1. Packages
  2. Packages
  3. Cloudflare Provider
  4. API Docs
  5. getZeroTrustAccessAiControlsMcpServer
Viewing docs for Cloudflare v6.18.0
published on Thursday, Jul 16, 2026 by Pulumi
cloudflare logo
Viewing docs for Cloudflare v6.18.0
published on Thursday, Jul 16, 2026 by Pulumi

    Accepted Permissions

    • MCP Portals Read
    • MCP Portals Write

    Example Usage

    import * as pulumi from "@pulumi/pulumi";
    import * as cloudflare from "@pulumi/cloudflare";
    
    const exampleZeroTrustAccessAiControlsMcpServer = cloudflare.getZeroTrustAccessAiControlsMcpServer({
        accountId: "a86a8f5c339544d7bdc89926de14fb8c",
        id: "my-mcp-server",
    });
    
    import pulumi
    import pulumi_cloudflare as cloudflare
    
    example_zero_trust_access_ai_controls_mcp_server = cloudflare.get_zero_trust_access_ai_controls_mcp_server(account_id="a86a8f5c339544d7bdc89926de14fb8c",
        id="my-mcp-server")
    
    package main
    
    import (
    	"github.com/pulumi/pulumi-cloudflare/sdk/v6/go/cloudflare"
    	"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
    )
    
    func main() {
    	pulumi.Run(func(ctx *pulumi.Context) error {
    		_, err := cloudflare.GetZeroTrustAccessAiControlsMcpServer(ctx, &cloudflare.LookupZeroTrustAccessAiControlsMcpServerArgs{
    			AccountId: pulumi.StringRef("a86a8f5c339544d7bdc89926de14fb8c"),
    			Id:        pulumi.StringRef("my-mcp-server"),
    		}, nil)
    		if err != nil {
    			return err
    		}
    		return nil
    	})
    }
    
    using System.Collections.Generic;
    using System.Linq;
    using Pulumi;
    using Cloudflare = Pulumi.Cloudflare;
    
    return await Deployment.RunAsync(() => 
    {
        var exampleZeroTrustAccessAiControlsMcpServer = Cloudflare.GetZeroTrustAccessAiControlsMcpServer.Invoke(new()
        {
            AccountId = "a86a8f5c339544d7bdc89926de14fb8c",
            Id = "my-mcp-server",
        });
    
    });
    
    package generated_program;
    
    import com.pulumi.Context;
    import com.pulumi.Pulumi;
    import com.pulumi.core.Output;
    import com.pulumi.cloudflare.CloudflareFunctions;
    import com.pulumi.cloudflare.inputs.GetZeroTrustAccessAiControlsMcpServerArgs;
    import java.util.ArrayList;
    import java.util.Arrays;
    import java.util.Map;
    import java.io.File;
    import java.nio.file.Files;
    import java.nio.file.Paths;
    
    public class App {
        public static void main(String[] args) {
            Pulumi.run(App::stack);
        }
    
        public static void stack(Context ctx) {
            final var exampleZeroTrustAccessAiControlsMcpServer = CloudflareFunctions.getZeroTrustAccessAiControlsMcpServer(GetZeroTrustAccessAiControlsMcpServerArgs.builder()
                .accountId("a86a8f5c339544d7bdc89926de14fb8c")
                .id("my-mcp-server")
                .build());
    
        }
    }
    
    variables:
      exampleZeroTrustAccessAiControlsMcpServer:
        fn::invoke:
          function: cloudflare:getZeroTrustAccessAiControlsMcpServer
          arguments:
            accountId: a86a8f5c339544d7bdc89926de14fb8c
            id: my-mcp-server
    
    pulumi {
      required_providers {
        cloudflare = {
          source = "pulumi/cloudflare"
        }
      }
    }
    
    data "cloudflare_getzerotrustaccessaicontrolsmcpserver" "exampleZeroTrustAccessAiControlsMcpServer" {
      account_id = "a86a8f5c339544d7bdc89926de14fb8c"
      id         = "my-mcp-server"
    }
    

    Using getZeroTrustAccessAiControlsMcpServer

    Two invocation forms are available. The direct form accepts plain arguments and either blocks until the result value is available, or returns a Promise-wrapped result. The output form accepts Input-wrapped arguments and returns an Output-wrapped result.

