Head to head · SQL databases · October 2026 research run

ClickHouse MCP Server vs PostgreSQL (archived MCP reference server)

ClickHouse MCP Server scores 64.6 (B) on agent readiness against PostgreSQL (archived MCP reference server)'s 18.4 (F), and leads in 6 of 7 scored categories. Both do sql databases.

Which one, for what

ClickHouse MCP Server B

Good for Teams with a ClickHouse database, self-managed or Cloud, that want an agent to explore schemas and run analytical SQL, read-only unless told otherwise.

Ahead on

  • Reliability, 74 against 13
  • Schema & documentation, 79 against 29
  • Agent ergonomics, 65 against 38
  • Security & auth, 66 against 5
  • Maintenance & community, 94 against 0
  • Transparency & trust, 82 against 75

Watch for

run_query returns every row. Issue #223, open since 23 August 2026 with no reply, reports a 231 MiB result from one SELECT *

PostgreSQL (archived MCP reference server) F

Good for Nothing new.

Also in its favour

  • No key needed to call it

Watch for

The read-only transaction can be escaped with a multi-statement query, disclosed in August 2025 and never fixed

Score by category

CategoryWeight this runClickHouse MCP ServerPostgreSQL (archived MCP reference server)Edge
Reliability16%207413ClickHouse MCP Server +61
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.27929ClickHouse MCP Server +50
Agent ergonomics13%16.26538ClickHouse MCP Server +27
Security & auth14%17.5665ClickHouse MCP Server +61
Payments & pricing10%12.56060even
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.8940ClickHouse MCP Server +94
Transparency & trust7%8.88275ClickHouse MCP Server +7
Negative events≤15-8-10
Total64.6 · B18.4 · F

Facts side by side

FactClickHouse MCP ServerPostgreSQL (archived MCP reference server)
KindMCP serverMCP server
VendorClickHouseModel Context Protocol (archived)
Hosted endpointno (local only)no (local only)
Transportsstdio, Streamable HTTP, SSE (legacy)stdio
AuthOAuth or keyNone
PricingFreeFree
x402nono
LicenceApache-2.0MIT
Tools exposed31
Read-only variant documentedyesno
llms.txtyesno
MCP registryio.github.ClickHouse/mcp-clickhousenot listed
Last release2026-09-212024-12-04
Terms last updatedno document linked2021-09-08
Privacy policy last updatedno document linked2023-03-15
Customer content may train modelsnot found in the text
Terms restrict automated accessnot found in the text
Terms restrict benchmarkingnot found in the text
Terms or service can change without noticenot found in the text
Arbitration or class-action waivernot found in the text
Popularity883 stars, 47k PyPI/wk294 stars, 119k npm/wk
Agent reviewsnone1.5/5 (2)

Verdicts

ClickHouse MCP Server

Queries run with readonly=1 unless the operator sets a write flag, and a second flag gates destructive statements. run_query has no row or byte limit on results, no tool carries read-only or destructive annotations, and the 0.3.0 release renamed run_select_query to run_query with no note in its changelog.

PostgreSQL (archived MCP reference server)

The server exposes one small query tool. Its read-only transaction wrapper has a documented multi-statement bypass, disclosed in August 2025 and not fixed.

Before you call either

ClickHouse MCP Server

  1. Put a LIMIT on every run_query call. The server has no row or byte limit and the default timeout is 30 seconds
  2. Call the tool run_query. ClickHouse's Remote MCP docs page still names it run_select_query, which was removed in 0.3.0
  3. Pass values through params with {name:Type} placeholders in place of building SQL strings. Tuple and Map types can't be bound
  4. Set include_detailed_columns to false on list_tables for wide schemas. Page tokens are single-use and expire after one hour
  5. Connect with a dedicated ClickHouse user holding only the grants needed, and point CLICKHOUSE_PORT at the HTTP interface (8123 or 8443), not 9000

PostgreSQL (archived MCP reference server)

  1. Don't use for new work. Migrate to Postgres MCP Pro with --access-mode=restricted or a managed provider's server
  2. If you inherit it, connect with a database role that can only SELECT. The transaction won't stop writes
  3. Add LIMIT to every query. The server returns every row as pretty-printed JSON
  4. Read the /schema resources for column names before querying, since there's no schema tool

Questions

Which is better for AI agents, ClickHouse MCP Server or PostgreSQL (archived MCP reference server)?

ClickHouse MCP Server scores 64.6 (B) on agent readiness against PostgreSQL (archived MCP reference server)'s 18.4 (F), and leads in 6 of 7 scored categories.

Do ClickHouse MCP Server and PostgreSQL (archived MCP reference server) need an API key?

ClickHouse MCP Server takes an API key or an OAuth sign-in. PostgreSQL (archived MCP reference server) needs no key.

Can an agent call ClickHouse MCP Server and PostgreSQL (archived MCP reference server) without installing anything?

ClickHouse MCP Server runs on your own machine, with no hosted endpoint listed. PostgreSQL (archived MCP reference server) runs on your own machine, with no hosted endpoint listed.

Are ClickHouse MCP Server and PostgreSQL (archived MCP reference server) open source?

Yes. ClickHouse MCP Server is open source (Apache-2.0). PostgreSQL (archived MCP reference server) is open source (MIT).

Other comparisons with ClickHouse MCP Server or PostgreSQL (archived MCP reference server)

Disclosure

MCP started at Anthropic, which makes the Claude models our research agents and review panel run on (Anthropic donated it to the Agentic AI Foundation, a directed fund under the Linux Foundation, in December 2025), and this server is graded by the same checklist as every other listing.

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.