Vultr MCP

284 tools. 119 can modify or destroy data without limits.

30 destructive tools with no built-in limits. Policy required.

Last updated:

119 can modify or destroy data
165 read-only
284 tools total

Community server · catalogue entry verified 11/06/2026

How to control Vultr MCP ↓

What Vultr MCP exposes to your agents

Read (165) Write / Execute (81) Destructive / Financial (30)
Critical Risk

The most dangerous Vultr MCP tools

119 of Vultr MCP's 284 tools can modify, destroy, or commit something on every call — and an agent calls them with no built-in limits.

How to control Vultr MCP

PolicyLayer is an MCP gateway — it sits between your AI agents and Vultr MCP, and nothing reaches the server without passing your rules. These are the rules we recommend:

Deny destructive operations
{
  "delete": {
    "deny_if": [
      {
        "conditions": [],
        "on_deny": "Blocked by default. Requires approval."
      }
    ]
  }
}

Destructive tools should never be available to autonomous agents without human approval.

Rate limit write operations
{
  "detach_from_instance": {
    "limits": [
      {
        "counter": "detach_from_instance_per_hour",
        "window": "hour",
        "max": 30,
        "scope": "grant"
      }
    ]
  }
}

Prevents bulk unintended modifications from agents caught in loops.

Cap read operations
{
  "analyze_cdn_performance": {
    "limits": [
      {
        "counter": "analyze_cdn_performance_per_minute",
        "window": "minute",
        "max": 60,
        "scope": "grant"
      }
    ]
  }
}

Controls API costs and prevents retry loops from exhausting upstream rate limits.

  1. Create a free account and register Vultr MCP — nothing to install.
  2. Add these rules — paste them, or build them visually. Tune the limits to your setup.
  3. Point your MCP client (Claude, Cursor, anything) at your gateway URL.
ENFORCE POLICY ON VULTR →

Free to start. No card required.

