The Cloudsmith MCP server is an implementation of the Model Context Protocol that connects your AI agent and assistants like Claude, Cursor, etc directly to your Cloudsmith account. It provides structured and secure access to your organizations, repositories, packages, vulnerabilities, audit history, quotas, and rate limits, so your agent can discover organizations, inspect repositories, search packages, review security findings, and monitor account activity on your behalf.
- Organization and account discovery: Have your agent confirm the connected Cloudsmith user and list the organizations available to that account.
- Repository search and inspection: Let the agent find repositories within an organization and review their configuration, visibility, usage, and supported capabilities.
- Package search and analysis: Direct your agent to search packages by name, version, format, architecture, distribution, filename, or status, then inspect package metadata, checksums, licensing, and security state.
- Vulnerability review: Instruct your agent to list package vulnerability scan summaries for a repository so your team can identify security concerns.
- Usage and activity monitoring: Have your agent check storage and bandwidth quotas, review current request limits, and search audit events by action, actor, or time.