com.googleapis.datastream/mcp
REMOTE · DATASTREAM.GOOGLEAPIS.COM · SCANNED AUG 3
Interact with your Google Cloud Datastream resources using natural language commands.
Available components
How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score →
Endpoint Security46
- The endpoint's TLS certificate is valid, in date, and uses a strong key. View diagnostics → Pass
- Authorisation check failed: no authorisation is required to call this server, and it exposes a tool marked destructive (delete_stream). See how to fix → View diagnostics → Fail
- HTTPS not yet verified: we couldn't determine whether a plaintext access path exists. View diagnostics → Unverified
- HSTS check failed: the Strict-Transport-Security header is absent. See how to fix → View diagnostics → Fail
- DNSSEC check failed: this domain isn't protected by DNSSEC. See how to fix → View diagnostics → Fail
Transport & Reachability100
- Verified streamable-http transport via a live MCP handshake. View diagnostics → Pass
Schema Quality & AI Usability61
- AI-judged instruction clarity (excellent).Pass
- Context-footprint check failed: tool/resource definitions use about 2517 tokens (~251/item across 10 items; 10 tools + 0 resources), over budget; trim descriptions and params. See how to fix → Fail
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management27
- Stability observed for 8 of 30 days with no destabilising changes; credit accrues until the full window elapses.Partial
Tool Coverage100
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 100% of tool parameters carry a description.Pass
- Structured output schemas are declared (100% of tools); any adoption earns full credit.Pass
Capabilities100
- Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
Add this component to your MCP client. Where a client-specific snippet is available, pick your client below and copy it straight into your config; otherwise use the connection detail shown.
remote · datastream.googleapis.com
claude mcp add --transport http com-googleapis-datastream-mcp https://datastream.googleapis.com/mcp
[mcp_servers.com-googleapis-datastream-mcp] url = "https://datastream.googleapis.com/mcp"
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"com-googleapis-datastream-mcp": {
"type": "remote",
"url": "https://datastream.googleapis.com/mcp",
"enabled": true
}
}
} openclaw mcp add com-googleapis-datastream-mcp --url https://datastream.googleapis.com/mcp --transport streamable-http
mcp_servers:
com-googleapis-datastream-mcp:
url: "https://datastream.googleapis.com/mcp" {
"mcpServers": {
"com-googleapis-datastream-mcp": {
"type": "http",
"url": "https://datastream.googleapis.com/mcp"
}
}
} The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.
Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 3 Aug 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 23 to 27. That category is still filling its 30-day observation window: 7 days of observed history at the previous scan, 8 at this one. The score rises as the window fills, whether or not the server changes.
- 1 Aug 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 17 to 20. That category is still filling its 30-day observation window: 5 days of observed history at the previous scan, 6 at this one. The score rises as the window fills, whether or not the server changes.
- 31 Jul 26 −1
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- 29 Jul 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 7 to 10. That category is still filling its 30-day observation window: 2 days of observed history at the previous scan, 3 at this one. The score rises as the window fills, whether or not the server changes.
- 28 Jul 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 3 to 7. That category is still filling its 30-day observation window: 1 days of observed history at the previous scan, 2 at this one. The score rises as the window fills, whether or not the server changes.
- 27 Jul 26 0
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- 26 Jul 26 57
First indexed and scored.
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 3 Aug 2026 · Probed https://datastream.googleapis.com/mcp
TLS valid
Negotiated TLS 1.3 with TLS_AES_256_GCM_SHA384 .
