# coolify-mcp > Open-source MCP server (v3.7.0, MIT) that lets Claude, Cursor or any MCP client operate a self-hosted Coolify platform: 46 tools for deploying, diagnosing, configuring and operating applications, databases and services. Destructive operations ask a human first; secrets are masked at the API boundary. Runs locally over stdio, or as a container inside Coolify with OAuth 2.1 for remote clients, and can manage several Coolify instances at once. Install: `npx @masonator/coolify-mcp` with COOLIFY_BASE_URL and COOLIFY_ACCESS_TOKEN in the environment. Verify a setup with `npx @masonator/coolify-mcp doctor`. ## Docs - [README](https://raw.githubusercontent.com/StuMason/coolify-mcp/main/README.md): install paths, what it does, safety summary - [Tool reference](https://raw.githubusercontent.com/StuMason/coolify-mcp/main/docs/tools.md): Every tool by category, how the surface is shaped, Coolify version compatibility and the upstream gotchas already handled. - [Remote: HTTP mode](https://raw.githubusercontent.com/StuMason/coolify-mcp/main/docs/http-mode.md): Run it as a container inside Coolify and connect claude.ai or Claude Code over OAuth 2.1. Five-minute install, every mistake we made. - [Prompts and resources](https://raw.githubusercontent.com/StuMason/coolify-mcp/main/docs/prompts-and-resources.md): Guided workflows you start as slash commands, and reads a client can attach. Why a prompt never fetches, and why a resource can never bypass masking. - [Fleet](https://raw.githubusercontent.com/StuMason/coolify-mcp/main/docs/fleet.md): Several Coolify instances from one server: COOLIFY_INSTANCES, the instance argument, and why a fleet is one trust domain. - [Doctor](https://raw.githubusercontent.com/StuMason/coolify-mcp/main/docs/doctor.md): npx @masonator/coolify-mcp doctor: what each check proves, exit codes, and what it deliberately does not guess. - [Safety and security](https://raw.githubusercontent.com/StuMason/coolify-mcp/main/docs/security.md): Human confirmation on destructive operations, secrets masked at the API boundary, and how to report a vulnerability. - [Changelog](https://raw.githubusercontent.com/StuMason/coolify-mcp/main/CHANGELOG.md): Every release, what changed and why, with upgrade notes. ## Optional - [Full documentation in one file](https://coolify-mcp.stumason.dev/llms-full.txt) - [Source](https://github.com/StuMason/coolify-mcp) - [npm](https://www.npmjs.com/package/@masonator/coolify-mcp) - [Evals and red teaming](https://raw.githubusercontent.com/StuMason/coolify-mcp/main/evals/README.md): how tool selection and prompt-injection resistance are measured