Fabric-Analytics-MCP (santhoshravindran7/Fabric-Analytics-MCP) is an MCP server listed on the M8ven Trust Index. It scores 29 out of 100, grade F. It declares 83 tools. No publisher has claimed this listing.
A Model Context Protocol (MCP) server that enables AI assistants to securely access and analyze Microsoft Fabric Analytics data through authenticated API calls.
Warning. Serious findings were identified. Review the full report before connecting. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.
How we verified
Verified is a snapshot. Live keeps it current, and builds your track record.
⚡ Connect GitHub → continuous verification on every pushwhy connect →Who stands behind it
santhoshravindran7
Source: Glama · also listed on github_topic
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access →
Install from
The grade above is for the source repository. Registries can serve a different version, so we mark the ones we were not able to read.
These names and descriptions are the publisher's own, read from the source code. We print them as written. Our assessment is the findings above, not this list.
fabric_list_capacitiesList all available Fabric capacities
fabric_assign_workspace_to_capacityAssign a workspace to a dedicated Fabric capacity
fabric_unassign_workspace_from_capacityUnassign a workspace from its capacity (move to shared capacity)
fabric_list_capacity_workspacesList all workspaces assigned to a specific capacity
fabric_list_synapse_workspacesList all Azure Synapse Analytics workspaces in your Azure subscription. Returns workspace names, IDs, locations, and resource groups to help you identify workspaces for migration.
fabric_discover_synapse_workspaceDiscover and inventory all assets from an Azure Synapse Analytics workspace including notebooks, pipelines, linked services, and Spark job definitions. Returns detailed inventory for migration planning.
fabric_transform_notebooksTransform Synapse notebooks to Fabric-compatible format. Converts mssparkutils → notebookutils, rewrites paths, and removes Synapse-specific configurations. Can run in dry-run mode to preview changes without applying them.
fabric_migrate_synapse_to_fabricExecute complete end-to-end migration from Azure Synapse Analytics to Microsoft Fabric. Discovers assets, transforms notebooks (mssparkutils → notebookutils), provisions to Fabric workspace, creates lakehouse if specified, and generates comprehensive migration report. Supports dry-run mode for safe …
fabric_create_lakehouseCreate a new lakehouse in a Microsoft Fabric workspace. Lakehouses provide unified storage for both structured and unstructured data with Delta Lake support.
fabric_provision_notebooksProvision transformed notebooks to a Microsoft Fabric workspace. Takes transformed notebook JSON from the transform tool and creates them in the target workspace.
fabric_assign_capacityAssign a Fabric capacity to a workspace. Auto-selects the largest available capacity if not specified.
fabric_get_synapse_spark_poolsGet Synapse Spark pool configurations for migration planning. Returns node sizes, counts, autoscale settings, and Spark versions.
fabric_create_fabric_spark_poolsGenerate Fabric Spark pool recommendations from Synapse pools using 2:1 VCore conversion (1 Synapse VCore = 2 Fabric VCores).
fabric_synapse_workspace_detailsGet comprehensive details of a Synapse workspace including resource information.
fabric_synapse_compute_spendGet compute spend data for a Synapse workspace to help with capacity sizing decisions.
fabric_migrate_spark_pools_to_fabricMigrate Synapse Spark pools to equivalent Fabric configurations.
fabric_recommend_fabric_capacityRecommend optimal Fabric capacity SKU based on Synapse compute usage patterns.