| Subject | Issuer | Valid from | Valid until | Key | Signature | Serial |
|---|---|---|---|---|---|---|
| CN=upload.video.google.com | CN=WR2,O=Google Trust Services,C=US | 29 Jun 2026 | 21 Sept 2026 | ECDSA 256 | SHA256-RSA | 4ebe71b8b548f0e910486393b0d74ba7 |
| SANs: upload.video.google.com, *.clients.google.com, *.docs.google.com, *.drive.google.com, *.gdata.youtube.com, *.googleapis.com, *.photos.google.com, *.youtube-3rd-party.com, upload.google.com, *.upload.google.com, upload.youtube.com, *.upload.youtube.com and 5 more | ||||||
| CN=WR2,O=Google Trust Services,C=US (CA) | CN=GTS Root R1,O=Google Trust Services LLC,C=US | 13 Dec 2023 | 20 Feb 2029 | RSA 2048 | SHA256-RSA | 7ff005a07c4cded100ad9d66a5107b98 |
| CN=GTS Root R1,O=Google Trust Services LLC,C=US (CA) | CN=GlobalSign Root CA,OU=Root CA,O=GlobalSign nv-sa,C=BE | 19 Jun 2020 | 28 Jan 2028 | RSA 4096 | SHA256-RSA | 77bd0d6cdb36f91aea210fc4f058d30d |
DNSSEC insecure
Validation of datastream.googleapis.com. — Not signed
| Zone | DS | Keys | Algorithms | Outcome |
|---|---|---|---|---|
| . | trust_anchor | 20326, 38696 | 8, 8 | Verified |
| com. | present | 19718 | 13 | Verified |
| googleapis.com. | absent | Unsigned (proven) parent-signed NSEC/NSEC3 proves an unsigned delegation |
Authentication No authorisation required
The endpoint answered without asking for a token. Anyone who knows the URL can reach it.
| Result | No authorisation required |
|---|---|
| HTTP status | 200 |
| Header | Value |
|---|---|
| x-content-type-options | nosniff |
| x-frame-options | SAMEORIGIN |
Transports 2 probes
| Transport | URL | Outcome | Status | Location |
|---|---|---|---|---|
| streamable-http | https://datastream.googleapis.com/mcp | Verified | 200 | |
| http (plaintext) | http://datastream.googleapis.com/mcp | Inconclusive | 405 |
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability.
delete_stream ~296
Deletes a stream, specified by the provided resource 'name' parameter. * The resource 'name' parameter is in the form: 'projects/{project name}/locations/{location}/streams/{stream name}', for example: 'projects/my-project/locations/us-central1/streams/my-streams'. * This tool returns a long-running operation. Use the 'get_operation' tool with the returned operation name to poll its status until it completes. Operation may take several minutes; do not check more often than every ten seconds.
| Name | Type | Req | Description |
|---|---|---|---|
| name | string | yes | Required. The name of the stream resource to delete. |
| requestId | string | — | Optional. A request ID to identify requests. Specify a unique request ID so that if you must retry your request, the server will know to ignore the request if it has already been completed. The serve… |
| Name | Type | Req | Description |
|---|---|---|---|
| done | boolean | — | If the value is `false`, it means the operation is still in progress. If `true`, the operation is completed, and either `error` or `response` is available. |
| error | — | — | The error result of the operation in case of failure or cancellation. |
| metadata | object | — | Service-specific metadata associated with the operation. It typically contains progress information and common metadata such as create time. Some services might not provide such metadata. Any method… |
| name | string | — | The server-assigned name, which is only unique within the same service that originally returns it. If you use the default HTTP mapping, the `name` should be a resource name ending with `operations/{u… |
| response | object | — | The normal, successful response of the operation. If the original method returns no data on success, such as `Delete`, the response is `google.protobuf.Empty`. If the original method is standard `Get… |
No examples provided.
get_operation ~233
Gets the status of a long-running operation. ***Usage*** Some tools (for example, `run_stream`) return a long-running operation. You can use this tool to get the status of the operation. It can be called repeatedly until the operation is complete. **Parameters** * `name`: The name of the operation to get. * `name` should be the name returned by the tool that initiated the operation. * `name` should be in the format of: `projects/{project}/locations/{location}/operations/{operation}`. **Returns** * An `Operation` object that contains the status of the operation. * If the operation is not complete, the response will be empty. Do not check more than every ten seconds. * If the operation is complete, the response will contain either: * A `response` field that contains the result of the operation and indicates that it was successful. * A `error` field that indicates any errors that occurred during the operation.
