by pingidentity
AI-ready PingOne Advanced Identity Cloud MCP Server — securely manage users, customize auth themes, query identity data,
Connects AI assistants to PingOne Advanced Identity Cloud for managing users, customizing authentication themes, and analyzing identity logs through natural language commands.
PingOne Advanced Identity Cloud MCP Server is an official MCP server published by pingidentity that provides AI assistants with tools and capabilities via the Model Context Protocol. AI-ready PingOne Advanced Identity Cloud MCP Server — securely manage users, customize auth themes, query identity data, It is categorized under cloud infrastructure, auth security.
You can install PingOne Advanced Identity Cloud MCP Server in your AI client of choice. Use the install panel on this page to get one-click setup for Cursor, Claude Desktop, VS Code, and other MCP-compatible clients. This server runs locally on your machine via the stdio transport.
Apache-2.0
PingOne Advanced Identity Cloud MCP Server is released under the Apache-2.0 license. This is a permissive open-source license, meaning you can freely use, modify, and distribute the software.
Add new capabilities to Claude beyond text generation
Example
Access external data sources, execute code, interact with tools and services
Transform Claude from chatbot to action-taking agent
Provide Claude with access to relevant context and data
Example
Load project documentation, access knowledge bases, query databases
Get more accurate, context-aware responses
Automate multi-step workflows combining AI and external tools
Example
Research → Summarize → Create document → Send notification
Complete complex tasks end-to-end without manual steps
Share your MCP server with the developer community
PingOne Advanced Identity Cloud MCP Server has been reliable for tool-calling workflows; the MCP profile page is a good permalink for internal docs.
Useful MCP listing: PingOne Advanced Identity Cloud MCP Server is the kind of server we cite when onboarding engineers to host + tool permissions.
According to our notes, PingOne Advanced Identity Cloud MCP Server benefits from clear Model Context Protocol framing — fewer ambiguous “AI plugin” claims.
PingOne Advanced Identity Cloud MCP Server is a well-scoped MCP server in the explainx.ai directory — install snippets and categories matched our Claude Code setup.
We wired PingOne Advanced Identity Cloud MCP Server into a staging workspace; the listing’s GitHub and npm pointers saved time versus hunting across READMEs.
PingOne Advanced Identity Cloud MCP Server is among the better-indexed MCP projects we tried; the explainx.ai summary tracks the official description.
PingOne Advanced Identity Cloud MCP Server has been reliable for tool-calling workflows; the MCP profile page is a good permalink for internal docs.
PingOne Advanced Identity Cloud MCP Server is a well-scoped MCP server in the explainx.ai directory — install snippets and categories matched our Claude Code setup.
Strong directory entry: PingOne Advanced Identity Cloud MCP Server surfaces stars and publisher context so we could sanity-check maintenance before adopting.
PingOne Advanced Identity Cloud MCP Server is a well-scoped MCP server in the explainx.ai directory — install snippets and categories matched our Claude Code setup.
showing 1-10 of 62
Features • Use Cases • Prerequisites • Getting Started • Authentication • Available Tools • Docker Deployment • Security • Troubleshooting • Development • License
[!CAUTION] Preview Software Notice
This is preview software provided AS IS with no warranties of any kind.
- Current release is only for Sandbox and Development AIC tenants, the server is not enabled for production environments.
- Limited support is available during the public preview phase — please report bugs and provide feedback via the GitHub issue tracker
Your use of this software constitutes acceptance of these terms.
[!CAUTION] Security Notice
Depending on the requests made to the MCP server, tenant configuration or data may be returned. Do not use the MCP server with untrusted MCP clients, agent code or LLM inference.
[!WARNING] Review Generated Configuration
Configuration can be generated dynamically using LLM and user feedback represented dynamically back to agents/conversations. Be sure to review generated configuration before promoting to production environments, or those serving live identity/access requests.
An MCP (Model Context Protocol) server that enables AI assistants to interact with PingOne Advanced Identity Cloud environments. Manage users, roles, groups, organizations, customize authentication themes, analyze logs, and query identity data directly from your AI conversations.
Ask questions like "Find all alpha_users with email starting with [email protected]", "Create a new theme called 'Corporate Brand' with primary color #0066cc", or "Show me all ERROR level logs from the am-authentication source in the last hour".