list-fabric-itemsList items in a Microsoft Fabric workspace
create-fabric-itemCreate a new item in Microsoft Fabric workspace
update-fabric-itemUpdate an existing item in Microsoft Fabric workspace
delete-fabric-itemDelete an item from Microsoft Fabric workspace
get-fabric-itemGet detailed information about a specific Microsoft Fabric item
execute-fabric-notebookExecute a notebook in Microsoft Fabric workspace
submit-spark-jobSubmit a Spark job to run on a Lakehouse
get-job-statusGet the status of a running job
create-fabric-notebookCreate a new notebook in Microsoft Fabric workspace using the official API
get-workspace-spark-applicationsGet all Spark applications in a workspace for monitoring
get-notebook-spark-applicationsGet all Spark applications/sessions for a specific notebook
get-spark-job-definition-applicationsGet all Spark applications/sessions for a specific Spark job definition
get-lakehouse-spark-applicationsGet all Spark applications/sessions for a specific lakehouse
get-spark-application-detailsGet detailed information about a specific Spark application
cancel-spark-applicationCancel a running Spark application
get-notebook-spark-application-detailsGet detailed information about a specific Spark application from a notebook session
get-notebook-spark-application-jobsGet jobs for a specific Spark application from a notebook session
get-spark-monitoring-dashboardGet comprehensive Spark monitoring dashboard for workspace
get-livy-statement-enhancedGet Livy statement status with enhanced performance analysis and recommendations
analyze-livy-session-logsAnalyze Livy session logs with LLM-powered performance insights and recommendations
analyze-livy-statement-performanceAnalyze Livy statement execution with detailed performance metrics and LLM-powered optimization recommendations
analyze-livy-execution-historyAnalyze historical Livy execution patterns with trend analysis and performance insights
list-fabric-notebooksList all notebooks in a Microsoft Fabric workspace
get-fabric-notebookGet details of a specific notebook in Microsoft Fabric workspace
update-fabric-notebookUpdate an existing notebook in Microsoft Fabric workspace
delete-fabric-notebookDelete a notebook from Microsoft Fabric workspace
get-fabric-notebook-definitionGet the definition/content of a notebook in Microsoft Fabric workspace
run-fabric-notebookExecute/run a notebook in Microsoft Fabric workspace
create-spark-job-instanceCreate a Spark job instance from a Spark Job Definition
execute-spark-job-definitionExecute a Spark Job Definition with execution data
get-spark-job-instance-statusGet the status of a Spark job instance
create-livy-sessionCreate a new Livy session for interactive Spark execution
get-livy-sessionGet the status of a Livy session
list-livy-sessionsList all Livy sessions for a lakehouse
delete-livy-sessionDelete a Livy session
execute-livy-statementExecute a statement in a Livy session
get-livy-statementGet the result of a statement execution
create-livy-batchCreate a Livy batch job
get-livy-batchGet the status of a Livy batch job
check-fabric-auth-statusCheck current authentication status and configuration
fabric_list_workspacesList all workspaces accessible to the user
fabric_find_workspaceFind workspace by name and get its ID for use in other operations
fabric_create_workspaceCreate a new workspace
create-fabric-dataflowCreate a new Dataflow Gen2 in Microsoft Fabric workspace
list-fabric-dataflowsList all Dataflow Gen2 in Microsoft Fabric workspace
get-fabric-dataflowGet details of a specific Dataflow Gen2
update-fabric-dataflowUpdate Dataflow Gen2 name or description
delete-fabric-dataflowDelete a Dataflow Gen2 from workspace
monitor-dataflow-statusGet comprehensive dataflow status with health monitoring and performance metrics
perform-dataflow-health-checkPerform comprehensive health check with scoring, analysis, and recommendations
monitor-workspace-dataflowsGet monitoring overview of all dataflows in workspace with health scoring
generate-dataflow-monitoring-reportGenerate comprehensive monitoring report with insights and recommendations
start-continuous-dataflow-monitoringStart continuous monitoring session with real-time health checks and alerts
list-monitoring-sessionsList all active monitoring sessions
get-monitoring-session-statusGet detailed status of a specific monitoring session
stop-monitoring-sessionStop a specific monitoring session
list-fabric-item-runsList all runs for a specific Fabric item with analysis
get-fabric-item-runGet detailed information about a specific Fabric item run
list-fabric-run-subactivitiesList subactivities for a specific Fabric item run with analysis
monitor-fabric-runs-dashboardGet comprehensive monitoring dashboard for recent runs across workspace
analyze-fabric-run-performancePerform detailed performance analysis on a specific run
query-fabric-datasetExecute a query against a Microsoft Fabric dataset
get-fabric-metricsRetrieve analytics metrics for Microsoft Fabric items
analyze-fabric-modelAnalyze a Microsoft Fabric data model and get optimization recommendations
generate-fabric-reportGenerate a comprehensive analytics report for Microsoft Fabric workspace
test-functionTest function to verify registration
Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.
