strazactl apps
Manage MCP servers
On this page
strazactl apps [flags]
Options inherited from parent commands
--server string strazad base URL (overrides $STRAZA_SERVER and the server you logged into)
See also
- strazactl: Straza admin CLI
- strazactl apps bind: Give a role the server owns access to its tools (a tool without access does not exist for the role)
- strazactl apps disable: Pause a server: stop it and keep it stopped until re-enabled
- strazactl apps enable: Clear a server’s admin pause and (re)start it
- strazactl apps export: Print a server’s stored manifest as app.yaml on stdout, the document apps install takes
- strazactl apps import: Convert an MCP registry server.json into an App manifest, by the registry import rules of the app manifest specification
- strazactl apps install: Install or update MCP servers from app.yaml manifests
- strazactl apps list: List MCP servers with live status, the reason behind it and the roles that reach each
- strazactl apps logs: Show recent runtime log lines for a server
- strazactl apps recheck: Trigger an immediate health probe and print the refreshed state
- strazactl apps remove: Stop and remove a server
- strazactl apps secret: Manage a server’s static secret (injected gateway-side, never client-visible)
- strazactl apps show: Show one server in full: health and its reason, tools, who has access and how each tool runs, the stored secrets
- strazactl apps tools: List exposed MCP tools with their upstream descriptions, every server or one
- strazactl apps unbind: Remove a role’s access to a server (the id is in bindings list and apps show)