All 284 Vultr MCP tools

DESTRUCTIVE 30 tools
Destructive delete Delete a block storage volume. Destructive delete_bare_metal_server Delete a bare metal server. Destructive delete_cdn_ssl_certificate Remove SSL certificate from a CDN zone. Destructive delete_cdn_zone Delete a CDN zone. Destructive delete_collection delete_collection Destructive delete_connection_pool Delete a connection pool. Destructive delete_dns_domain Delete a DNS domain and ALL its associated records Destructive delete_dns_record Delete a specific DNS record Destructive delete_domain Delete a DNS domain and all its records. Destructive delete_export Delete an export from a storage gateway. Destructive delete_forwarding_rule delete_forwarding_rule Destructive delete_group Delete a firewall group. Destructive delete_ipv4 Delete an IPv4 address from an instance. Destructive delete_iso Delete an ISO image. Destructive delete_kafka_topic Delete a Kafka topic. Destructive delete_kubernetes_cluster delete_kubernetes_cluster Destructive delete_kubernetes_cluster_with_resources delete_kubernetes_cluster_with_resources Destructive delete_kubernetes_node delete_kubernetes_node Destructive delete_kubernetes_node_pool delete_kubernetes_node_pool Destructive delete_logical_database Delete a logical database. Destructive delete_record Delete a DNS record. Destructive delete_rule delete_rule Destructive delete_serverless_inference Delete a serverless inference subscription. Destructive delete_ssl delete_ssl Destructive delete_startup_script Delete a startup script. Destructive delete_user Delete a database user. Destructive delete_vpc2 Delete a VPC 2.0 network. Destructive purge_cdn_zone Purge all cached content from a CDN zone. Destructive remove_ip_whitelist_entry remove_ip_whitelist_entry Destructive remove_resource_from_collection remove_resource_from_collection
WRITE 65 tools
Write detach_from_instance detach_from_instance Write fork_database fork_database Write regenerate_keys Regenerate the S3 access keys for an Object Storage instance. Write add_export add_export Write add_ip_whitelist_entry add_ip_whitelist_entry Write add_resource_to_collection add_resource_to_collection Write attach attach Write attach_to_instance attach_to_instance Write configure_basic_web_lb configure_basic_web_lb Write convert_instance_ip convert_instance_ip Write create create Write create_bare_metal_server create_bare_metal_server Write create_cdn_ssl_certificate create_cdn_ssl_certificate Write create_cdn_zone create_cdn_zone Write create_collection create_collection Write create_common_startup_script create_common_startup_script Write create_connection_pool create_connection_pool Write create_dns_domain Create a new DNS domain with a default A record Write create_dns_record Create a new DNS record for a domain Write create_domain create_domain Write create_forwarding_rule create_forwarding_rule Write create_from_url create_from_url Write create_group Create a new firewall group. Write create_ipv4 Create a new IPv4 address for an instance. Write create_iso Create a new ISO image from URL. Write create_kafka_topic create_kafka_topic Write create_kubernetes_cluster create_kubernetes_cluster Write create_kubernetes_node_pool create_kubernetes_node_pool Write create_logical_database Create a new logical database within a managed database instance. Write create_read_replica create_read_replica Write create_record create_record Write create_rule create_rule Write create_serverless_inference Create a new serverless inference subscription. Write create_startup_script Create a new startup script. Write create_user create_user Write create_vpc2 create_vpc2 Write disable_auto_ssl Disable Auto SSL for a load balancer. Write generate_kubernetes_credentials generate_kubernetes_credentials Write import_zone_file import_zone_file Write promote_collection_environment promote_collection_environment Write promote_read_replica Promote a read replica to a standalone database. Write restore_from_backup restore_from_backup Write setup_cdn_for_website setup_cdn_for_website Write setup_mysql_database setup_mysql_database Write setup_permissions Configure permissions for a subaccount. Write setup_postgresql_database setup_postgresql_database Write setup_service_user setup_service_user Write setup_standard_user setup_standard_user Write setup_website Set up basic DNS records for a website. Write update update Write update_bare_metal_server update_bare_metal_server Write update_cdn_zone update_cdn_zone Write update_collection_permissions update_collection_permissions Write update_connection_pool update_connection_pool Write update_dns_record Update an existing DNS record with new configuration Write update_group update_group Write update_kafka_topic update_kafka_topic Write update_kubernetes_cluster update_kubernetes_cluster Write update_kubernetes_node_pool update_kubernetes_node_pool Write update_record update_record Write update_serverless_inference Update an existing serverless inference subscription. Write update_startup_script update_startup_script Write update_user update_user Write update_user_access_control update_user_access_control Write update_vpc2 Update VPC 2.0 description.
READ 165 tools
Read analyze_cdn_performance analyze_cdn_performance Read analyze_costs analyze_costs Read analyze_database_migration_status Get enhanced migration status analysis with recommendations. Read analyze_database_performance Analyze database performance and provide optimization recommendations. Read analyze_dns_records Analyze DNS configuration for a domain and provide insights Read analyze_domain Analyze DNS configuration for a domain and provide recommendations. Read analyze_inference_usage analyze_inference_usage Read analyze_kubernetes_cluster_costs analyze_kubernetes_cluster_costs Read analyze_spending_trends Analyze spending trends over the past months. Read analyze_user_permissions analyze_user_permissions Read compare_plans Compare multiple plans side by side. Read find_by_email Find subaccounts by email address. Read find_by_name Find subaccounts by name (partial match). Read find_by_region Find all Object Storage instances in a specific region. Read find_regions_with_plan Find all regions where a specific plan is available. Read get Get detailed information about a specific load balancer. Read get_account_info Get account information including billing details. Read get_application Get detailed information about a specific application. Read get_application_deployment_guide Get deployment guidance for an application. Read get_applications_by_vendor Get all applications from a specific vendor. Read get_availability get_availability Read get_balance_summary Get a summary of all subaccount balances and charges. Read get_bandwidth Get bandwidth usage statistics for an instance. Read get_bare_metal_bandwidth Get bandwidth usage for a bare metal server. Read get_bare_metal_neighbors get_bare_metal_neighbors Read get_bare_metal_plan Get details of a specific bare metal plan. Read get_bare_metal_server Get details of a specific bare metal server. Read get_bare_metal_server_summary get_bare_metal_server_summary Read get_bare_metal_user_data Get user data for a bare metal server. Read get_cdn_available_regions Get list of available CDN regions. Read get_cdn_ssl_certificate get_cdn_ssl_certificate Read get_cdn_zone Get details of a specific CDN zone. Read get_cdn_zone_logs get_cdn_zone_logs Read get_cdn_zone_stats get_cdn_zone_stats Read get_cdn_zone_summary get_cdn_zone_summary Read get_cheapest_plan Get the cheapest available plan. Read get_configuration_summary Get a comprehensive configuration summary for a load balancer. Read get_connection_pool Get information about a connection pool. Read get_cost_analysis Get cost analysis and projections for a storage gateway. Read get_cost_breakdown_by_service Get cost breakdown by service for the specified period. Read