← Back to search

@heroku/mcp-server

GitHub Actions Scanned 8d ago

Heroku Platform MCP Server

B
79.3 / 100

Versions

1.2.5latest
Jun 29, 2026
1.2.4
Jun 22, 2026
1.2.3
Jun 8, 2026
1.2.2
Apr 22, 2026
1.2.1
Mar 17, 2026
+ show 15 moreshow less
1.2.0
Feb 18, 2026
1.2.0-beta.0
Feb 18, 2026
1.1.0
Dec 8, 2025
1.0.7
Jul 21, 2025
1.0.7-alpha.1
May 30, 2025
1.0.7-alpha.0
May 30, 2025
1.0.6
May 22, 2025
1.0.5
May 17, 2025
1.0.4
May 6, 2025
1.0.3
Apr 28, 2025
1.0.2
Apr 22, 2025
1.0.1
Apr 16, 2025
1.0.0
Apr 11, 2025
0.0.1
Apr 7, 2025
0.0.1-alpha.0
Apr 7, 2025
PermissionsTool SafetyAuthAnnotationsCode QualityStabilitySpecVuln HistoryAuthorTransparencyCommunity

Tools 37

pg_psql
annotations: none low

Execute SQL queries: analyze, debug, modify schema, manage data

pg_info
annotations: none low

View database status: config, metrics, resources, health

pg_ps
annotations: none low

Monitor active queries: progress, resources, performance

pg_locks
annotations: none low

Analyze locks: blocked queries, deadlocks, concurrency

pg_outliers
annotations: none low

Find resource-heavy queries: performance, patterns, optimization

pg_credentials
annotations: none low

Manage access: credentials, permissions, security, monitoring

pg_kill
annotations: none low

Stop processes: stuck queries, blocking transactions, runaway operations

list_teams
annotations: none low

Lists accessible Heroku Teams. Use for: viewing teams, checking membership, getting team metadata, and verifying access. JSON output available.

test_tool
annotations: none low

Test description

list_addons
annotations: none low

List add-ons: all apps or specific app, detailed metadata

get_addon_info
annotations: none low

Get add-on details: plan, state, billing

create_addon
annotations: none low

Create add-on: specify service, plan, custom names

list_addon_services
annotations: none low

List available add-on services and features

list_addon_plans
annotations: none low

List service plans: features, pricing, availability

get_app_logs
annotations: none low

App logs: monitor/debug/filter by dyno/process/source

pg_maintenance
annotations: none low

Track maintenance: windows, schedules, progress, planning

pg_backups
annotations: none low

Manage backups: schedules, status, verification, recovery

pg_upgrade
annotations: none low

Upgrade PostgreSQL: version migration, compatibility, safety

list_apps
annotations: none low

List Heroku apps: owned, collaborator access, team/space filtering

get_app_info
annotations: none low

Get app details: config, dynos, addons, access, domains

create_app
annotations: none low

Create app: custom name, region (US/EU), team, private space

rename_app
annotations: none low

Rename app: validate and update app name

list_private_spaces
annotations: none low

Lists Heroku Private Spaces with CIDR blocks, regions, compliance and capacity details. JSON output supported.

pipelines_create
annotations: none low

Creates new Heroku deployment pipeline with configurable stages, apps, and team settings

pipelines_promote
annotations: none low

Promotes apps between pipeline stages with configurable target applications

pipelines_list
annotations: none low

Lists accessible Heroku pipelines with ownership and configuration details

pipelines_info
annotations: none low

Displays detailed pipeline configuration, stages, and connected applications

pipelines
annotations: none low

Lists and manages Heroku pipelines with configuration visibility

deploy_to_heroku
annotations: none low

Use for all deployments. Deploys new/existing apps, with or without teams/spaces, and env vars to Heroku.

ps_list
annotations: none low

List and monitor Heroku app dynos. View running dynos, check status/health, monitor process states, verify configurations.

ps_scale
annotations: none low

Scale Heroku app dynos. Adjust quantities, change sizes, view formation details, manage resources.

ps_restart
annotations: none low

Restart Heroku app processes. Restart specific dynos, process types, or all dynos. Reset dyno states selectively.

list_ai_available_models
annotations: none low

List available AI inference models

provision_ai_model
annotations: none low

Provision AI model access for app

make_ai_inference
annotations: none low

Make inference request to Heroku AI API

maintenance_on
annotations: none low

Enable maintenance mode and redirect traffic for a Heroku app

maintenance_off
annotations: none low

Disable maintenance mode and restore normal app operations

Permissions 3

network medium
Server uses network capabilities via: fetch()
shell high
Server uses shell capabilities via: child_process, execSync(), spawn(), spawnSync()
env_vars low
Server uses env_vars capabilities via: process.env