    function getZeroTrustAccessAiControlsMcpServer(args: GetZeroTrustAccessAiControlsMcpServerArgs, opts?: InvokeOptions): Promise<GetZeroTrustAccessAiControlsMcpServerResult>
    function getZeroTrustAccessAiControlsMcpServerOutput(args: GetZeroTrustAccessAiControlsMcpServerOutputArgs, opts?: InvokeOptions): Output<GetZeroTrustAccessAiControlsMcpServerResult>
    def get_zero_trust_access_ai_controls_mcp_server(account_id: Optional[str] = None,
                                                     filter: Optional[GetZeroTrustAccessAiControlsMcpServerFilter] = None,
                                                     id: Optional[str] = None,
                                                     opts: Optional[InvokeOptions] = None) -> GetZeroTrustAccessAiControlsMcpServerResult
    def get_zero_trust_access_ai_controls_mcp_server_output(account_id: pulumi.Input[Optional[str]] = None,
                                                     filter: pulumi.Input[Optional[GetZeroTrustAccessAiControlsMcpServerFilterArgs]] = None,
                                                     id: pulumi.Input[Optional[str]] = None,
                                                     opts: Optional[InvokeOptions] = None) -> Output[GetZeroTrustAccessAiControlsMcpServerResult]
    func LookupZeroTrustAccessAiControlsMcpServer(ctx *Context, args *LookupZeroTrustAccessAiControlsMcpServerArgs, opts ...InvokeOption) (*LookupZeroTrustAccessAiControlsMcpServerResult, error)
    func LookupZeroTrustAccessAiControlsMcpServerOutput(ctx *Context, args *LookupZeroTrustAccessAiControlsMcpServerOutputArgs, opts ...InvokeOption) LookupZeroTrustAccessAiControlsMcpServerResultOutput

    > Note: This function is named LookupZeroTrustAccessAiControlsMcpServer in the Go SDK.

    public static class GetZeroTrustAccessAiControlsMcpServer 
    {
        public static Task<GetZeroTrustAccessAiControlsMcpServerResult> InvokeAsync(GetZeroTrustAccessAiControlsMcpServerArgs args, InvokeOptions? opts = null)
        public static Output<GetZeroTrustAccessAiControlsMcpServerResult> Invoke(GetZeroTrustAccessAiControlsMcpServerInvokeArgs args, InvokeOptions? opts = null)
    }
    public static CompletableFuture<GetZeroTrustAccessAiControlsMcpServerResult> getZeroTrustAccessAiControlsMcpServer(GetZeroTrustAccessAiControlsMcpServerArgs args, InvokeOptions options)
    public static Output<GetZeroTrustAccessAiControlsMcpServerResult> getZeroTrustAccessAiControlsMcpServer(GetZeroTrustAccessAiControlsMcpServerArgs args, InvokeOptions options)
    
    fn::invoke:
      function: cloudflare:index/getZeroTrustAccessAiControlsMcpServer:getZeroTrustAccessAiControlsMcpServer
      arguments:
        # arguments dictionary
    data "cloudflare_get_zero_trust_access_ai_controls_mcp_server" "name" {
        # arguments
    }

    The following arguments are supported:

    account_id string
    filter object
    id string
    server id
    accountId String
    filter Property Map
    id String
    server id

    getZeroTrustAccessAiControlsMcpServer Result

    The following output properties are available:

