Microsoft SQL Server
Query a Microsoft SQL Server database directly: list tables, describe columns and run read-only T-SQL. Supports SQL Server and Windows (NTLM) authentication. Installs read-only.
7 дней бесплатно · без карты · EU-хостинг
Спроси Microsoft что угодно
Попробуй реальный промпт против Microsoft SQL Server via AnythingMCP — Claude вызывает tools, возвращает ответ. Нажми Enter на своём сообщении, чтобы установить в Cloud.
Установить Microsoft в CloudClaude — это AI, он может ошибаться. Проверяйте ответы.
Настройка за 2 минуты
- 1Запусти free trial на cloud.anythingmcp.com.
- 2Нажми Microsoft SQL Server в коннектор-сторе. Вставь учётные данные.
- 3Выпусти MCP API ключ и направьте AI-клиент на MCP URL.
Гиды по Microsoft
Пошаговая настройка для основных AI-клиентов.
Настройка Microsoft SQL Server
Прямо из определения коннектора: где взять учётные данные, какие права им нужны и с каким API работает этот адаптер. Предоставлено автором коннектора на английском языке.
Setup
- Create a login and a database user with only
db_datareader:CREATE LOGIN amcp_reader WITH PASSWORD = 'change-me'; USE sales; CREATE USER amcp_reader FOR LOGIN amcp_reader; ALTER ROLE db_datareader ADD MEMBER amcp_reader; - Set
MSSQL_HOST,MSSQL_PORT(1433),MSSQL_DATABASE,MSSQL_USERandMSSQL_PASSWORD.
Windows authentication: set MSSQL_DOMAIN as well and the engine switches to NTLM instead of SQL Server auth. Leave it blank for a SQL login.
Named instances: a host of the SERVER\\INSTANCE form does not fit a URL. Give the instance's TCP port in MSSQL_PORT and the plain hostname in MSSQL_HOST — the SQL Browser resolves the name to that port anyway, and naming the port directly removes a moving part.
The default schema is dbo, so an unqualified name resolves there. Qualify (sales.orders) when the database uses more than one schema.
How a database connector behaves
- It installs read-only. The engine rejects anything that is not a read until you flip the switch in the connector's settings. That is a guard rail, not a security boundary: give the connection a database role that is itself read-only, and the guard rail never has to matter.
- Credentials live in the encrypted
authConfig, not in the connection string.MSSQL_USERandMSSQL_PASSWORDare stored encrypted and spliced into the DSN at call time; the host and database name are stored in the plaintextbaseUrlcolumn. - Results are capped at 1000 rows. A query that would return more comes back truncated with a flag. Aggregate in SQL rather than in the agent.
- A statement runs exactly as written. There is no query rewriting and no automatic LIMIT — an unbounded scan on a large table is a real unbounded scan on your production database. Say LIMIT.
Reachable from where?
- On AnythingMCP Cloud the server must accept connections from the public internet, which for a production database usually means it should not. Point the connector at a read replica, or self-host AnythingMCP inside the network.
- Self-hosted, add the host to
SSRF_ALLOWED_HOSTS: the outbound guard blocks private address space by default, and10.0.0.5is exactly the shape it is there to block.
Твой AI в двух кликах от Microsoft SQL Server.
Установи коннектор, вставь учётные данные, спроси AI. 7 дней бесплатно, без карты.