@modelcontextprotocol/sdk has cross-client data leak via shared server/transport instance reuse
Anthropic's MCP TypeScript SDK has a ReDoS vulnerability
Model Context Protocol (MCP) TypeScript SDK does not enable DNS rebinding protection by default
@babel/core: Arbitrary File Read via sourceMappingURL Comment
ENABLE_HEALTH_SERVERFABRIC_AUTH_METHODexport =bearer_token # or service_principal, interactiveFABRIC_CLIENT_IDdocker run -p 3000:3000 -e =xxx fabric-analytics-mcpFABRIC_CLIENT_SECRETexport ACR_NAME="your-registry" FABRIC_CLIENT_ID="xxx" ="yyy" FABRIC_TENANT_ID="zzz"FABRIC_DEFAULT_WORKSPACE_IDexport =your-workspace-idFABRIC_TENANT_IDexport ACR_NAME="your-registry" FABRIC_CLIENT_ID="xxx" FABRIC_CLIENT_SECRET="yyy" ="zzz"FABRIC_TOKENPORTTool annotations
No tools have read-only/destructive annotations
Add readOnlyHint or destructiveHint annotations to every tool so hosts can warn users before invoking.
All four hints declared on every tool
83/83 tools missing one or more hints — fabric_list_capacities (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); fabric_assign_workspace_to_capacity (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); fabric_unassign_workspace_from_capacity (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint), +80 more. OpenAI's directory rejects tools where any of the four hints are missing or non-boolean.
For every tool, set all four hints (readOnlyHint, destructiveHint, idempotentHint, openWorldHint) to explicit true/false values that match the handler’s actual behaviour.
Descriptions match behaviour
26 tools describe read intent but their handlers mutate — fabric_list_capacities (line 1207: execSync(command, {); fabric_list_capacity_workspaces (line 1207: execSync(command, {); list-fabric-items (line 1207: execSync(command, {)
Rename the tool, rewrite the description, or move the side-effect into a separate clearly-named tool.
Tool inputs are validated
Only 2/83 tool handlers declare input schemas (2%)
Declare an inputSchema with zod/joi/yup on every tool definition.
Tests exist
No test files found
Add tests that exercise each declared tool.
Shell command execution
23 calls in production code run through a shell (build/index.js:922, src/index.ts:1207, python-wrapper/fabric_analytics_mcp/server/build/index.js:922)
Prefer library functions over shell-outs. If you must shell out, ensure all inputs are properly escaped.
Secrets not logged
40 secret values sent to error
Redact or omit secret values from log output.
Production dependencies are patched
0 critical, 3 high severity in production deps — @modelcontextprotocol/sdk@1.13.0 (high), @modelcontextprotocol/sdk@1.13.0 (high)
Run npm audit fix, or upgrade the affected packages to a non-vulnerable version.
Dependency freshness
2/6 production deps stale: child_process@2022-06-13 (4.2y), node-fetch@2023-11-30 (2.8y)
Tool description accuracy
26 tools have description/behavior mismatches: fabric_list_capacities: description implies read-only but handler writes/deletes/executes; fabric_list_capacity_workspaces: description implies read-only but handler writes/deletes/executes; list-fabric-items: description implies read-only but handler writes/deletes/executes
Update tool descriptions to accurately reflect all capabilities — especially write, delete, or execute operations.
Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.
[](https://m8ven.ai/mcp/santhoshravindran7/fabric-analytics-mcp)?variant=verified from the URL.Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.
https://m8ven.ai/api/mcp/tool-check