Azure MCP Server: dozens of Azure services in one server
Microsoft's official Azure server puts tools for Storage, Cosmos DB, Key Vault, AKS, App Service, Monitor and dozens more in one place, scoped by your RBAC.
Project and installation docs
View projecthttps://github.com/microsoft/mcp
Checking one setting in Azure often means hopping between the portal, az commands and per-service SDKs. Azure MCP Server gathers operations for dozens of Azure services into one MCP server. Using your local Azure sign-in, the agent can list storage containers, query Cosmos DB, read Key Vault, pull Monitor logs or change App Service settings. It’s an official Microsoft project living in the microsoft/mcp repository, which had about 3.7k stars as of 2026-10-06.
What it does
- Broad coverage: AI Search, App Service, Container Apps, Cosmos DB, Event Hubs, Key Vault, AKS, Monitor, PostgreSQL, SQL Database, Storage and many more, each with its own tools.
- Operations and governance: Advisor recommendations, resource health, quotas and retail pricing, plus Well-Architected Framework guidance.
- Commands and templates: generates Azure CLI commands and returns ARM, Bicep or Terraform snippets to remediate findings.
- Namespaced tools: by default tools collapse into one namespace per service; you can switch to a single tool or expose everything, depending on how much context you can spare.
- Sovereign clouds:
--cloudtargets Azure China or Azure US Government.
Who it’s for
- Developers building on Azure in VS Code Copilot or Claude Code who want the agent to check resources and logs directly.
- Operators juggling several subscriptions who need a quick roll-up of Advisor findings and quotas.
Setup
Sign in first, for example with az login. In Claude Code, install the official plugin, which bundles the server with Azure skills:
/plugin install azure@claude-plugins-official
Other clients can run it with Node.js:
{
"mcpServers": {
"azure-mcp-server": {
"command": "npx",
"args": ["-y", "@azure/mcp@latest", "server", "start"]
}
}
}
The README also covers .NET (dnx), Python (uvx) and Docker.
Our take
For Azure, the official server is the obvious pick: the widest service coverage, frequent releases, and authentication that reuses your Azure CLI or PowerShell sign-in. What it can do is bounded by your RBAC permissions, and the README warns that autonomous or misconfigured clients may perform destructive actions, so use least-privilege roles. The VS Code extension has a read-only setting, a good place to start. Telemetry is on by default and sends usage data to Microsoft; setting AZURE_MCP_COLLECT_TELEMETRY=false turns it all off. Licensed MIT.