MCP KQL Server

MCP KQL Server is an MCP server that connects AI assistants to Azure Data Explorer clusters using Azure CLI authentication. Used by cloud engineers, security operations analysts, and database administrators, it enables users to query telemetry, logs, and distributed data using both plain language and raw Kusto Query Language syntax. The server transforms natural language descriptions into valid KQL statements while handling direct query execution against specified databases. It incorporates an automated schema memory discovery engine that inspects, ranks, and caches database table definitions, which prevents redundant cluster discovery calls during repeated interactions. Queries undergo strict schema validation and grounded repairs against cached metadata before submission, preventing invalid column names or broken references from reaching the cluster. Results can be returned in multiple formats, such as JSON, CSV, or formatted tables, alongside contextual schema insights. Developed with the official Model Context Protocol Python SDK, the tool functions across major operating systems via standard input and output streams or shared HTTP endpoints. By operating through local Azure CLI credentials, it maintains existing enterprise identity boundaries without requiring hardcoded cloud secrets.

Category: Cloud & Infrastructure

Tags: azure, kql, kusto, log-analytics

Visit MCP KQL Server

How to install and configure MCP KQL Server

  1. Ensure Python 3.10 or higher and the Azure CLI are installed, then authenticate by running az login. 2. Install the server package: bash pip install --upgrade mcp-kql-server 3. In Claude Desktop, open your configuration file (mcp_settings.json) and add the server definition: json { "mcpServers": { "mcpKqlServer": { "type": "stdio", "command": "python", "args": ["-m", "mcp_kql_server"] } } } 4. For VS Code with the MCP extension, add the configuration to mcp.json under servers using "command": "py" (Windows) or "python3" (macOS/Linux) with arguments ["-3", "-m", "mcp_kql_server", "--transport", "stdio"]. 5. Restart your MCP client to enable the query execution and schema memory tools.

What you can do with MCP KQL Server

  • Convert natural language requests into structured KQL statements to query Azure Data Explorer databases without manually drafting syntax. - Discover and cache table schemas across clusters into local memory to accelerate repeated AI context lookups and reduce cluster load. - Validate generated KQL syntax against cached schemas and automatically repair invalid column names prior to executing live queries. - Retrieve diagnostic logs and infrastructure telemetry in JSON, CSV, or tabular formats directly inside interactive MCP client sessions. - Run an operator-authenticated shared HTTP instance to serve telemetry data concurrently to multiple local developer environments or agents.

Key facts

  • https://github.com/4R9UN/mcp-kql-server
  • Cloud & Infrastructure, Data & Analytics
  • azure, kql, kusto, log-analytics

Part of MCP Servers

Related MCP servers

  • MCP Jupyter Complete β€” MCP Jupyter Complete is an MCP server that provides tools for manipulating Jupyter notebook files through position-based cell operations and…
  • MCP Media Player β€” MCP Media Player is an MCP server that exposes playback controls for Home Assistant media players to AI agents. It…
  • MCP Kubernetes Server β€” MCP Kubernetes Server is an MCP server that provides tools for managing and inspecting Kubernetes clusters directly through Large Language…
  • MCP Mempool β€” MCP Mempool is an MCP server that exposes the mempool.space WebSocket and REST APIs to AI agents, LLM assistants, and…
  • MCP Nomad Go β€” MCP Nomad Go is an MCP server that connects AI assistants to HashiCorp Nomad clusters. Written in Go, it allows…
  • MCP Minecraft Remote β€” MCP Minecraft Remote is an MCP server that enables AI assistants to remotely connect to and control a player character…

How do I install MCP KQL Server?

You can install MCP KQL Server by running pip install mcp-kql-server in a Python 3.10 or higher environment. Alternatively, clone the repository and run pip install -e . from the source folder. Ensure the Azure CLI is installed on your system, as the server checks your Azure authentication token on startup and prompts for az login if you are not already logged in.

What tools does MCP KQL Server provide?

The server provides two primary tools: execute_kql_query and kql_schema_memory. The query tool supports natural language to KQL conversion, direct query execution, schema validation, grounded column repairs, and data export in JSON, CSV, or table formats. The schema memory tool handles schema discovery, database table enumeration, schema cache clearing, and memory usage statistics.

Which MCP clients work with MCP KQL Server?

MCP KQL Server works with any client supporting the Model Context Protocol over standard input and output or HTTP transports. Documented configurations include Claude Desktop and Visual Studio Code with the MCP extension. It can also operate as a persistent shared HTTP server for agents and command line tools like GitHub Copilot CLI.

How does MCP KQL Server handle authentication?

The server relies directly on local Azure CLI authentication rather than hardcoded credentials or API keys. When starting up, it validates the current Azure token. If authentication is expired or missing, it triggers an interactive az login process, allowing tool executions to run under the active operator Azure identity and cluster access permissions.

  • AI Tools
  • Categories
  • Industries
  • CLI Coding Agents
  • MCP Servers
  • MCP Categories