What is the Keycloak Admin MCP server?
Administer Keycloak via its Admin REST API: users, roles, clients, groups, IdP, events.
How to install Keycloak Admin
Copy-paste configuration for popular MCP clients.
KEYCLOAK_BASE_URLrequiredBase URL of the Keycloak server (no trailing slash).
KEYCLOAK_REALMrequiredRealm the server operates on.
AUTH_MODErequiredAuthentication mode: service_account or password.
KC_CLIENT_IDConfidential client id (service_account mode).
KC_CLIENT_SECRETsecretClient secret (service_account mode).
KC_ADMIN_USERNAMEAdmin username (password mode).
KC_ADMIN_PASSWORDsecretAdmin password (password mode).
KC_ADMIN_REALMRealm holding the admin user (password mode; default master).
READ_ONLYWhen true, write and destructive tools are not registered.
ALLOWED_REALMSComma-separated allow-list of realms the server may operate on.
Related MCP servers

JsonFabrica
Generate realistic, relational synthetic JSON test data from templates, via the JsonFabrica API.

DesignScan
Extract a website’s design tokens (colors, type, spacing, shadows) as DESIGN.md, W3C, or CSS.

agent-bom
Security scanner and control plane for AI agents, MCP servers, and cloud infrastructure—discover vulnerabilities and trace blast radius.
Scan any public site for AI-agent visibility; get scored findings, a machine-readable fix pack, and
View repository →
Local Talkform schemas, bundled interview templates, and config validation for AI agents.
RFC 9110 x402 Solana compliance screening and micropayments gateway for AI agents.