    AuthType string
    Available values: "oauth", "bearer", "unauthenticated".
    CreatedAt string
    CreatedBy string
    Description string
    Error string
    ErrorDetails GetZeroTrustAccessAiControlsMcpServerErrorDetails
    Hostname string
    Id string
    server id
    IsSharedOauthCallbackEnabled bool
    When true, the gateway worker uses the shared Cloudflare-owned OAuth callback endpoint as the redirectUri for upstream on-behalf OAuth, instead of the customer portal hostname. New public server creates default to true; existing servers default to false from migration until explicitly updated. Effective behavior is gated by the gateway worker's per-env rollout mode KV key.
    LastSuccessfulSync string
    LastSynced string
    ModifiedAt string
    ModifiedBy string
    Name string
    Prompts List<ImmutableDictionary<string, string>>
    SecureWebGateway bool
    Route outbound traffic to this MCP server through Zero Trust Secure Web Gateway
    Status string
    Tools List<ImmutableDictionary<string, string>>
    UpdatedPrompts List<GetZeroTrustAccessAiControlsMcpServerUpdatedPrompt>
    UpdatedTools List<GetZeroTrustAccessAiControlsMcpServerUpdatedTool>
    AccountId string
    Filter GetZeroTrustAccessAiControlsMcpServerFilter
    AuthType string
    Available values: "oauth", "bearer", "unauthenticated".
    CreatedAt string
    CreatedBy string
    Description string
    Error string
    ErrorDetails GetZeroTrustAccessAiControlsMcpServerErrorDetails
    Hostname string
    Id string
    server id
    IsSharedOauthCallbackEnabled bool
    When true, the gateway worker uses the shared Cloudflare-owned OAuth callback endpoint as the redirectUri for upstream on-behalf OAuth, instead of the customer portal hostname. New public server creates default to true; existing servers default to false from migration until explicitly updated. Effective behavior is gated by the gateway worker's per-env rollout mode KV key.
    LastSuccessfulSync string
    LastSynced string
    ModifiedAt string
    ModifiedBy string
    Name string
    Prompts []map[string]string
    SecureWebGateway bool
    Route outbound traffic to this MCP server through Zero Trust Secure Web Gateway
    Status string
    Tools []map[string]string
    UpdatedPrompts []GetZeroTrustAccessAiControlsMcpServerUpdatedPrompt
    UpdatedTools []GetZeroTrustAccessAiControlsMcpServerUpdatedTool
    AccountId string
    Filter GetZeroTrustAccessAiControlsMcpServerFilter
    auth_type string
    Available values: "oauth", "bearer", "unauthenticated".
    created_at string
    created_by string
    description string
    error string
    error_details object
    hostname string
    id string
    server id
    is_shared_oauth_callback_enabled bool
    When true, the gateway worker uses the shared Cloudflare-owned OAuth callback endpoint as the redirectUri for upstream on-behalf OAuth, instead of the customer portal hostname. New public server creates default to true; existing servers default to false from migration until explicitly updated. Effective behavior is gated by the gateway worker's per-env rollout mode KV key.
    last_successful_sync string
    last_synced string
    modified_at string
    modified_by string
    name string
    prompts list(map(string))
    secure_web_gateway bool
    Route outbound traffic to this MCP server through Zero Trust Secure Web Gateway
    status string
    tools list(map(string))
    updated_prompts list(object)
    updated_tools list(object)
    account_id string
    filter object
    authType String
    Available values: "oauth", "bearer", "unauthenticated".
    createdAt String
    createdBy String
    description String
    error String
    errorDetails GetZeroTrustAccessAiControlsMcpServerErrorDetails
    hostname String
    id String
    server id
    isSharedOauthCallbackEnabled Boolean
    When true, the gateway worker uses the shared Cloudflare-owned OAuth callback endpoint as the redirectUri for upstream on-behalf OAuth, instead of the customer portal hostname. New public server creates default to true; existing servers default to false from migration until explicitly updated. Effective behavior is gated by the gateway worker's per-env rollout mode KV key.
    lastSuccessfulSync String
    lastSynced String
    modifiedAt String
    modifiedBy String
    name String
    prompts List<Map<String,String>>
    secureWebGateway Boolean
    Route outbound traffic to this MCP server through Zero Trust Secure Web Gateway
    status String
    tools List<Map<String,String>>
    updatedPrompts List<GetZeroTrustAccessAiControlsMcpServerUpdatedPrompt>
    updatedTools List<GetZeroTrustAccessAiControlsMcpServerUpdatedTool>
    accountId String
    filter GetZeroTrustAccessAiControlsMcpServerFilter
    authType string
    Available values: "oauth", "bearer", "unauthenticated".
    createdAt string
    createdBy string
    description string
    error string
    errorDetails GetZeroTrustAccessAiControlsMcpServerErrorDetails
    hostname string
    id string
    server id
    isSharedOauthCallbackEnabled boolean
    When true, the gateway worker uses the shared Cloudflare-owned OAuth callback endpoint as the redirectUri for upstream on-behalf OAuth, instead of the customer portal hostname. New public server creates default to true; existing servers default to false from migration until explicitly updated. Effective behavior is gated by the gateway worker's per-env rollout mode KV key.
    lastSuccessfulSync string
    lastSynced string
    modifiedAt string
    modifiedBy string
    name string
    prompts {[key: string]: string}[]
    secureWebGateway boolean
    Route outbound traffic to this MCP server through Zero Trust Secure Web Gateway
    status string
    tools {[key: string]: string}[]
    updatedPrompts GetZeroTrustAccessAiControlsMcpServerUpdatedPrompt[]
    updatedTools GetZeroTrustAccessAiControlsMcpServerUpdatedTool[]
    accountId string
    filter GetZeroTrustAccessAiControlsMcpServerFilter
    auth_type str
    Available values: "oauth", "bearer", "unauthenticated".
    created_at str
    created_by str
    description str
    error str
    error_details GetZeroTrustAccessAiControlsMcpServerErrorDetails
    hostname str
    id str
    server id
    is_shared_oauth_callback_enabled bool
    When true, the gateway worker uses the shared Cloudflare-owned OAuth callback endpoint as the redirectUri for upstream on-behalf OAuth, instead of the customer portal hostname. New public server creates default to true; existing servers default to false from migration until explicitly updated. Effective behavior is gated by the gateway worker's per-env rollout mode KV key.
    last_successful_sync str
    last_synced str
    modified_at str
    modified_by str
    name str
    prompts Sequence[Mapping[str, str]]
    secure_web_gateway bool
    Route outbound traffic to this MCP server through Zero Trust Secure Web Gateway
    status str
    tools Sequence[Mapping[str, str]]
    updated_prompts Sequence[GetZeroTrustAccessAiControlsMcpServerUpdatedPrompt]
    updated_tools Sequence[GetZeroTrustAccessAiControlsMcpServerUpdatedTool]
    account_id str
    filter GetZeroTrustAccessAiControlsMcpServerFilter
    authType String
    Available values: "oauth", "bearer", "unauthenticated".
    createdAt String
    createdBy String
    description String
    error String
    errorDetails Property Map
    hostname String
    id String
    server id
    isSharedOauthCallbackEnabled Boolean
    When true, the gateway worker uses the shared Cloudflare-owned OAuth callback endpoint as the redirectUri for upstream on-behalf OAuth, instead of the customer portal hostname. New public server creates default to true; existing servers default to false from migration until explicitly updated. Effective behavior is gated by the gateway worker's per-env rollout mode KV key.
    lastSuccessfulSync String
    lastSynced String
    modifiedAt String
    modifiedBy String
    name String
    prompts List<Map<String>>
    secureWebGateway Boolean
    Route outbound traffic to this MCP server through Zero Trust Secure Web Gateway
    status String
    tools List<Map<String>>
    updatedPrompts List<Property Map>
    updatedTools List<Property Map>
    accountId String
    filter Property Map

