add mcpserverse

This commit is contained in:
2026-05-30 19:20:25 +01:00
parent d6f607c8e1
commit 234958d448
6 changed files with 136 additions and 0 deletions
@@ -0,0 +1,46 @@
apiVersion: toolhive.stacklok.dev/v1beta1
kind: MCPServer
metadata:
name: argocd-mcp
namespace: toolhive-system
spec:
# argoproj-labs MCP server for Argo CD. The image entrypoint already launches
# the server (default stdio transport); ToolHive proxies it to streamable-http
# at http://mcp-argocd-mcp-proxy.mcp-services:8080/mcp.
# NOTE: do NOT set args — the image ENTRYPOINT is `node` and any args replace
# the script path (e.g. "stdio" -> node stdio -> "Cannot find module /app/stdio").
image: ghcr.io/argoproj-labs/mcp-for-argocd:v0.7.0
transport: stdio
proxyMode: streamable-http
proxyPort: 8080
env:
- name: ARGOCD_BASE_URL
value: https://argocd-server.argocd.svc.cluster.local
# argocd-server serves a self-signed cert in-cluster.
- name: NODE_TLS_REJECT_UNAUTHORIZED
value: "0"
# Start read-only; drop this to enable sync/write tools later.
- name: MCP_READ_ONLY
value: "true"
# ToolHive 0.28.3 does not translate spec.secrets into the workload, so inject
# the token natively on the `mcp` container via podTemplateSpec.
podTemplateSpec:
spec:
containers:
- name: mcp
env:
- name: ARGOCD_API_TOKEN
valueFrom:
secretKeyRef:
name: argocd-mcp-secret
key: token
permissionProfile:
type: builtin
name: network
resources:
requests:
cpu: 100m
memory: 128Mi
limits:
cpu: 500m
memory: 512Mi