


















Pricing model
No additional cost beyond your cloud usage
The IONOS CLOUD MCP Server is free to use. You pay only for the IONOS CLOUD resources your account already uses and there is no separate licence or subscription fee for the MCP Server itself. Build a tailored estimate for your specific requirements and production workloads with our dynamic pricing calculator.
Use case
Use your AI client to systematically inspect your IONOS CLOUD environment and surface misconfigurations before they become incidents.
Use case
Give your finance and engineering teams a natural-language interface to IONOS CLOUD billing data without writing a single script.
Use case
Connect AI agents to live IONOS CLOUD account data so they can reason over real infrastructure state rather than static documentation.
No. This release is read-only by design — every tool is an inspection or query operation. Nothing in the server can create, update, or delete any IONOS CLOUD resource, making it safe to connect to live production accounts.
The split matters: API calls go from your machine directly to IONOS CLOUD over HTTPS - no third-party relay involved. Your prompts and tool outputs are sent to whichever AI model provider your client uses (e.g. Anthropic, Microsoft). For a path where inference also stays within EU infrastructure, pair the MCP Server with the IONOS CLOUD AI Model Hub.
Dedicated setup guides cover Claude Desktop, Claude Code, Cursor, VS Code (GitHub Copilot), Gemini CLI, JetBrains AI Assistant, Windsurf, Kiro, Continue, Cline, Zed, and OpenCode. Any other MCP-compliant client also works, including AI agent frameworks such as the OpenAI Agents SDK and LangGraph.
Yes. The full source code is published at github.com/ionos-cloud/ionoscloud-mcp under the Apache 2.0 licence. You can inspect exactly what the server does, contribute, or report issues directly via GitHub.
Yes. Create a token scoped to read-only access across Compute Engine, Cloud DNS, Billing, and Object Storage. Since the server is read-only, a compromised token can only expose data - it cannot modify or delete any resource.