---
title: "AWS CloudWatch MCP Server: review, setup & limitations · Undominated.ai"
canonical: https://undominated.ai/mcp-servers/awslabs-cloudwatch/
description: "Queries CloudWatch metrics, alarms and log data for the configured AWS account."
---

# AWS CloudWatch MCP Server: review, setup & limitations · Undominated.ai

> Queries CloudWatch metrics, alarms and log data for the configured AWS account.

[← Explore all mcp servers](/mcp-servers/)

CLOUD OPERATIONS / Amazon Web Services

# AWS CloudWatch MCP Server

Queries CloudWatch metrics, alarms and log data for the configured AWS account.

 [See setup guidance ↓](#setup)[Original source ↗](https://github.com/awslabs/mcp/tree/49de7cc11ae064b9224f07ae050c612c3f92dd55/src/cloudwatch-mcp-server)

SOURCE REVIEW

 Reviewed 2026-10-07
 Evidence 2 linked sources
 Publisher Amazon Web Services
 Licence [Apache-2.0 ↗](https://github.com/awslabs/mcp/blob/49de7cc11ae064b9224f07ae050c612c3f92dd55/LICENSE)
 Revision 49de7cc11ae0
 [Read what was—and wasn’t—checked ↓](#review)

“The CloudWatch MCP Server provides specialized tools to address common operational scenarios including alarm troubleshooting, understand metrics definitions, alarm recommendations and log analysis.”

 [Amazon Web Services · upstream description ↗](https://github.com/awslabs/mcp/blob/49de7cc11ae064b9224f07ae050c612c3f92dd55/src/cloudwatch-mcp-server/README.md) Our analysis follows below.

01 / THE REASONING

## Why this made the selection.

 - Queries CloudWatch metrics, alarms and log data for the configured AWS account.
- Investigating alarms alongside metric and log evidence.

### A good fit for

 - Investigating alarms alongside metric and log evidence
- Running scoped log queries for an incident time window

### Weigh up before choosing

 - Query execution can incur charges and expose operational or application data.
- The inspected tools provide alarm recommendations and observation; this does not establish support for creating or editing alarms.
- The recorded source revision does not pin an unversioned or @latest registry package. No end-to-end MCP setup or authenticated service operation was tested.

02 / THE REVIEW RECORD

## What we actually inspected.

Source review has boundaries. A clear record is more useful than a “safe” badge.

### Material inspected

 - src/cloudwatch-mcp-server/README.md
- LICENSE

### Our findings

 - The reviewed tool list emphasizes observation and query execution; it does not establish permission to create or edit alarms.
- The README describes local use. Credential scoping, log contents and API query costs were not exercised.

### Not established by this review

 - The pinned documentation and selected source files were reviewed; the external server was not executed by this review.
- No authenticated service requests, account mutations, tenant access controls, or end-to-end MCP client setup were tested.
- A repository revision does not pin an unversioned or @latest registry package; resolved package provenance and runtime permission enforcement remain unverified.

The review applies to the material and revision named here. A newer upstream release can change its behavior.

03 / PUT IT TO WORK

## Connect a server deliberately.

[Upstream setup instructions ↗](https://github.com/awslabs/mcp/blob/49de7cc11ae064b9224f07ae050c612c3f92dd55/src/cloudwatch-mcp-server/README.md)

DOCUMENTED COMMAND

 uvx awslabs.cloudwatch-mcp-server@latest Copy command ↗

Copying does not execute this command. It may retrieve a newer version than the reviewed source.

 - Register the uvx command.
- Use credentials for the account you mean.

### Before you start

 - uv
- AWS credentials for the service

### Compatibility

Local stdio MCP clients

### Implementation

Python

### Transports

stdio

### Local process, AWS credentials

 - Read permitted metrics, alarm information and logs.
- Start, retrieve and cancel log-query executions; query activity can incur service charges.

### Cost model

Apache-2.0 server. CloudWatch and query usage can incur AWS charges.

04 / FOLLOW THE EVIDENCE

## The source trail.

Our notes are separate from the original resource. Check upstream before adopting a new version.

 - [Server documentation ↗](https://github.com/awslabs/mcp/blob/49de7cc11ae064b9224f07ae050c612c3f92dd55/src/cloudwatch-mcp-server/README.md) Checked 2026-10-07 https://github.com/awslabs/mcp/blob/49de7cc11ae064b9224f07ae050c612c3f92dd55/src/cloudwatch-mcp-server/README.md Supports: Install command and stated scope
- [Repository licence ↗](https://github.com/awslabs/mcp/blob/49de7cc11ae064b9224f07ae050c612c3f92dd55/LICENSE) Checked 2026-10-07 https://github.com/awslabs/mcp/blob/49de7cc11ae064b9224f07ae050c612c3f92dd55/LICENSE Supports: Redistribution terms

KEEP COMPARING

## Other approaches to consider.

Related by category or shared topics. These are alternatives to inspect, not a measured quality order.

 [### AWS Billing and Cost Management MCP Server ↗ Queries account billing and cost data, with optional analysis workflows that use Athena and S3.](/mcp-servers/awslabs-aws-billing-cost-management/)[### AWS CloudTrail MCP Server ↗ Looks up CloudTrail events and runs CloudTrail Lake queries when configured for the selected account.](/mcp-servers/awslabs-cloudtrail/)[### AWS DynamoDB MCP Server ↗ Supports DynamoDB modeling, source-database analysis, local validation and code generation.](/mcp-servers/awslabs-dynamodb/)

 [AI Tools ↗](/tools/)[Skills ↗](/skills/)[Agents ↗](/agents/)[MCP Servers ↗](/mcp-servers/)[Workflows ↗](/workflows/)

## Continue your investigation

 - [Inspect resource evidence](/tools/)
- [Choose a host](/agents/)
- [Inspect reusable workflows](/skills/)
- [Use Undominated data](/api/)
