Skip to content
Developer ToolsAuto-generatedScore: 34

PolicyClient MCP Server

The PolicyClient API, provided by Microsoft as part of the Azure Resource Manager, is a comprehensive interface designed for the governance and enforcement of organizational standards across cloud resources.

Quick Start Summary

The PolicyClient MCP server is a Model Context Protocol bridge that connects AI assistants — including Claude Desktop, Cursor, Windsurf, and VS Code Copilot — to the PolicyClient API through natural language. It exposes 9 API endpoints as callable tools, such as PolicyAssignments_List, PolicyAssignments_ListForResourceGroup, PolicyAssignments_ListForResource, and more. No authentication is required — setup takes approximately 30 seconds. The server uses STDIO transport and can be installed by running npx -y @mcp/azure-com-resources-policyassignments. This integration is sourced from the auto PolicyClient OpenAPI specification (v2016-12-01) and has a quality score of 34/99 (fair documentation coverage).

9Endpointstools mapped
NoneAuthopen access
34/99Qualityfair
~30 secSetupno auth

Server Details

Category
Developer Tools
Authentication
None
Endpoints
9 operations
Transport
STDIO
Spec Version
v2016-12-01
Install Command
npx -y @mcp/azure-com-resources-policyassignments

Environment Variables

POLICYCLIENT_API_KEY

Example: your_policyclient_api_key

Top Endpoints

GET
/subscriptions/{subscriptionId}/providers/Microsoft.Authorization/policyAssignments

PolicyAssignments_List

GET
/subscriptions/{subscriptionId}/resourceGroups/{resourceGroupName}/providers/Microsoft.Authorization/policyAssignments

PolicyAssignments_ListForResourceGroup

GET
/subscriptions/{subscriptionId}/resourcegroups/{resourceGroupName}/providers/{resourceProviderNamespace}/{parentResourcePath}/{resourceType}/{resourceName}/providers/Microsoft.Authorization/policyAssignments

PolicyAssignments_ListForResource

GET
/{policyAssignmentId}

Gets a policy assignment by ID.

PUT
/{policyAssignmentId}

Creates a policy assignment by ID.

Own this API?

Verify ownership of this listing to control the description, configuration details, and documentation links. Choose between free manual verification or instant premium placement.

Option 1: Free Verification

Slow manual review. Requires creating a GitHub issue with verified documentation or domain verification.

  • • Verified badge on page
  • • Standard search sorting
  • • 2-3 business days review
Start Free Claim →
Instant & Boosted

Option 2: Featured Upgrade($9/mo)

Instant verification plus premium styling, featured badges, and directory placement boost.

  • • ★ Featured star & amber highlight border
  • • Top of directory search placement
  • • Instant activation via claim token

📖 Detailed MCP Integration Guide

A technical breakdown of capabilities, agent workflows, and security/configuration best practices.

Capabilities & Use Cases
The PolicyClient API, provided by Microsoft as part of the Azure Resource Manager, is a comprehensive interface designed for the governance and enforcement of organizational standards across cloud resources. Its core capability is the lifecycle management of policy assignments, which dictate which policies (rules that evaluate resource compliance) are active and where they are applied within the Azure resource hierarchy. Beyond simple assignment, the API allows users to define customized policies and assign them at various scopes—such as a management group, subscription, resource group, or individual resource—enabling a top-down or targeted approach to control. Typical enterprise use cases include ensuring security configurations (like requiring encryption on storage accounts), enforcing naming conventions, mandating specific resource types for compliance, and automating remediation for non-compliant resources. For consumer or smaller-scale deployments, it provides a straightforward mechanism to apply guardrails that prevent resource sprawl and manage cost by restricting deployments to specific regions or SKUs.
🤖AI Agent Value
Exposing this API through the Model Context Protocol (MCP) to an AI coding assistant transforms static infrastructure-as-code definitions into a dynamic, conversational governance layer. The primary value is in abstracting the complexities of policy definition and scope targeting into natural language interactions, dramatically accelerating development and operations workflows. Instead of manually writing JSON policy assignment templates or navigating the Azure Portal, a developer can instruct the AI agent to query current assignments, create new ones, or modify existing ones based on high-level intent. This integration turns the AI into a context-aware governance co-pilot that understands the resource tree and policy hierarchy, enabling it to perform actions like "list all policies assigned to the production subscription" or "assign a VM SKU restriction policy to the development resource group" with a single command. This reduces cognitive load, minimizes configuration errors, and ensures that governance rules are applied consistently and rapidly in response to evolving project needs.
💬Example Workflows
Practical workflow examples highlight the API's utility when mediated by an MCP server. A developer could instruct the AI agent to perform compliance discovery by querying all policy assignments within a subscription to generate a report of active controls before initiating a security audit. To automate security hardening, the agent could be commanded to create and assign a policy that blocks public IP addresses on virtual network interfaces within a specific resource group, immediately enhancing the security posture. For cost management, a workflow could involve the agent retrieving all policy assignments at a subscription level to identify and remove redundant or conflicting policies that might be hindering development velocity. Furthermore, an AI agent could automate lifecycle tasks like rotating policy assignments during a migration by updating the scope of an existing assignment from a legacy resource group to a new one using the PUT endpoints, ensuring uninterrupted governance during transitions.
🛡️Security & Auth
Critical to the operation of this API is the robust authentication and authorization framework of Azure. While the tool exposure mechanism itself may not handle authentication, the underlying API calls to Azure Resource Manager absolutely require it. Developers must authenticate using Azure Active Directory (AAD) credentials—typically via service principals, managed identities, or user accounts—with appropriate Role-Based Access Control (RBAC) permissions. Adherence to the principle of least privilege is paramount; the identity used should be granted only the minimum necessary roles, such as "Policy Contributor" or a custom role with specific permissions on the target scopes. When configuring an MCP server for this API, secrets like client IDs and certificates must be managed securely using vault services, not hard-coded. Configuration should also include strict scope limitations to prevent the AI agent from having overly broad management rights, thereby reducing the risk of unintended or malicious changes to critical governance configurations across the Azure estate.