| Name | Type | Req | Description |
|---|---|---|---|
| name | string | — | The name of the operation resource. |
| Name | Type | Req | Description |
|---|---|---|---|
| done | boolean | — | If the value is `false`, it means the operation is still in progress. If `true`, the operation is completed, and either `error` or `response` is available. |
| error | — | — | The error result of the operation in case of failure or cancellation. |
| metadata | object | — | Service-specific metadata associated with the operation. It typically contains progress information and common metadata such as create time. Some services might not provide such metadata. Any method… |
| name | string | — | The server-assigned name, which is only unique within the same service that originally returns it. If you use the default HTTP mapping, the `name` should be a resource name ending with `operations/{u… |
| response | object | — | The normal, successful response of the operation. If the original method returns no data on success, such as `Delete`, the response is `google.protobuf.Empty`. If the original method is standard `Get… |
No examples provided.
get_stream ~87
Get details of the stream specified by the provided resource 'name' parameter. * The resource 'name' parameter is in the form: 'projects/{project name}/locations/{location}/streams/{stream name}', for example: 'projects/my-project/locations/us-central1/streams/my-streams'.
| Name | Type | Req | Description |
|---|---|---|---|
| name | string | yes | Required. The name of the stream resource to get. |
| Name | Type | Req | Description |
|---|---|---|---|
| backfillAll | — | — | Automatically backfill objects included in the stream source configuration. Specific objects can be excluded. |
| backfillNone | — | — | Do not automatically backfill any objects. |
| createTime | string | — | Output only. The creation time of the stream. |
| customerManagedEncryptionKey | string | — | Immutable. A reference to a KMS encryption key. If provided, it will be used to encrypt the data. If left blank, data will be encrypted using an internal Stream-specific encryption key provisioned th… |
| destinationConfig | — | — | Required. Destination connection profile configuration. |
| displayName | string | — | Required. Display name. |
| errors | array | — | Output only. Errors on the Stream. |
| labels | object | — | Labels. |
| lastRecoveryTime | string | — | Output only. If the stream was recovered, the time of the last recovery. Note: This field is currently experimental. |
| name | string | — | Output only. Identifier. The stream's name. |
| ruleSets | array | — | Optional. Rule sets to apply to the stream. |
| satisfiesPzi | boolean | — | Output only. Reserved for future use. |
| satisfiesPzs | boolean | — | Output only. Reserved for future use. |
| sourceConfig | — | — | Required. Source connection profile configuration. |
| state | string | — | The state of the stream. |
| updateTime | string | — | Output only. The last update time of the stream. |
No examples provided.
get_stream_object ~100
Get details of the stream object specified by the provided resource 'name' parameter. * The resource 'name' parameter is in the form: 'projects/{project name}/locations/{location}/streams/{stream name}/objects/{stream object name}', for example: 'projects/my-project/locations/us-central1/streams/my-stream/objects/my-stream-object'.
| Name | Type | Req | Description |
|---|---|---|---|
| name | string | yes | Required. The name of the stream object resource to get. |
| Name | Type | Req | Description |
|---|---|---|---|
| backfillJob | — | — | The latest backfill job that was initiated for the stream object. |
| createTime | string | — | Output only. The creation time of the object. |
| customizationRules | array | — | Output only. The customization rules for the object. These rules are derived from the parent Stream's `rule_sets` and represent the intended configuration for the object. |
| displayName | string | — | Required. Display name. |
| errors | array | — | Output only. Active errors on the object. |
| name | string | — | Output only. Identifier. The object resource's name. |
| sourceObject | — | — | The object identifier in the data source. |
| updateTime | string | — | Output only. The last update time of the object. |
No examples provided.
list_connection_profiles ~503
Lists connection profiles in a given project and location. For example: { parent: "projects/my-project/locations/us-central1" create_time_after: 2025-10-02T10:15:33Z create_time_before: 2025-10-03T00:00:00Z display_name: bookstore page_size: 100 } will return up to 100 connection profiles in `projects/my-project/locations/us-central1` that were created on or after 2025-10-02T10:15:33 UTC and before 2025-10-03T00:00:00 UTC, and have "bookstore" in their display name.
