}
[mcp_servers.gitlab-mcp-server]
url = "https://gitlab-mcp-server.fly.dev/"
{
"mcpServers": {
"gitlab-mcp-server": {
"url": "https://gitlab-mcp-server.fly.dev/"
}
}
}
{
"mcpServers": {
"gitlab-mcp-server": {
"url": "https://gitlab-mcp-server.fly.dev/"
}
}
}
This one needs environment variables set before it will start:
GITLAB_URL (GitLab instance URL (default: https://gitlab.com; set for self-managed instances)), GITLAB_TOKEN (GitLab Personal Access Token (glpat-...)), GITLAB_MCP_SKIP_TLS_VERIFY (Skip TLS certificate verification for self-signed certs (default: false)), GITLAB_MCP_TOOL_SURFACE (Tool catalog selector: dynamic, meta, or individual (default: dynamic)), GITLAB_MCP_CAPABILITY_SURFACE (Resource and prompt catalog selector: full or minimal (default: full); resource subscriptions require full), GITLAB_MCP_META_PARAM_SCHEMA (Meta-tool input schema detail: opaque, compact, or full (default: opaque)), GITLAB_MCP_TIER (GitLab edition tier: free/ce, premium, or ultimate. When unset, detected from GET /license (fallback free). Gates Premium/Ultimate tools; GitLab.com Ultimate also exposes Orbit Knowledge Graph tools. Replaces the deprecated GITLAB_ENTERPRISE boolean), GITLAB_MCP_READ_ONLY (Read-only mode: disables all mutating tools (default: false)), GITLAB_MCP_SAFE_MODE (Safe mode: intercepts mutating tools and returns a JSON preview instead of executing (default: false)), GITLAB_MCP_EMBEDDED_RESOURCES (Append EmbeddedResource content blocks (clickable links to MCP resources) to get_* tool results (default: true)), GITLAB_MCP_EXCLUDE_TOOLS (Comma-separated tool names to exclude from registration (e.g. gitlab_admin,gitlab_runner)), GITLAB_MCP_IGNORE_SCOPES (Skip Personal Access Token scope detection and register all tools regardless of token permissions (default: false)), GITLAB_MCP_UPLOAD_MAX_FILE_SIZE (Maximum attachment upload size in bytes or human-readable (e.g. 2GB). Default: 2147483648 (2 GB)), GITLAB_MCP_ALLOWED_IMPORT_DIRS (Extra OS path-list-separated directories allowed for local GitLab import archives), GITLAB_MCP_RATE_LIMIT_RPS (Per-server tools/call rate limit in requests per second; 0 disables it (default: 0)), GITLAB_MCP_RATE_LIMIT_BURST (Token-bucket burst size when GITLAB_MCP_RATE_LIMIT_RPS is greater than 0 (default: 40)), GITLAB_MCP_LOG_LEVEL (Logging verbosity (default: info)).
The author declared them in the registry entry; get the values from the project itself.
This endpoint answered with an authorization challenge. The server is running, and it signs you in through your browser: there is no API key to paste.
This server publishes 2 more addresses. The block above uses the one we reach during checks; the full list is under Endpoints below, and the author may intend a particular one for your client.
Read directly from the server with tools/list, grouped by what they act on.
If a tool disappears, we record the date.
add
echo
server_time
| URL | Transport | State | Latency | Checked |
|---|---|---|---|---|
| https://gitlab-mcp-server.fly.dev/ | streamable-http | answering | 12760 ms | 1 min ago |
| https://{host}:{port}/ | streamable-http | answering | 1 ms | 3 min ago |
| https://mcp.jmrp.io/gitlab | streamable-http | sign-in | 357 ms | 3 min ago |
Demo stdio MCP server (tools, resource, prompt) for tinymcp tests—not production use.
MCP server: x402-paid & free tools for AI agents — provenance, quality scoring, action audit.
MCP server for Unraid API — provides tools to interact with an Unraid server's GraphQL API.
MCP server for Unraid API — provides tools to interact with an Unraid server's GraphQL API.
MCP server that exposes GraphQL operations as tools for AI models.
Academic research MCP server for paper search, citation checks, graphs, and deep research.
Markdown-first MCP server for Notion API with 8 composite tools and 39 actions.
An MCP server that provides tools for interacting with Deep State Representation (DSR) graphs.
Answers built from our own checks of this server.