Similar APIs

Other APIs in the Developer Tools category.

GitHub API

Access GitHub repositories, issues, pull requests, and more. Integrate GitHub workflows directly into your AI agent.

OAuth2

GitLab API

Manage repositories, CI/CD pipelines, and merge requests through your AI agent.

OAuth2

Box Platform API

The Box Platform API, provided by Box (box.com), is a robust and comprehensive RESTful service that enables deep integration with the Box cloud content management ecosystem. It serves as the programmatic backbone for enterprises and developers seeking to build custom applications and workflows that interact with content stored securely in Box. Its core capabilities extend far beyond basic file operations, encompassing a full spectrum of content lifecycle management. Developers can programmatically create, upload, download, search, and manage files and folders, but the API's true power lies in its enterprise-grade features. These include advanced collaboration management through invitations and permissions, granular user and group administration within an enterprise directory, and sophisticated security and compliance controls. Specific endpoint groups for managing collaboration whitelists and exempt targets allow for precise governance over external sharing policies, ensuring that content is only shared with approved domains. Furthermore, the API facilitates complex legal and compliance use cases, such as placing items on legal hold or applying retention policies, making it an indispensable tool for regulated industries and large organizations.

Asana

This API serves as the programmatic backbone for the Asana work management platform, provided by Asana, Inc. It enables developers to interact programmatically with one of the world's leading enterprise collaboration and productivity suites. The core capabilities of this interface center around the CRUD (Create, Read, Update, Delete) operations for fundamental Asana objects. Specifically, the provided endpoints grant control over project attachments—allowing for the uploading, retrieval, and management of files associated with tasks and projects—and custom fields, which are pivotal for creating structured, data-rich workflows. These custom fields allow organizations to define unique data types (like dropdown menus, text fields, or dates) to standardize information capture across projects, moving beyond basic task lists to true operational tracking. Typical use cases span from enterprise project management offices (PMOs) needing to programmatically generate status reports and audit attachments, to development teams automating the creation of bug-tracking projects with predefined custom fields for severity and status, to operational leaders building dashboards that aggregate and analyze custom field data for resource allocation insights.

Related MCP Server Integrations

GitHub API MCP Setup

Access GitHub repositories, issues, pull requests, and more. Integrate GitHub workflows directly into your AI agent.

Developer ToolsConfigure →

GitLab API MCP Setup

Manage repositories, CI/CD pipelines, and merge requests through your AI agent.

Developer ToolsConfigure →

Box Platform API MCP Setup

The Box Platform API, provided by Box (box.com), is a robust and comprehensive RESTful service that enables deep integration with the Box cloud content management ecosystem. It serves as the programmatic backbone for enterprises and developers seeking to build custom applications and workflows that interact with content stored securely in Box. Its core capabilities extend far beyond basic file operations, encompassing a full spectrum of content lifecycle management. Developers can programmatically create, upload, download, search, and manage files and folders, but the API's true power lies in its enterprise-grade features. These include advanced collaboration management through invitations and permissions, granular user and group administration within an enterprise directory, and sophisticated security and compliance controls. Specific endpoint groups for managing collaboration whitelists and exempt targets allow for precise governance over external sharing policies, ensuring that content is only shared with approved domains. Furthermore, the API facilitates complex legal and compliance use cases, such as placing items on legal hold or applying retention policies, making it an indispensable tool for regulated industries and large organizations.

Developer ToolsConfigure →

Asana MCP Setup

This API serves as the programmatic backbone for the Asana work management platform, provided by Asana, Inc. It enables developers to interact programmatically with one of the world's leading enterprise collaboration and productivity suites. The core capabilities of this interface center around the CRUD (Create, Read, Update, Delete) operations for fundamental Asana objects. Specifically, the provided endpoints grant control over project attachments—allowing for the uploading, retrieval, and management of files associated with tasks and projects—and custom fields, which are pivotal for creating structured, data-rich workflows. These custom fields allow organizations to define unique data types (like dropdown menus, text fields, or dates) to standardize information capture across projects, moving beyond basic task lists to true operational tracking. Typical use cases span from enterprise project management offices (PMOs) needing to programmatically generate status reports and audit attachments, to development teams automating the creation of bug-tracking projects with predefined custom fields for severity and status, to operational leaders building dashboards that aggregate and analyze custom field data for resource allocation insights.

Developer ToolsConfigure →

clickup20 MCP Setup

The clickup20 Polls API is a lightweight, focused web service designed to facilitate the creation and management of simple polling mechanisms. Provided by ClickUp, a platform known for its project management and productivity tools, this API serves as a specialized component for gathering quick, quantitative feedback. Its core capabilities are straightforward: it allows consumers to programmatically retrieve a list of existing poll questions and to submit new poll questions for consideration. Typical use cases span both enterprise and consumer domains. In an enterprise setting, a development team might integrate this API to run quick polls during sprint retrospectives, gauge internal sentiment on a new tool, or gather binary feedback on proposed technical designs within a project management workflow. For consumer applications, it could power simple feedback widgets within a mobile app or website, enabling users to vote on feature priorities or content topics. The API’s simplicity, requiring no authentication, makes it highly accessible for rapid prototyping and integration into internal tools where complex credential management is unnecessary.

Developer ToolsConfigure →