MCP Security Index

Is Pulumi safe to install?

Pulumi · Cloud · Streamable HTTP

Query the Pulumi Registry and manage infrastructure-as-code stacks and deployments.

unrated exposureSource
unrated
Grade
Blast radius
Tools
Capabilities

Scan

AxioRank has not graded Pulumi yet

AxioRank could not enumerate Pulumi's surface (live handshake failed (HTTP 401 Unauthorized from https://mcp.ai.pulumi.com/mcp); no usable well-known card (HTTP 404 fetching https://mcp.ai.pulumi.com/.well-known/mcp.json)). Many remote servers gate even a read-only handshake behind OAuth. This listing stays factual and updates when a scan succeeds.

View the source

Install

Add Pulumi to your client

Drop this into your MCP client config (Claude Desktop, Cursor, and others).

mcp.json
{
  "mcpServers": {
    "pulumi": {
      "url": "https://mcp.ai.pulumi.com/mcp"
    }
  }
}

Embed

Show the grade in your README

Links back to this page and updates when the grade changes.AxioRank grade for Pulumi
[![AxioRank MCP Security Index grade for Pulumi](https://axiorank.com/api/badge/mcp/pulumi.svg)](https://axiorank.com/mcp-index/pulumi)

How it works

About this grade

The grade reflects the blast radius of what Pulumi declares it can do, read-only, not whether it is secure or trustworthy, and not a judgment of the vendor. Maintain this server? Claim this listing or request a re-scan. See the methodology.

Email me this scorecard

Get the Pulumi grade in your inbox.

Let your agents use Pulumi safely

Route this server through AxioRank to allowlist its tools, hold risky calls for approval, and keep a signed audit trail of every action.

Start free