Superset MCP Server
Local stdio MCP server for reviewing Apache Superset dashboards, retrieving chart data, executing SQL through SQL Lab, and creating or updating saved queries.
README
Superset MCP Server
Local stdio MCP server for reviewing Apache Superset dashboards, retrieving chart data, executing SQL through SQL Lab, and creating or updating saved queries.
The server only calls Superset's public REST API. It does not connect directly to an analytical database. No delete, dashboard mutation, chart mutation, dataset mutation, database-administration, screenshot, or generic arbitrary-request tools are exposed.
Superset's built-in MCP server
Superset 5.0+ also includes an official MCP service that an administrator can run alongside the Superset deployment:
superset mcp run --host 127.0.0.1 --port 5008
That service is the preferred option when your Superset version includes it and you have deployment access. It provides native RBAC enforcement, audit logging, chart/dashboard creation, SQL execution, and saved-query creation at an HTTP /mcp endpoint. See the official MCP deployment guide and available tools.
This repository remains useful when:
- the Superset administrator has not deployed the built-in MCP process;
- only the public REST URL and a normal Superset login are available;
- a local stdio MCP server is required; or
- saved-query inspection and update support are needed in addition to the built-in server's documented
save_sql_querycreation tool.
Do not deploy both integrations under the same MCP server name without intentionally choosing which one future projects should use.
Requirements
- Python 3.11 or newer (Python 3.13 is supported by this project)
- Network access from this machine to your Superset URL
- A dedicated Superset account with only the roles and database permissions the MCP server needs
execute_sql deliberately passes SQL through unchanged. Superset's database configuration and the underlying database user are therefore the security boundary for DML, DDL, CTAS, and other statements. Use a least-privilege account.
Windows setup
Run these commands from super_set_mcp in PowerShell:
python -m venv .venv
.\.venv\Scripts\Activate.ps1
python -m pip install --upgrade pip
python -m pip install -e ".[dev]"
Copy-Item .env.example .env
Edit .env with the real connection values. Do not commit .env.
SUPERSET_URL=https://superset.example.com
SUPERSET_USERNAME=mcp-service-user
SUPERSET_PASSWORD=replace-me
SUPERSET_PROVIDER=db
SUPERSET_VERIFY_SSL=true
The URL must be the Superset base URL without /api/v1. SUPERSET_PROVIDER can be changed to ldap when that is how the Superset login endpoint is configured.
Run and validate
Run the server over stdio:
.\.venv\Scripts\python.exe -m superset_mcp.server
The process waits silently for MCP protocol messages; that is normal for a stdio server. Before using any data or write tool, call superset_status. It checks login and current-user access and, by default, probes Superset's OpenAPI endpoint.
Run the mocked test suite without contacting Superset:
.\.venv\Scripts\python.exe -m pytest
MCP client configuration
Use an absolute path so future projects can launch the same server regardless of their working directory:
{
"mcpServers": {
"superset": {
"command": "C:\\path\\to\\super_set_mcp\\.venv\\Scripts\\python.exe",
"args": ["-m", "superset_mcp.server"],
"cwd": "C:\\path\\to\\super_set_mcp"
}
}
}
Keeping cwd set to this folder allows pydantic-settings to load its local .env. If a client supports an env map, secrets may instead be injected by the client or a secret manager; do not place real credentials in shared project configuration.
Tools
| Tool | Purpose |
|---|---|
superset_status |
Validate settings, JWT login, current user, and optional OpenAPI availability |
list_dashboards |
Search and paginate dashboards |
get_dashboard |
Read dashboard metadata by ID or slug |
get_dashboard_charts |
Read a dashboard's chart definitions and form data |
get_dashboard_datasets |
Read datasets used by a dashboard |
get_chart |
Read chart metadata |
get_chart_data |
Retrieve data for a saved chart query |
list_databases |
Find accessible database IDs for SQL Lab and saved queries |
execute_sql |
Execute SQL unchanged through SQL Lab |
get_query |
Inspect query history or asynchronous status |
get_sql_result |
Retrieve asynchronous results using resultsKey |
list_saved_queries |
Search and paginate saved queries |
get_saved_query |
Read one saved query |
create_saved_query |
Preview/create a saved query; requires confirm=true to write |
update_saved_query |
Preview/update while preserving unspecified fields; requires confirm=true to write |
There is no saved-query delete tool.
