Claude security directory

CircleCI

Published by CircleCI Engineering

High risk

The CircleCI MCP Server is a remote server hosted by CircleCI that connects Claude directly to your CI/CD pipelines, giving you a conversational interface to the same pipeline, workflow, job, and artifact data you'd normally reach through the CircleCI CLI or dashboard. With this connector, you can ask Claude to check the latest pipeline status for a project or roll back a deployment - all without leaving your conversation. When something breaks, Claude can pull the failure logs for a specific build and help you understand what went wrong, or dig into test results for a job to pinpoint which tests failed and why. Beyond troubleshooting individual runs, the server supports broader pipeline health and efficiency work. Claude can identify underused resource classes to help you right-size compute and control costs, and list artifacts produced by your builds so you can retrieve build outputs without hunting through the UI. It also helps with day-to-day project management: checking component versions across your fleet, and pulling usage data for cost and consumption analysis. For configuration work, it can act as a config helper - assisting with validating and troubleshooting your .circleci/config.yml setup. In short, this MCP Server turns Claude into a working partner for CI/CD: monitoring pipeline health, debugging build and test failures, managing releases and rollbacks, and keeping an eye on cost and reliability - all through natural conversation rather than manual dashboard digging or CLI commands.

Security assessment

Plutonium assessed this web connector for permissions, capabilities, and security-relevant behavior.

  • Can run commands or queries on your behalf: This connector can execute scripts, shell commands, or arbitrary database queries. In a worst case, an attacker could install software, read files, or pull or change any data its login can reach.
  • Reads your private information: This connector can read data the connected service holds about you - documents, messages, contact lists, source code, customer records, or saved profile details - and pass it back to the AI.
  • Sends your data to outside companies: Anything you share with this connector flows through one or more third-party services. Those companies see, store, and may use the data according to their own policies.

Available capabilities

This add-on exposes 24 tools or capabilities.

  • cancel_workflow
  • download_usage_data
  • get_deploy_component
  • get_deploy_environment
  • get_job
  • get_job_logs
  • get_job_resource_usage
  • get_me
  • get_orb
  • get_orb_source
  • get_run
  • get_workflow
  • list_deploy_component_versions
  • list_deploy_components
  • list_deploy_environments
  • list_deployments
  • list_job_artifacts
  • list_job_tests
  • list_run_workflows
  • list_runs
  • list_workflow_jobs
  • rerun_workflow
  • rollback_deploy_component
  • validate_config

The interactive security report will load automatically.