elasticsearch7-mcp (agrica/elasticsearch7-mcp) is an MCP server listed on the M8ven Trust Index. M8ven has not graded it: we have no way to read this server ourselves. The publisher has proved control of what we score (Verified Publisher). It is connected through the M8ven GitHub App, so the listing is re-checked on every push.
Enables MCP clients to connect to and interact with Elasticsearch 7.x clusters through natural language, supporting search, indexing, mappings, templates, cluster health, and optional diagnostic or destructive tools.
Emerging. No concerning findings. Grades remain capped until the project builds reputation through adoption. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.
How we verified
Monitored 5 days · every push re-verified
Who stands behind it
groupagrica.com (@agrica) · Verified Publisher
Source: Glama
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
API_KEYES_API_KEY Elasticsearch API key for authentication (also supports legacy ) NoCA_CERTES_CA_CERT Path to custom CA certificate for Elasticsearch SSL/TLS (also supports legacy ) NoES_ADMIN_TOOLS## =true — diagnostics (read-only)ES_ALLOW_DESTRUCTIVE## =true — irreversibleES_API_KEYEvery example below sets ES_HOST and . Swap inES_CA_CERTPath to custom CA certificate for Elasticsearch SSL/TLS (also supports legacy CA_CERT) NoES_ECS_INDEX_PATTERNThey need , which has no default: the server refuses toES_ECS_TOOLS## =true — ECS log search (read-only)ES_HOSTEvery example below sets and ES_API_KEY. Swap inES_INSTANCE_LABELthe diagnostic tools, and set when more than one instance isES_MAX_RESULT_BYTESCeiling on one tool result. Default 32768. Past it, detail is omitted and the result says so. NoES_MAX_RETRIESRetries per request. Default 3; 0 disables them. NoES_OAUTH_AUDIENCEAudience to request. Auth0 needs it to issue a JWT; Keycloak and Azure AD use ES_OAUTH_SCOPE instead. NoES_OAUTH_AUTH_STYLEpost (default) sends the credentials in the form body; basic sends them in an HTTP Basic header. NoES_OAUTH_CLIENT_IDOAuth2 client id. Required once ES_OAUTH_TOKEN_URL is set. NoES_OAUTH_CLIENT_SECRETOAuth2 client secret. Required once ES_OAUTH_TOKEN_URL is set, unless the _FILE form is used. NoES_OAUTH_CLIENT_SECRET_FILEPath to a file holding the secret, for a mounted Docker secret. Read and trimmed at startup. NoES_OAUTH_SCOPEScope to request, if the provider needs one. NoES_OAUTH_TOKEN_URLOAuth2 token endpoint. Setting it turns on OAuth2, which then takes precedence over the API key and basic auth. Must be https:// (plain http:// is accepted only for localhost). NoES_PASSWORDES_USERNAME/ for basic auth or the ES_OAUTH_ variables forES_REQUEST_TIMEOUTPer-request timeout in milliseconds. Default 30000 — raise it if aggregations over many indices time out. NoES_USERNAME/ES_PASSWORD for basic auth or the ES_OAUTH_ variables forHOSTYesPASSWORDES_PASSWORD Elasticsearch password for basic authentication (also supports legacy ) No[](https://m8ven.ai/mcp/agrica-elasticsearch7-mcp-1yus5i)?variant=verified to the badge URL.Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.
https://m8ven.ai/api/mcp/tool-check