| Name | Type | Req | Description |
|---|---|---|---|
| createTimeAfter | string | — | Optional. Use to get connection profiles that were created on or after the provided date/time, formatted as RFC-3339. Common Examples: 2023-09-24T15:30:00Z or 2023-09-24T15:30:00.000+09:00. |
| createTimeBefore | string | — | Optional. Use to get connection profiles that were created before the provided date/time, formatted as RFC-3339. Common Examples: 2023-09-24T15:30:00Z or 2023-09-24T15:30:00.000+09:00. |
| displayName | string | — | Optional. Use to get connection profiles whose display name contains the provided name. |
| pageSize | integer | — | Optional. Use to limit the number of connection profiles returned. Valid values are between 1 and 1000 inclusive. Defaults to 1000 if not provided or outside of the valid range. Note that due to filt… |
| pageToken | string | — | Optional. A page token, received from a previous `list_connection_profiles` call. Provide this to retrieve the subsequent page. When paginating, all other parameters provided to `list_connection_prof… |
| parent | string | yes | Required. The parent that owns the collection of connection profiles. Must be in the format `projects/*/locations/*`. For example: 'projects/my-project/locations/us-central1' |
| Name | Type | Req | Description |
|---|---|---|---|
| connectionProfiles | array | — | List of connection profiles. |
| nextPageToken | string | — | A token, which can be sent as `page_token` to retrieve the next page. If this field is omitted, there are no subsequent pages. |
| unreachable | array | — | Locations that could not be reached. |
No examples provided.
list_static_ips ~127
Lists static IP addresses of the provided resource name that need to be allowlisted by the customer when using the static-IP connectivity method. Returns up to 100 IP addresses. * The resource 'name' parameter is in the form 'projects/{project name}/locations/{location}', for example: 'projects/my-project/locations/us-central1'.
| Name | Type | Req | Description |
|---|---|---|---|
| name | string | yes | Required. The resource name for the location for which static IPs should be returned. Must be in the format `projects/*/locations/*`. For example: 'projects/my-project/locations/us-central1' |
| Name | Type | Req | Description |
|---|---|---|---|
| nextPageToken | string | — | A token that can be sent as `page_token` to retrieve the next page. If this field is omitted, there are no subsequent pages. |
| staticIps | array | — | list of static ips by account |
No examples provided.
list_stream_objects ~206
Lists stream objects in a given stream. * Parent parameter is in the form 'projects/{project name}/locations/{location}/streams/{stream name}', for example: 'projects/my-project/locations/us-central1/streams/my-stream'. * Not all the details of the stream objects are returned. * To get the full details of a specific stream object, use the 'get_stream_object' tool.
| Name | Type | Req | Description |
|---|---|---|---|
| pageSize | integer | — | Optional. Maximum number of objects to return. Default is 50. The maximum value is 1000; values above 1000 will be coerced to 1000. |
| pageToken | string | — | Optional. Page token received from a previous `ListStreamObjectsRequest` call. Provide this to retrieve the subsequent page. When paginating, all other parameters provided to `ListStreamObjectsReques… |
| parent | string | yes | Required. The parent stream that owns the collection of objects. |
| Name | Type | Req | Description |
|---|---|---|---|
| nextPageToken | string | — | A token, which can be sent as `page_token` to retrieve the next page. |
| streamObjects | array | — | List of stream objects. |
No examples provided.
list_streams ~548
Lists streams in a given project and location. For example: { parent: "projects/my-project/locations/us-central1" create_time_after: 2025-10-02T10:15:33Z create_time_before: 2025-10-03T00:00:00Z display_name: bookstore page_size: 100 running: true } will return up to 100 running streams in `projects/my-project/locations/us-central1` that were created on or after 2025-10-02T10:15:33 UTC and before 2025-10-03T00:00:00 UTC, and have "bookstore" in their display name.