    Supporting Types

    GetZeroTrustAccessAiControlsMcpServerErrorDetails

    Cause string
    Underlying error message
    IsUpstream bool
    True = MCP server returned an error. False = couldn't reach the server
    McpCode double
    MCP protocol error code
    Retryable bool
    Whether the error is transient and worth retrying
    StatusCode double
    HTTP status code from the server
    Cause string
    Underlying error message
    IsUpstream bool
    True = MCP server returned an error. False = couldn't reach the server
    McpCode float64
    MCP protocol error code
    Retryable bool
    Whether the error is transient and worth retrying
    StatusCode float64
    HTTP status code from the server
    cause string
    Underlying error message
    is_upstream bool
    True = MCP server returned an error. False = couldn't reach the server
    mcp_code number
    MCP protocol error code
    retryable bool
    Whether the error is transient and worth retrying
    status_code number
    HTTP status code from the server
    cause String
    Underlying error message
    isUpstream Boolean
    True = MCP server returned an error. False = couldn't reach the server
    mcpCode Double
    MCP protocol error code
    retryable Boolean
    Whether the error is transient and worth retrying
    statusCode Double
    HTTP status code from the server
    cause string
    Underlying error message
    isUpstream boolean
    True = MCP server returned an error. False = couldn't reach the server
    mcpCode number
    MCP protocol error code
    retryable boolean
    Whether the error is transient and worth retrying
    statusCode number
    HTTP status code from the server
    cause str
    Underlying error message
    is_upstream bool
    True = MCP server returned an error. False = couldn't reach the server
    mcp_code float
    MCP protocol error code
    retryable bool
    Whether the error is transient and worth retrying
    status_code float
    HTTP status code from the server
    cause String
    Underlying error message
    isUpstream Boolean
    True = MCP server returned an error. False = couldn't reach the server
    mcpCode Number
    MCP protocol error code
    retryable Boolean
    Whether the error is transient and worth retrying
    statusCode Number
    HTTP status code from the server

    GetZeroTrustAccessAiControlsMcpServerFilter

    Search string
    Search by id, name
    Search string
    Search by id, name
    search string
    Search by id, name
    search String
    Search by id, name
    search string
    Search by id, name
    search str
    Search by id, name
    search String
    Search by id, name

    GetZeroTrustAccessAiControlsMcpServerUpdatedPrompt

    Alias string
    Description string
    Enabled bool
    Name string
    Alias string
    Description string
    Enabled bool
    Name string
    alias string
    description string
    enabled bool
    name string
    alias String
    description String
    enabled Boolean
    name String
    alias string
    description string
    enabled boolean
    name string
    alias String
    description String
    enabled Boolean
    name String

    GetZeroTrustAccessAiControlsMcpServerUpdatedTool

    Alias string
    Description string
    Enabled bool
    Name string
    Alias string
    Description string
    Enabled bool
    Name string
    alias string
    description string
    enabled bool
    name string
    alias String
    description String
    enabled Boolean
    name String
    alias string
    description string
    enabled boolean
    name string
    alias String
    description String
    enabled Boolean
    name String

    Package Details

    Repository
    Cloudflare pulumi/pulumi-cloudflare
    License
    Apache-2.0
    Notes
    This Pulumi package is based on the cloudflare Terraform Provider.
    cloudflare logo
    Viewing docs for Cloudflare v6.18.0
    published on Thursday, Jul 16, 2026 by Pulumi

      Try Pulumi Cloud free.
      Your team will thank you.

      Start free trial