Recommended first-use sequence
- Configure the real URL and credentials locally.
- Call
superset_status. - Call
list_databases,list_dashboards, andlist_saved_queriesto validate read permissions. - Review a dashboard through
get_dashboard,get_dashboard_charts, andget_dashboard_datasets. - Retrieve chart data only when needed;
force=truebypasses Superset's cache and may increase database load. - Execute SQL only after verifying the selected database ID and role. Long-running deployments can use
run_async=true, thenget_query/get_sql_result. - Call create/update first with the default
confirm=false, inspect the preview, and call again withconfirm=trueonly when the payload is correct.
Troubleshooting
configured: false: one or more requiredSUPERSET_*settings are missing or the URL is invalid.- HTTP 401: check username, password, provider, and whether REST login is enabled.
- HTTP 403: the Superset role lacks access to the dashboard, chart, database, SQL Lab, or saved-query resource.
- TLS/transport error: keep
SUPERSET_VERIFY_SSL=trueand install/configure the organization's trusted CA. Disable verification only for a controlled temporary diagnostic. - OpenAPI unavailable: the deployment may not expose
/api/v1/_openapi; normal tools can still work. Superset's Swagger UI may also requireFAB_API_SWAGGER_UI = True. - Result expired (HTTP 410): rerun the asynchronous query because its result key is no longer retained by Superset.
- Response too large: increase
SUPERSET_MAX_RESPONSE_BYTEScautiously or reduce query/page limits.
Security behavior
- Passwords and JWTs remain in environment configuration and process memory; they are never returned by tools.
- On HTTP 401, the client tries the refresh token and then performs one fresh login if refresh fails.
- API error output includes method, public API path, status, and safe error fields, but excludes request headers and credentials.
- Page sizes, query limits, request timeouts, and response bytes are bounded by environment settings.
- Saved-query updates fetch the existing record and preserve fields not supplied by the caller.
- Optional update fields set to
nullare treated as omitted by the MCP tool. This version does not expose field-clearing semantics.
API references
推荐服务器
Baidu Map
百度地图核心API现已全面兼容MCP协议,是国内首家兼容MCP协议的地图服务商。
Playwright MCP Server
一个模型上下文协议服务器,它使大型语言模型能够通过结构化的可访问性快照与网页进行交互,而无需视觉模型或屏幕截图。
Magic Component Platform (MCP)
一个由人工智能驱动的工具,可以从自然语言描述生成现代化的用户界面组件,并与流行的集成开发环境(IDE)集成,从而简化用户界面开发流程。
Audiense Insights MCP Server
通过模型上下文协议启用与 Audiense Insights 账户的交互,从而促进营销洞察和受众数据的提取和分析,包括人口统计信息、行为和影响者互动。
VeyraX
一个单一的 MCP 工具,连接你所有喜爱的工具:Gmail、日历以及其他 40 多个工具。
graphlit-mcp-server
模型上下文协议 (MCP) 服务器实现了 MCP 客户端与 Graphlit 服务之间的集成。 除了网络爬取之外,还可以将任何内容(从 Slack 到 Gmail 再到播客订阅源)导入到 Graphlit 项目中,然后从 MCP 客户端检索相关内容。
Kagi MCP Server
一个 MCP 服务器,集成了 Kagi 搜索功能和 Claude AI,使 Claude 能够在回答需要最新信息的问题时执行实时网络搜索。
e2b-mcp-server
使用 MCP 通过 e2b 运行代码。
Neon MCP Server
用于与 Neon 管理 API 和数据库交互的 MCP 服务器
Exa MCP Server
模型上下文协议(MCP)服务器允许像 Claude 这样的 AI 助手使用 Exa AI 搜索 API 进行网络搜索。这种设置允许 AI 模型以安全和受控的方式获取实时的网络信息。