MCP Security Index

Is Amazon DynamoDB safe to install?

AWS Labs · Data · stdio (local process)

Design and operate Amazon DynamoDB tables with data modeling guidance.

Aminimal exposureSource
A
Grade
18/100
Blast radius
8
Tools
1
Capabilities

Capabilities

What Amazon DynamoDB declares it can do

A server's blast radius is the most powerful thing each of its tools can do. This grades the tools it declares, read-only, not whether it is secure.

  • Execute0
  • Delete0
  • Write0
  • Read8
  • mediumTool input schema asks for a credential

Tools

Every tool Amazon DynamoDB exposes

8 tools

Control

Govern Amazon DynamoDB with AxioRank

8 tools

Installed as-is, all 8 of Amazon DynamoDB's tools are callable by your agent without restriction, including any that write, delete, or execute.

Flip the switch to see the policy AxioRank would apply.

Advisories

Informational content flags

Keyword matches in tool descriptions and schemas. These are shown for transparency and are not part of the grade.

  • highShell/command injection×4
  • highCredential / secret access capability
  • highCode-execution capability
  • mediumPath traversal

Install

Add Amazon DynamoDB to your client

Drop this into your MCP client config (Claude Desktop, Cursor, and others).

mcp.json
{
  "mcpServers": {
    "aws-dynamodb": {
      "command": "uvx",
      "args": [
        "awslabs.dynamodb-mcp-server"
      ]
    }
  }
}

Embed

Show the grade in your README

Links back to this page and updates when the grade changes.AxioRank grade for Amazon DynamoDB
[![AxioRank MCP Security Index grade for Amazon DynamoDB](https://axiorank.com/api/badge/mcp/aws-dynamodb.svg)](https://axiorank.com/mcp-index/aws-dynamodb)

How it works

About this grade

The grade reflects the blast radius of what Amazon DynamoDB declares it can do, read-only, not whether it is secure or trustworthy, and not a judgment of the vendor. Maintain this server? Claim this listing or request a re-scan. See the methodology.

Email me this scorecard

Get the Amazon DynamoDB grade in your inbox.

Let your agents use Amazon DynamoDB safely

Route this server through AxioRank to allowlist its tools, hold risky calls for approval, and keep a signed audit trail of every action.

Start free