Administer your AIC environment using natural language - Interact with PingOne AIC from whichever AI tool you use daily. No need to switch to the admin console or write API scripts - just ask your AI assistant.
Secure authentication - Supports OAuth 2.0 PKCE flow for local deployment and Device Code Flow for containerized deployment. All actions are user-based and auditable. Tokens stored securely in OS keychain (local) or ephemerally (Docker).
Broad tool support - Supports full CRUD operations against any managed object type in your environment (users, roles, groups, organizations, and custom types), authentication journey and script management, theme customization, advanced log querying, and environment variable configuration.
The MCP server requires the AIC_BASE_URL environment variable to be set to your PingOne AIC hostname.
Add this to your MCP client configuration:
{
"mcpServers": {
"aic-mcp-server": {
"type": "stdio",
"command": "npx",
"args": ["-y", "@ping-identity/aic-mcp-server"],
"env": {
"AIC_BASE_URL": "your-tenant.forgeblocks.com"
}
}
}
}
Required: Replace your-tenant.forgeblocks.com with your PingOne AIC tenant URL.
Client-specific instructions:
<details> <summary><b>Claude Code or Claude Desktop</b></summary>Add this to your Claude MCP configuration (claude.json for Claude Code or claude_desktop_config.json for Claude Desktop):
{
"mcpServers": {
"aic-mcp-server": {
"command": "npx",
"args": ["-y", "@ping-identity/aic-mcp-server"],
"env": {
"AIC_BASE_URL": "your-tenant.forgeblocks.com"
}
}
}
}
</details>
<details>
<summary><b>Cursor</b></summary>
Add this to your Cursor MCP configuration (.cursor/mcp.json):
{
"mcpServers": {
"aic-mcp-server": {
"command": "npx",
"args": ["-y", "@ping-identity/aic-mcp-server"],
"env": {
"AIC_BASE_URL": "your-tenant.forgeblocks.com"
}
}
}
}
</details>
<details>
<summary><b>GitHub Copilot (VS Code)</b></summary>
Add this to your Copilot MCP configuration (mcp.json):
{
"mcpServers": {
"aic-mcp-server": {
"command": "npx",
"args": ["-y", "@ping-identity/aic-mcp-server"],
"env": {
"AIC_BASE_URL": "your-tenant.forgeblocks.com"
}
}
}
}
</details>
<details>
<summary><b>Gemini CLI</b></summary>
Add this to your Gemini CLI MCP configuration (settings.json):
{
"mcpServers": {
"aic-mcp-server": {
"command": "npx",
"args": ["-y", "@ping-identity/aic-mcp-server"],
"env": {
"AIC_BASE_URL": "your-tenant.forgeblocks.com"
}
}
}
}
</details>
<details>
<summary><b>Codex (OpenAI)</b></summary>
Add this to your Codex MCP configuration (~/.codex/config.toml):
[mcp_servers.aic-mcp-server]
command = "npx"
args = ["-y", "@ping-identity/aic-mcp-server"]
env = {"AIC_BASE_URL" = "your-tenant.forgeblocks.com"}
</details>
Restart your MCP client and start asking questions! Your browser will open for authentication when you use the first tool in a session.
The server uses OAuth 2.0 PKCE flow for secure user authentication:
Docker Deployment: Uses OAuth 2.0 Device Code Flow with ephemeral token storage (tokens deleted on container restart).
Security Features:
[!CAUTION] Administrator Access Required: This server requires administrative authentication and provides administrative capabilities to your PingOne AIC development and sandbox environments. All operations are performed as the authenticated administrator and are fully auditable.
Development and Sandbox Environments Only: This server can only be used with development and sandbox environments. Use with trusted AI assistants in secure contexts. AI-driven operations can make mistakes - review and test changes carefully before promoting to higher environments.
The server provides tools for AI agents to interact with your
Prerequisites
Time Estimate
15-60 minutes depending on server complexity
Steps
Troubleshooting
✓ Do
✗ Don't
💡 Pro Tips
Architecture
Model Context Protocol standardizes how AI hosts (Claude, Cursor) communicate with external tools and data sources through server implementations.
Protocols
Compatibility
✓ Use when
Use when you need Claude to access external data, execute actions, or integrate with tools. Best for extending AI capabilities beyond conversation.
✗ Avoid when
Avoid when native integrations exist (use official APIs directly), for real-time critical systems, or when security/compliance requires zero external dependencies.