| Name | Type | Req | Description |
|---|---|---|---|
| createTimeAfter | string | — | Optional. Use to get streams that were created on or after the provided date/time, formatted as RFC-3339. Common Examples: 2023-09-24T15:30:00Z or 2023-09-24T15:30:00.000+09:00. |
| createTimeBefore | string | — | Optional. Use to get streams that were created before the provided date/time, formatted as RFC-3339. Common Examples: 2023-09-24T15:30:00Z or 2023-09-24T15:30:00.000+09:00. |
| displayName | string | — | Optional. Use to get streams whose display name contains the provided name. |
| failed | boolean | — | Optional. Use to get streams that are currently in state FAILED or FAILED_PERMANENTLY. |
| pageSize | integer | — | Optional. Use to limit the number of streams returned. Valid values are between 1 and 1000 inclusive. Defaults to 1000 if not provided or outside of the valid range. Note that due to filtering, it is… |
| pageToken | string | — | Optional. A page token, received from a previous `list_streams` call. Provide this to retrieve the subsequent page. When paginating, all other parameters provided to `list_streams` must match the cal… |
| parent | string | yes | Required. The parent that owns the collection of streams. Must be in the format `projects/*/locations/*`. For example: 'projects/my-project/locations/us-central1' |
| running | boolean | — | Optional. Use to get streams that are currently in state RUNNING. |
| Name | Type | Req | Description |
|---|---|---|---|
| nextPageToken | string | — | A token, which can be sent as `page_token` to retrieve the next page. If this field is omitted, there are no subsequent pages. |
| streams | array | — | List of streams |
| unreachable | array | — | Locations that could not be reached. |
No examples provided.
lookup_stream_object ~176
Lookup a stream object by its source object identifier. **Parameters:** * The 'parent' parameter is the name of the stream in the form: 'projects/{project name}/locations/{location}/streams/{stream name}', for example: 'projects/my-project/locations/us-central1/streams/my-stream'. * The 'source_object_identifier' parameter is the source database object identifier. Different source databases have different identifier formats. Examples: * Oracle, PostgreSQL, SQL Server and Spanner databases the identifier is 'schema' and 'table'. * MySQL databases the identifier is 'database' and 'table'.
| Name | Type | Req | Description |
|---|---|---|---|
| parent | string | yes | Required. The parent stream that owns the collection of objects. |
| sourceObjectIdentifier | — | yes | Required. The source object identifier which maps to the stream object. |
| Name | Type | Req | Description |
|---|---|---|---|
| backfillJob | — | — | The latest backfill job that was initiated for the stream object. |
| createTime | string | — | Output only. The creation time of the object. |
| customizationRules | array | — | Output only. The customization rules for the object. These rules are derived from the parent Stream's `rule_sets` and represent the intended configuration for the object. |
| displayName | string | — | Required. Display name. |
| errors | array | — | Output only. Active errors on the object. |
| name | string | — | Output only. Identifier. The object resource's name. |
| sourceObject | — | — | The object identifier in the data source. |
| updateTime | string | — | Output only. The last update time of the object. |
No examples provided.
run_stream ~241
Starts an already created stream, specified by the provided resource 'name' parameter. **Parameters** * 'name': The resource name of the stream to start. * 'name' should be in the format of: 'projects/{project name}/locations/{location}/streams/{stream name}', for example: 'projects/my-project/locations/us-central1/streams/my-streams'. * 'force': Whether to run the stream without running prior configuration verification. The default is 'false'. **Returns** * This tool returns a long-running operation. Use the 'get_operation' tool with the returned operation name to poll its status until it completes. Operation may take several minutes; do not check more often than every ten seconds.
| Name | Type | Req | Description |
|---|---|---|---|
| cdcStrategy | — | — | Optional. The CDC strategy of the stream. If not set, the system's default value will be used. |
| force | boolean | — | Optional. Update the stream without validating it. |
| name | string | yes | Required. Name of the stream resource to start, in the format: projects/{project_id}/locations/{location}/streams/{stream_name} |
| Name | Type | Req | Description |
|---|---|---|---|
| done | boolean | — | If the value is `false`, it means the operation is still in progress. If `true`, the operation is completed, and either `error` or `response` is available. |
| error | — | — | The error result of the operation in case of failure or cancellation. |
| metadata | object | — | Service-specific metadata associated with the operation. It typically contains progress information and common metadata such as create time. Some services might not provide such metadata. Any method… |
| name | string | — | The server-assigned name, which is only unique within the same service that originally returns it. If you use the default HTTP mapping, the `name` should be a resource name ending with `operations/{u… |
| response | object | — | The normal, successful response of the operation. If the original method returns no data on success, such as `Delete`, the response is `google.protobuf.Empty`. If the original method is standard `Get… |
No examples provided.