Compatible with every major AI agent and IDE
What is the Nhost MCP Server?
Connect your Nhost project to any AI agent to manage your backend services through natural language. This server provides a comprehensive interface for Nhost's Authentication and Storage services.
What you can do
- Authentication Flows — Sign in users via email/password, OTP, magic links, or anonymous sessions using
signin_email_password,signin_otp_email, andsignin_passwordless_email. - User Management — Register new accounts with
signup_email_password, retrieve profiles withget_user, and handle password resets or email changes. - Session Control — Refresh access tokens and securely sign out users from single or all devices using
refresh_tokenandsignout. - Cloud Storage — Upload files directly to your Nhost buckets using the
upload_filetool, supporting both text and base64 content.
How it works
- Subscribe to this server
- Provide your Nhost Auth and Storage URLs from your project dashboard
- Start managing users and files from Claude, Cursor, or any MCP client
Who is this for?
- Full-stack Developers — manage user sessions and test auth flows directly from the IDE without switching to the browser.
- DevOps Engineers — automate user provisioning and file management tasks through simple conversation.
- Support Teams — quickly verify user profile information and account status to resolve customer issues faster.
Built-in capabilities (15)
Requires elevated NHOST_JWT credential. Request to change the authenticated user email
Permanently delete a file
Supports optional image transformation parameters. Download the complete file content
Retrieve a presigned URL for a file
Requires NHOST_JWT credential. Retrieve the authenticated user profile information
Generate a new JWT access token using a valid refresh token
Request a password reset email
Create an anonymous user session
Authenticate a user with email and password
Initiate email-based one-time password authentication
Initiate passwordless authentication by sending a magic link
Invalidate refresh tokens and end the session
Register a new user account
Register a new user account using email OTP
Returns metadata for the processed file. Upload a file to a bucket
Why Windsurf?
Windsurf's Cascade agent chains multiple Nhost tool calls autonomously. query data, analyze results, and generate code in a single agentic session. Paste Vinkius Edge URL, reload, and all 15 tools are immediately available. Real-time tool feedback appears inline, so you see API responses directly in your editor.
- —
Windsurf's Cascade agent autonomously chains multiple tool calls in sequence, solving complex multi-step tasks without manual intervention
- —
Purpose-built for agentic workflows. Cascade understands context across your entire codebase and integrates MCP tools natively
- —
JSON-based configuration means zero code changes: paste a URL, reload, and all 15 tools are immediately available
- —
Real-time tool feedback is displayed inline, so you see API responses directly in your editor without switching contexts
Nhost in Windsurf
Nhost and 4,000+ other MCP servers. One platform. One governance layer.
Teams that connect Nhost to Windsurf through Vinkius don't need to source, host, or maintain individual MCP servers. Every tool call runs inside a hardened runtime with credential isolation, DLP, and a signed audit chain.
Raw MCP | Vinkius | |
|---|---|---|
| Server catalog | Find and host yourself | 4,000+ managed |
| Infrastructure | Self-hosted | Sandboxed V8 isolates |
| Credential handling | Plaintext in config | Vault + runtime injection |
| Data loss prevention | None | Configurable DLP policies |
| Kill switch | None | Global instant shutdown |
| Financial circuit breakers | None | Per-server limits + alerts |
| Audit trail | None | Ed25519 signed logs |
| SIEM log streaming | None | Splunk, Datadog, Webhook |
| Honeytokens | None | Canary alerts on leak |
| Custom domains | Not applicable | DNS challenge verified |
| GDPR compliance | Manual effort | Automated purge + export |
Why teams choose Vinkius for Nhost in Windsurf
The Nhost MCP Server runs on Vinkius-managed infrastructure inside AWS — a purpose-built runtime with per-request V8 isolates, Ed25519 signed audit chains, and sub-40ms cold starts. All 15 tools execute in hardened sandboxes optimized for native MCP execution.
Your AI agents in Windsurf only access the data you authorize, with DLP that blocks sensitive information from ever reaching the model, kill switch for instant shutdown, and up to 60% token savings. Enterprise-grade infrastructure, zero maintenance.

* Every MCP server runs on Vinkius-managed infrastructure inside AWS - a purpose-built runtime with per-request V8 isolates, Ed25519 signed audit chains, and sub-40ms cold starts optimized for native MCP execution. See our infrastructure
How Vinkius secures
Nhost for Windsurf
Every tool call from Windsurf to the Nhost MCP Server is protected by DLP redaction, cryptographic audit chains, V8 sandbox isolation, kill switch, and financial circuit breakers.
Frequently asked questions
How can I retrieve the profile of the currently logged-in user?
Use the get_user tool. It fetches the authenticated user's profile information, including their ID and metadata, provided a valid JWT is configured.
Is it possible to store documents or images using this server?
Yes. The upload_file action allows you to send raw text or base64 content along with a filename directly to your Nhost Storage bucket.
Can I initiate a login without requiring a password?
Absolutely. Use the signin_passwordless_email tool to send a magic link to a user's email address for a seamless passwordless authentication experience.
How does Windsurf discover MCP tools?
Windsurf reads the mcp_config.json file on startup and connects to each configured server via Streamable HTTP. Tools are listed in the MCP panel and available to Cascade automatically.
Can Cascade chain multiple MCP tool calls?
Yes. Cascade is an agentic system. it can plan and execute multi-step workflows, calling several tools in sequence to accomplish complex tasks without manual prompting between steps.
Does Windsurf support multiple MCP servers?
Yes. Add as many servers as needed in mcp_config.json. Each server's tools appear in the MCP panel and Cascade can use tools from different servers in a single flow.
Server not connecting
Check Settings → MCP for the server status. Try toggling it off and on.
Explore More MCP Servers
View all →
Bidsketch
10 toolsAutomate proposal creation via Bidsketch — list proposals, clients, and templates directly from any AI agent.

U.S. Congress
8 toolsQuery U.S. legislative data via AI — search bills, members, amendments, treaties, nominations, committees, and congressional records.

BookingLive
17 toolsAutomate booking and order management via BookingLive — create orders, track statuses, and manage customer reservations directly from your AI agent.

NCREIF
10 toolsAccess institutional commercial real estate data via NCREIF — track property performance, indices, and fund returns directly from your AI agent.