get_current_balance Get current account balance and payment information. Read get_current_month_summary Get current month usage and cost summary. Read get_deployment_examples Get examples of how to deploy popular marketplace applications. Read get_dns_domain Get detailed information for a specific DNS domain Read get_dns_record Get detailed information for a specific DNS record Read get_docker_login_command get_docker_login_command Read get_domain Get details for a specific DNS domain. Read get_firewall_rule Get details of a specific firewall rule. Read get_forwarding_rule Get details of a specific forwarding rule. Read get_gateway_status Get comprehensive status information for a storage gateway. Read get_group Get information about a specific firewall group. Read get_health_status Get health status and monitoring information for a load balancer. Read get_inference_deployment_guide get_inference_deployment_guide Read get_inference_usage get_inference_usage Read get_invoice Get details of a specific invoice. Read get_ip_whitelist Get the IP whitelist for a user. Read get_ip_whitelist_entry get_ip_whitelist_entry Read get_iso Get details of a specific ISO image. Read get_iso_by_name Get ISO by name or filename. Read get_kafka_topic Get information about a Kafka topic. Read get_kubernetes_available_upgrades Get available Kubernetes version upgrades for a cluster. Read get_kubernetes_cluster get_kubernetes_cluster Read get_kubernetes_cluster_config Get the kubeconfig for a Kubernetes cluster. Read get_kubernetes_cluster_resources Get resource usage information for a Kubernetes cluster. Read get_kubernetes_cluster_status get_kubernetes_cluster_status Read get_kubernetes_node get_kubernetes_node Read get_kubernetes_node_pool get_kubernetes_node_pool Read get_kubernetes_versions Get list of available Kubernetes versions. Read get_last_month_summary Get last month usage and cost summary. Read get_logical_database Get information about a logical database. Read get_maintenance_updates Get available maintenance updates for a database. Read get_marketplace_app_variables get_marketplace_app_variables Read get_migration_status Get the status of an ongoing database migration. Read get_monthly_usage_summary Get monthly usage and cost summary. Read get_mount_instructions Get NFS mount instructions for a storage gateway. Read get_mounting_instructions Get instructions for mounting a block storage volume on Linux. Read get_network_info get_network_info Read get_operating_system Get details of a specific operating system. Read get_os_by_name Get operating system by exact name match. Read get_payment_summary Get payment summary and account status. Read get_plan Get details of a specific plan. Read get_plan_by_type_and_spec get_plan_by_type_and_spec Read get_plans_by_region_availability Get plans available in a specific region. Read get_popular_marketplace_apps Get popular marketplace applications. Read get_record Get details for a specific DNS record. Read get_registry_info get_registry_info Read get_rule Get information about a specific firewall rule. Read get_s3_config get_s3_config Read get_serverless_inference Get detailed information about a specific inference subscription. Read get_startup_script Get details of a specific startup script. Read get_startup_script_content Get the content of a startup script. Read get_status_overview Get an overview of all subaccount statuses and key metrics. Read get_storage_summary get_storage_summary Read get_usage Get database usage statistics (CPU, memory, disk). Read get_user Get information about a specific database user. Read get_volume_status Get comprehensive status information for a block storage volume. Read list list Read list_application_categories List applications grouped by categories/vendors. Read list_application_images List application images (one-click apps). Read list_attached List all attached block storage volumes with instance information. Read list_available_permissions List all available permissions that can be granted to users. Read list_available_versions List available versions for database engine upgrades. Read list_backups List available backups for a managed database. Read list_bare_metal_plans List available bare metal plans. Read list_bare_metal_servers List all bare metal servers. Read list_bare_metal_servers_by_region List bare metal servers in a specific region. Read list_bare_metal_servers_by_status List bare metal servers by status. Read list_billing_history List billing history for the specified number of days. Read list_boot_scripts List boot startup scripts. Read list_by_continent List all regions in a specific continent. Read list_by_region List block storage volumes in a specific region. Read list_by_status List storage gateways by status. Read list_by_type List storage gateways by type. Read list_cdn_zones List all CDN zones. Read list_cluster_tiers List all available tiers for a specific Object Storage cluster. Read list_clusters list_clusters Read list_collections_by_project List service collections for a specific project. Read list_connection_pools List connection pools for a managed database. Read list_custom_isos List custom ISO images (user-uploaded). Read list_databases List logical databases within a managed database instance. Read list_dns_domains List all DNS domains in your Vultr account Read list_dns_records List DNS records for a domain. Supports pagination and compact zone file format. Read list_domains List DNS domains Read list_firewall_rules List firewall rules for a load balancer. Read list_forwarding_rules List forwarding rules for a load balancer. Read list_groups list_groups Read list_instance_networks list_instance_networks Read list_invoice_items List items in a specific invoice. Read list_invoices List all invoices. Read list_ipv4 List IPv4 addresses for an instance. Read list_ipv6 List IPv6 addresses for an instance. Read list_isos List all available ISO images. Read list_kafka_topics List Kafka topics (Kafka databases only). Read list_kubernetes_clusters list_kubernetes_clusters Read list_kubernetes_node_pools List all node pools for a Kubernetes cluster. Read list_kubernetes_nodes list_kubernetes_nodes Read list_linux_os List Linux operating systems. Read list_operating_systems List all available operating systems. Read list_os_by_family List operating systems by family. Read list_plans List all available container registry plans. Read list_public_isos List public ISO images (filtered from all ISOs). Read list_pxe_scripts List PXE startup scripts. Read list_records list_records Read list_rules List all rules in a firewall group. Read list_serverless_inference list_serverless_inference Read list_startup_scripts List all startup scripts. Read list_unattached List all unattached block storage volumes. Read list_users List all users in a managed database. Read list_vc2_plans List VC2 (Virtual Cloud Compute) plans. Read list_vhf_plans List VHF (High Frequency) plans. Read list_voc_plans List VOC (Optimized Cloud) plans. Read list_windows_os List Windows operating systems. Read list_with_ddos_protection List all regions that support DDoS protection. Read monitor_inference_performance monitor_inference_performance Read monitor_usage Monitor usage across all subaccounts and identify potential issues. Read optimize_gateway_configuration Analyze and provide optimization recommendations for a storage gateway. Read search_applications search_applications Read search_bare_metal_plans search_bare_metal_plans Read search_os_by_name Search operating systems by name. Read search_plans_by_specs search_plans_by_specs Read search_startup_scripts Search startup scripts by name or content. Read validate_dns_record Validate DNS record parameters before creation Read validate_record validate_record Read validate_s3_access validate_s3_access Read export_zone_file Export domain records as standard DNS zone file format.

