Skip to content
Databasezy

API and MCP

Build on it, or let your assistant drive

Everything the portal does goes through the public /v1 API. The same API powers the CLI and an MCP server, so tools like Claude Code and Cursor can manage databases with your permissions and nothing more.

API and MCP, step by step

  1. Step 01

    Create a key

    Create an org-scoped API key in the portal or with zb api-keys create. Restrict it with scopes and an expiry; the secret is shown once.

  2. Step 02

    Call /v1

    Send it as a bearer token. Every path lives under your org, and other orgs' resources return 404.

  3. Step 03

    Listen for events

    Register webhooks for instance, backup and migration events. Deliveries are signed and the secret rotates.

  4. Step 04

    Or add the MCP server

    Run zb-mcp locally over stdio or use the hosted endpoint. It calls the same API with the same key.

What you get

  • OpenAPI 3.1

    The document is generated from the API source and drives the typed client, the CLI and the MCP server.

  • Safe retries

    Send an Idempotency-Key on POST and a retry within 24 hours returns the original response instead of a duplicate.

  • Signed webhooks

    Deliveries carry an HMAC signature and a timestamp. Rotate the secret and inspect recent deliveries through the API.

  • MCP server

    Tools to list engines and plans, create, pause, resume and delete instances, get connection details and search the docs.

  • No credentials to assistants

    The MCP server never reveals database credentials, and delete needs an explicit confirmation flagged as destructive.

  • llms.txt

    A machine-readable summary of engines, sizes, plans and prices at /llms.txt, generated from the same catalogue as this site.

Try it

curl
curl -sS https://api.databasezy.com/v1/orgs/org_01J9.../projects/prj_01J9.../instances \
  -H "Authorization: Bearer $ZB_API_KEY" \
  -H "Idempotency-Key: $(uuidgen)" \
  -H "Content-Type: application/json" \
  -d '{"engine":"postgres","size":"s1","name":"orders-db"}'
Claude Code
claude mcp add databasezy -e ZB_API_KEY=zb_... -e ZB_ORG_ID=org_... -- npx -y zb-mcp

Plan availability

Generated from the same plan catalogue that billing and the API use.

  • Free

    $0 /mo
    Included

    REST API, webhooks and MCP server

  • Solo

    $25 /mo
    Included

    REST API, webhooks and MCP server

  • Team

    $599 /mo
    Included

    REST API, webhooks and MCP server

  • Enterprise

    Custom
    Included

    REST API, webhooks and MCP server

Rate limits are 600 requests per minute per key. API keys inherit their owner's role, so an assistant can be read-only.

Compare every plan on the pricing page

Questions

Can an AI assistant delete my databases?

Only if its API key's role and scopes allow it, and delete_instance requires confirm: true and is marked destructive so the client asks you first. A key with instances:read gives a read-only assistant.

Does the MCP server see my database passwords?

No. get_connection_info returns a connection-string template with placeholders. Credential reveal stays in the portal and CLI.

Are some MCP tools still coming?

The backups, usage and migration tools return a not-available error until those endpoints are published in the OpenAPI document the server is built from. No configuration change is needed when they arrive.

What do errors look like?

application/problem+json with a type, title, status, detail and a request id you can quote to support.

Create your first database

A free instance, no card. Upgrade when you outgrow it; nothing converts silently.