MCP server
by cloudflare
Cloudflare Container Sandbox lets your MCP client run secure, sandboxed LLM code in Node or Python. Run code safely in t
Runs arbitrary code (Node.js, Python, etc.) in secure Cloudflare-hosted sandbox containers. Lets LLMs execute code safely without local environment setup.
Cloudflare Container Sandbox is an official MCP server published by cloudflare that provides AI assistants with tools and capabilities via the Model Context Protocol. Cloudflare Container Sandbox lets your MCP client run secure, sandboxed LLM code in Node or Python. Run code safely in t
You can install Cloudflare Container Sandbox in your AI client of choice. Use the install panel on this page to get one-click setup for Cursor, Claude Desktop, VS Code, and other MCP-compatible clients. This server supports remote connections over HTTP, so no local installation is required.
Apache-2.0
Cloudflare Container Sandbox is released under the Apache-2.0 license. This is a permissive open-source license, meaning you can freely use, modify, and distribute the software.
Add new capabilities to Claude beyond text generation
Example
Access external data sources, execute code, interact with tools and services
Transform Claude from chatbot to action-taking agent
Provide Claude with access to relevant context and data
Example
Load project documentation, access knowledge bases, query databases
Get more accurate, context-aware responses
Automate multi-step workflows combining AI and external tools
Example
Research → Summarize → Create document → Send notification
Complete complex tasks end-to-end without manual steps
Share your MCP server with the developer community
Useful MCP listing: Cloudflare Container Sandbox is the kind of server we cite when onboarding engineers to host + tool permissions.
Cloudflare Container Sandbox has been reliable for tool-calling workflows; the MCP profile page is a good permalink for internal docs.
We wired Cloudflare Container Sandbox into a staging workspace; the listing’s GitHub and npm pointers saved time versus hunting across READMEs.
Cloudflare Container Sandbox is a well-scoped MCP server in the explainx.ai directory — install snippets and categories matched our Claude Code setup.
Cloudflare Container Sandbox reduced integration guesswork — categories and install configs on the listing matched the upstream repo.
Strong directory entry: Cloudflare Container Sandbox surfaces stars and publisher context so we could sanity-check maintenance before adopting.
Useful MCP listing: Cloudflare Container Sandbox is the kind of server we cite when onboarding engineers to host + tool permissions.
We wired Cloudflare Container Sandbox into a staging workspace; the listing’s GitHub and npm pointers saved time versus hunting across READMEs.
Useful MCP listing: Cloudflare Container Sandbox is the kind of server we cite when onboarding engineers to host + tool permissions.
According to our notes, Cloudflare Container Sandbox benefits from clear Model Context Protocol framing — fewer ambiguous “AI plugin” claims.
showing 1-10 of 36
Model Context Protocol (MCP) is a new, standardized protocol for managing context between large language models (LLMs) and external systems. In this repository, you can find several MCP servers allowing you to connect to Cloudflare's service from an MCP client (e.g. Cursor, Claude) and use natural language to accomplish tasks through your Cloudflare account.
These MCP servers allow your MCP Client to read configurations from your account, process information, make suggestions based on data, and even make those suggested changes for you. All of these actions can happen across Cloudflare's many services including application development, security and performance.
They support both the streamable-http transport via /mcp and the sse transport (deprecated) via /sse.
The following servers are included in this repository:
| Server Name | Description | Server URL |
|---|---|---|
| Documentation server | Get up to date reference information on Cloudflare | https://docs.mcp.cloudflare.com/mcp |
| Workers Bindings server | Build Workers applications with storage, AI, and compute primitives | https://bindings.mcp.cloudflare.com/mcp |
| Workers Builds server | Get insights and manage your Cloudflare Workers Builds | https://builds.mcp.cloudflare.com/mcp |
| Observability server | Debug and get insight into your application's logs and analytics | https://observability.mcp.cloudflare.com/mcp |
| Radar server | Get global Internet traffic insights, trends, URL scans, and other utilities | https://radar.mcp.cloudflare.com/mcp |
| Container server | Spin up a sandbox development environment | https://containers.mcp.cloudflare.com/mcp |
| Browser rendering server | Fetch web pages, convert them to markdown and take screenshots | https://browser.mcp.cloudflare.com/mcp |
| Logpush server | Get quick summaries for Logpush job health | https://logs.mcp.cloudflare.com/mcp |
| AI Gateway server | Search your logs, get details about the prompts and responses | https://ai-gateway.mcp.cloudflare.com/mcp |
| AutoRAG server | List and search documents on your AutoRAGs | https://autorag.mcp.cloudflare.com/mcp |
| Audit Logs server | Query audit logs and generate reports for review | https://auditlogs.mcp.cloudflare.com/mcp |
| DNS Analytics server | Optimize DNS performance and debug issues based on current set up | https://dns-analytics.mcp.cloudflare.com/mcp |
| Digital Experience Monitoring server | Get quick insight on critical applications for your organization | https://dex.mcp.cloudflare.com/mcp |
| Cloudflare One CASB server | Quickly identify any security misconfigurations for SaaS applications to safeguard users & data | https://casb.mcp.cloudflare.com/mcp |
| GraphQL server | Get analytics data using Cloudflare’s GraphQL API | https://graphql.mcp.cloudflare.com/mcp |
If your MCP client has first class support for remote MCP servers, the client will provide a way to accept the server URL directly within its interface (e.g. Cloudflare AI Playground)
If your client does not yet support remote MCP servers, you will need to set up its respective configuration file using mcp-remote (https://www.npmjs.com/package/mcp-remote) to specify which servers your client can access.
{
"mcpServers": {
"cloudflare-observability": {
"command": "npx",
"args": ["mcp-remote", "https://observability.mcp.cloudflare.com/mcp"]
},
"cloudflare-bindings": {
"command": "npx",
"args": ["mcp-remote", "https://bindings.mcp.cloudflare.com/mcp"]
}
}
}
To use one of Cloudflare's MCP servers with OpenAI's responses API, you will need to provide the Responses API with an API token that has the scopes (permissions) required for that particular MCP server.
For example, to use the Browser Rendering MCP server with OpenAI, create an API token in the Cloudflare dashboard here, with the following permissions:
<img width="937" alt="Screenshot 2025-05-21 at 10 38 02 AM" src="https://github.com/user-attachments/assets/872e253f-23ce-43b3-983c-45f9d0f66100" />We're continuing to add more functionality to this remote MCP server repo. If you'd like to leave feedback, file a bug or provide a feature request, please open an issue on this repository
"Claude's response was interrupted ... "
If you see this message, Claude likely hit its context-length limit and stopped mid-reply. This happens most often on servers that trigger many chained tool calls such as the observability server.
To reduce the chance of running in to this issue:
Some features may require a paid Cloudflare Workers plan. Ensure your Cloudflare account has the necessary subscription level for the features you intend to use.
Interested in contributing, and running this server locally? See CONTRIBUTING.md to get started.
Prerequisites
Time Estimate
15-60 minutes depending on server complexity
Steps
Troubleshooting
✓ Do
✗ Don't
💡 Pro Tips
Architecture
Model Context Protocol standardizes how AI hosts (Claude, Cursor) communicate with external tools and data sources through server implementations.
Protocols
Compatibility
✓ Use when
Use when you need Claude to access external data, execute actions, or integrate with tools. Best for extending AI capabilities beyond conversation.
✗ Avoid when
Avoid when native integrations exist (use official APIs directly), for real-time critical systems, or when security/compliance requires zero external dependencies.