Related servers

Other MCP servers with similar tools — same risk classification, starter policies for each.

Questions about Vultr MCP

Can an AI agent delete data through the Vultr MCP server? +

Yes. The Vultr MCP server exposes 30 destructive tools including delete, delete_bare_metal_server, delete_cdn_ssl_certificate. These permanently remove resources with no undo. PolicyLayer blocks destructive tools by default so they never reach the upstream server.

How do I prevent bulk modifications through Vultr MCP? +

The Vultr MCP server has 65 write tools including detach_from_instance, fork_database, regenerate_keys. Set a rate limit in your policy -- for example, 10 calls per hour prevents an agent from making more than 10 modifications per hour. PolicyLayer enforces this at the gateway, before calls reach Vultr MCP.

How many tools does the Vultr MCP server expose? +

284 tools across 4 categories: Destructive, Execute, Read, Write. 165 are read-only. 119 can modify, create, or delete data.

How do I enforce a policy on Vultr MCP? +

Register the Vultr MCP server in PolicyLayer, apply the suggested rules above (adjust the limits to your use case), and point your AI client at the PolicyLayer proxy URL instead of the server directly. Your agents keep the same tools; PolicyLayer evaluates every call against policy before it executes. Nothing to install, live in minutes.

Enforce policy on every Vultr MCP tool call.

Deterministic rules across all 284 Vultr MCP tools. Per-identity grants. Full audit log. Live in minutes. Nothing to install.

Free to start. No card required.

284 Vultr MCP tools catalogued and risk-classified — across an index of 43,000+ MCP servers.

// GET IN TOUCH

Have a question or want to learn more? Send us a message.

Message sent.

We'll get back to you soon.