{"id":"briankscheong-k8s-mcp-server","name":"k8s-mcp-server","af_score":57.8,"security_score":54.5,"reliability_score":26.2,"what_it_does":"Provides a Model Context Protocol (MCP) server that exposes Kubernetes API functionality (read-only resource inspection plus optional mutation like deleting pods and scaling deployments) over MCP transports (stdio by default and SSE).","best_when":"Used with least-privilege Kubernetes credentials and read-only mode, integrated locally via stdio or carefully secured via SSE in controlled environments.","avoid_when":"Avoid running with broad RBAC or with --read-only=false unless you have strong operational controls and guardrails for agent-initiated actions.","last_evaluated":"2026-04-04T19:45:17.789520+00:00","has_mcp":true,"has_api":false,"auth_methods":["Kubeconfig file (K8S_MCP_KUBECONFIG or --kubeconfig)","In-cluster service account config (K8S_MCP_IN_CLUSTER or --in-cluster)"],"has_free_tier":false,"known_gotchas":["Default read-only is enabled (\"default true\"); agent requests that assume write access will fail unless read-only is disabled.","Cross-namespace and other wider permissions depend entirely on the kubeconfig/service account RBAC; mis-scoped credentials can broaden access.","Tool availability/coverage may depend on enabled resource types/toolsets via flags/env (K8S_MCP_RESOURCE_TYPES, K8S_MCP_TOOLSETS)."],"error_quality":0.0}