Scan Findings 84

low
Tool 'pipelines_info' has no annotations annotation_checker · 100%
low
Tool 'pipelines' has no annotations annotation_checker · 100%
low
Tool 'test_tool' has no annotations annotation_checker · 100%
low
Tool 'list_addons' has no annotations annotation_checker · 100%
low
Tool 'get_addon_info' has no annotations annotation_checker · 100%
low
Tool 'create_addon' has no annotations annotation_checker · 100%
low
Tool 'list_addon_services' has no annotations annotation_checker · 100%
low
Tool 'list_addon_plans' has no annotations annotation_checker · 100%
low
Tool 'get_app_logs' has no annotations annotation_checker · 100%
low
Tool 'list_teams' has no annotations annotation_checker · 100%
low
Tool 'pg_psql' has no annotations annotation_checker · 100%
low
Tool 'pg_info' has no annotations annotation_checker · 100%
low
Tool 'pg_ps' has no annotations annotation_checker · 100%
low
Tool 'pg_locks' has no annotations annotation_checker · 100%
low
Tool 'pg_outliers' has no annotations annotation_checker · 100%
low
Tool 'pg_credentials' has no annotations annotation_checker · 100%
low
Tool 'pg_kill' has no annotations annotation_checker · 100%
low
Tool 'pg_maintenance' has no annotations annotation_checker · 100%
low
Tool 'pg_backups' has no annotations annotation_checker · 100%
low
Tool 'pg_upgrade' has no annotations annotation_checker · 100%
low
Tool 'list_apps' has no annotations annotation_checker · 100%
low
Tool 'get_app_info' has no annotations annotation_checker · 100%
low
Tool 'create_app' has no annotations annotation_checker · 100%
low
Tool 'rename_app' has no annotations annotation_checker · 100%
low
Tool 'list_private_spaces' has no annotations annotation_checker · 100%
low
Tool 'pipelines_create' has no annotations annotation_checker · 100%
low
Tool 'pipelines_promote' has no annotations annotation_checker · 100%
low
Tool 'pipelines_list' has no annotations annotation_checker · 100%
low
Tool 'deploy_to_heroku' has no annotations annotation_checker · 100%
low
Tool 'ps_list' has no annotations annotation_checker · 100%
low
Tool 'ps_scale' has no annotations annotation_checker · 100%
low
Tool 'ps_restart' has no annotations annotation_checker · 100%
low
Tool 'list_ai_available_models' has no annotations annotation_checker · 100%
low
Tool 'provision_ai_model' has no annotations annotation_checker · 100%
low
Tool 'make_ai_inference' has no annotations annotation_checker · 100%
low
Tool 'maintenance_on' has no annotations annotation_checker · 100%
low
Tool 'maintenance_off' has no annotations annotation_checker · 100%
info
Sandbox failed to start for behavioral verification behavioral_verifier · 100%
info
package.json metadata manifest_parser · 100%
info
Tool: test_tool manifest_parser · 70%
info
Tool: list_addons manifest_parser · 70%
info
Tool: get_addon_info manifest_parser · 70%
info
Tool: create_addon manifest_parser · 70%
info
Tool: list_addon_services manifest_parser · 70%
info
Tool: list_addon_plans manifest_parser · 70%
info
Tool: get_app_logs manifest_parser · 70%
info
Tool: list_teams manifest_parser · 70%
info
Tool: pg_psql manifest_parser · 70%
info
Tool: pg_info manifest_parser · 70%
info
Tool: pg_ps manifest_parser · 70%
info
Tool: pg_locks manifest_parser · 70%
info
Tool: pg_outliers manifest_parser · 70%
info
Tool: pg_credentials manifest_parser · 70%
info
Tool: pg_kill manifest_parser · 70%
info
Tool: pg_maintenance manifest_parser · 70%
info
Tool: pg_backups manifest_parser · 70%
info
Tool: pg_upgrade manifest_parser · 70%
info
Tool: list_apps manifest_parser · 70%
info
Tool: get_app_info manifest_parser · 70%
info
Tool: create_app manifest_parser · 70%
info
Tool: rename_app manifest_parser · 70%
info
Tool: list_private_spaces manifest_parser · 70%
info
Tool: pipelines_create manifest_parser · 70%
info
Tool: pipelines_promote manifest_parser · 70%
info
Tool: pipelines_list manifest_parser · 70%
info
Tool: pipelines_info manifest_parser · 70%
info
Tool: pipelines manifest_parser · 70%
info
Tool: deploy_to_heroku manifest_parser · 70%
info
Tool: ps_list manifest_parser · 70%
info
Tool: ps_scale manifest_parser · 70%
info
Tool: ps_restart manifest_parser · 70%
info
Tool: list_ai_available_models manifest_parser · 70%
info
Tool: provision_ai_model manifest_parser · 70%
info
Tool: make_ai_inference manifest_parser · 70%
info
Tool: maintenance_on manifest_parser · 70%
info
Tool: maintenance_off manifest_parser · 70%
info
Transport: stdio manifest_parser · 90%
info
Required env vars (2) manifest_parser · 80%
info
Sandbox failed to start for output poisoning scan output_poisoning · 100%
medium
Permission: network access detected permission_analyzer · 70%
high
Permission: shell access detected permission_analyzer · 95%
low
Permission: env_vars access detected permission_analyzer · 90%
info
SBOM generated: 705 components sbom_generator · 100%
medium
No build provenance detected (SLSA L0) slsa_assessor · 90%