Back to Home
andreasgerstmayr icon

tempo-mcp-gateway

Verified Safe

by andreasgerstmayr

Overview

The tempo-mcp-gateway acts as an instance-aware and tenant-aware gateway for Grafana Tempo's MCP (Management Control Plane) server, simplifying interaction with multiple Tempo instances within a Kubernetes cluster.

Installation

Run Command
No command provided

Security Notes

The server uses standard Kubernetes practices for secure communication, including in-cluster configuration for the Kubernetes API client and a service CA certificate for TLS. It properly forwards client authorization tokens to downstream Tempo instances, maintaining the client's original permissions. There are no observed hardcoded secrets, 'eval' usage, or other obvious malicious patterns. The RBAC rules are appropriately scoped to 'list' Tempo custom resources, limiting its own cluster permissions. The filtering of accessible tenants by probing readiness endpoints is a good practice to ensure the gateway only exposes what the client is authorized to access.

Similar Servers

Stats

Interest Score0
Security Score9
Cost ClassLow
Stars0
Forks0
Last Update2025-12-15

Tags

Grafana TempoKubernetesMCP GatewayObservabilityGo