Back to the registry
Agent passport

Elasticsearch MCP Server for AI Agents

Elastic · Cybersecurity & IT

No attestation published

Certification per AWS Marketplace.

Provenance reach3 of 12 layers traced

Evidence tier Source Confirmed · 4 captures on record

User ratingNot rated0 reviews on the listing
Runs onUnknownContainer
ProvenanceUnknown33% of the provenance layers this product can disclose
Evidence riskHighSign in to see the basis for this band.

What the publisher says

As described on AWS Marketplace.

The Elasticsearch MCP Server connects your data to AI agents via the Model Context Protocol (MCP), enabling natural language interaction with your indices. It exposes Elasticsearch indices as secure, searchable resources, allowing LLMs to perform powerful retrieval and analysis.

With Elasticsearch's open-source vector database, agent builders already have the tools for fast, scalable retrieval. The MCP Server extends those capabilities, making it easier than ever to build and deploy agentic applications at scale.

Show the rest of the publisher’s description (2 more lines)

Support for Streamable HTTP Transport: Enables HTTP POST and optional SSE-based streaming -- ideal for web integrations, stateful sessions, and concurrent clients.

For more information, please visit Elastic Cloud (Elasticsearch Service) at https://aws.amazon.com/marketplace/pp/prodview-voru33wi6xs7k or elastic.co. The MCP server is provided as a Docker container that uses a minimal, hardened container base image that can be used for easy deployment and scaling within your AWS environment.

Highlights

Highlighted by the publisher on AWS Marketplace.

Built on Elasticsearch's open source, scalable vector database: Fast, high-quality retrieval across structured and unstructured data.

Easy integration with agents, IDEs, and developer tools. Connect tools like Claude Desktop, VSCode, Cursor, or your own agent -- no re-architecture required.

Access key Elasticsearch capabilities. list_indices to help agents discover available data, get_mappings to understand field structure, get_shards to get shard information for all or specific indices, and search to run powerful queries using Elasticsearch DSL -- the core tools the server provides to help Agents take meaningful actions.

Agent build and provenance

See the full provenance

The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.

Compliance

Government
  • FedRAMP AuthorizedConfirmed95%, domain-verifiedElastic Cloud is FedRAMP Authorized at Moderate impact (domain match)FedRAMP Marketplaceregistry recordas observed 2026-08-27

Confirmed means matched to a public authoritative registry. Claimed means the vendor or its listing states it, not yet cross-checked. A framework not shown was not found in any source we hold, which is not evidence against it. Not listed means a scoped registry check found no match for this vendor's domain: a No is a scoped registry check, not a compliance judgment. Confidence bands: 95% domain-verified, 90% registry-checked, 80% self-attested, 70% weak signal. Self-attested items marked “vendor's site” are gathered from the vendor's own website and are not verified by us.

Vendor

External enrichment

CompanyElasticsearchAutomated

Refund terms

As stated by the publisher on AWS Marketplace.

This is a free offering

Sources

Marketplace listingaws.amazon.comSource
App certificationaws.amazon.comSource
StandardEulaStandardEulaSource

Publisher resources

1 link
Elasticsearch MCP Server Documentationwww.elastic.coSource

Linked repositories

RepositoriesUnknownUnknown

Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.

Pricing
Unknown
Not stated
Delivery
Container
support@elastic.co
Open the source listing ↗

Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.