coolify-mcp.

Your AI can read your infrastructure. It should be able to run it.

coolify-mcp gives Claude, Cursor and any other MCP client a deliberate way to operate a live Coolify platform (deploy, diagnose, restart, roll back) and hands it only what it can take in.

You say

“Why is checkout-web down?”

It runs

diagnose_applogslist_deployments

You get

exited:unhealthy — OOM killed at 14:22. The deploy three hours ago raised the memory request, not the limit.

01 Install

One config block and an API token.

Works in Claude Desktop, Claude Code, Cursor and anything else that speaks MCP. Nothing to host. Your token never leaves your machine.

claude_desktop_config.json Coolify 4.0+ · Node 20+
{
  "mcpServers": {
    "coolify": {
      "command": "npx",
      "args": ["-y", "@masonator/coolify-mcp"],
      "env": {
        "COOLIFY_BASE_URL": "https://coolify.example.com",
        "COOLIFY_ACCESS_TOKEN": "your-api-token"
      }
    }
  }
}

02 What it can do

44 tools, covering the whole platform.

The full list lives in the README, where it stays current. What matters here is the shape of it.

Work out what is wrong

Diagnose an app or a server in one call, read container logs, and scan the whole estate for problems.

Deploy and roll back

Trigger deploys by tag or uuid, watch them, cancel them, and start, stop or restart anything.

Create and destroy

Applications, databases, services, projects and environments: created, changed and removed.

Handle the configuration

Environment variables, volumes, scheduled tasks, backups and SSH keys. Secrets stay masked unless you ask.

Move across the whole estate

One key across many apps, a project redeployed, or everything stopped at once, each behind a human confirmation.

03 Why you can point it at production

It stops and asks a person before it does anything it cannot undo.

Not the model deciding it has permission. An actual human being asked “stop all 26 running applications?” in their own client, and having to answer.

It asks before it hurts

Destructive operations stop and put the question to a person, in their own client, before anything happens.

Secrets stay hidden

Environment variables come back masked. Revealing one is a separate, deliberate request.

It fits in the context window

Lists return summaries, not whole objects. Responses are 90–99% smaller than the raw API.

Tested against a real server

Every release runs against a live Coolify, not a mock. That is how the API quirks got found.

The tool choice is measured

A model reads these tools and has to pick the right one. An eval suite measures that it does — and red-teams whether a poisoned log can talk it into deleting anything or leaking a secret.

04 Work with me

Your clients want AI. You need someone who actually ships it.

I work out what is possible, what it costs to keep running, and where the data has to live. Then I build it, under your name if you are an agency. And when the honest answer is that a job does not need AI, I will say so before anyone has paid for anything.

An MCP server for your product

Give Claude, Cursor and every other AI client a proper way into your API, like this one.

Answers from your own stuff

AI that answers from your documents and data, with the receipts, instead of guessing.

Work that runs itself

A job on a schedule that sorts, checks or reports, with a person signing off before it goes out.

Building since 2006 · Folkestone, Kent · Agencies, SMEs and enterprise · Day rate, hourly, or priced by the job

05 Get in touch

Tell me what you are trying to build.

A rough paragraph is enough to start. You will get a straight answer from a person, usually the same day, including if I think you do not need me.

Or email [email protected]