Datto SaaS Protection
MCP server for Datto SaaS Protection — M365/GWS backups, restores, seats.
Open source Open in the app JSON README (API)
About
MCP server for Datto SaaS Protection — M365/GWS backups, restores, seats.
Details
- Kind
- MCP servers
- Topic
- No topic detected
- Publisher
- wyre-technology
- Origin
- official
- Category
- ferramentas
- Transport
- local
- Version
- 2.1.4
- Stars
- 2
- Forks
- 2
- Open pull requests
- 1
- Last push
- 2026-09-03T13:03:13Z
- Repository state
- ativo
- Language
- TypeScript
- License
- Apache-2.0
- Added
- 2026-08-29 04:01:41
- Updated
- 2026-08-29 04:01:41
- Origin id
io.github.wyre-technology/datto-saas-protection-mcp
README
# Datto SaaS Protection MCP Server [](https://github.com/WYRE-AI/datto-saas-protection-mcp/actions/workflows/ci.yml) [](https://opensource.org/licenses/Apache-2.0) A [Model Context Protocol](https://modelcontextprotocol.io) server exposing the [Datto SaaS Protection (Backupify)](https://www.datto.com/products/saas-protection/) API to Claude and other MCP clients. ## What it does Surface SaaS backup posture for your M365 and Google Workspace tenants directly to AI assistants — list customer organizations, inspect protected domains and seats, browse backup history, queue restores, and audit activity logs and license usage. - **Interactive Seat Card (MCP Apps)**: `datto_saas_get_seat` renders as an interactive backup-status card in MCP Apps hosts (Claude Desktop/web) — read-only, showing seat type, Active/Archived status, and last backup; neutral by default, brandable via `window.__BRAND__` injection or `MCP_BRAND_*` env vars; plain-JSON behavior is unchanged in other hosts ## Tools | Tool | Purpose | | --- | --- | | `datto_saas_list_clients` | List all customer organizations | | `datto_saas_list_domains` | List protected domains under a client | | `datto_saas_list_seats` | List seats in a domain (toggle archived) | | `datto_saas_get_seat` | Fetch a single seat detail | | `datto_saas_list_backups` | List backup runs for a seat | | `datto_saas_queue_restore` | Queue a restore (DESTRUCTIVE — requires confirmation) | | `datto_saas_get_restore_status` | Check restore progress | | `datto_saas_list_activity` | Org activity log (date-range elicitation) | | `datto_saas_get_license_usage` | Seat counts vs purchased | ## Credentials ### Local (env mode) ```sh export DATTO_SAAS_PUBLIC_KEY="..." export DATTO_SAAS_SECRET_KEY="..." export DATTO_SAAS_REGION="us" # or "eu" ``` ### Hosted (gateway mode) The WYRE MCP Gateway injects credentials per request via headers: - `X-Datto-SaaS-Public-Key` (required, secret) - `X-Datto-SaaS-Secret-Key` (required, secret) - `X-Datto-SaaS-Region` (optional, default `us`) ## Run ```sh npm install npm run build npm start # stdio MCP_TRANSPORT=http npm start # HTTP on :8080 ``` ## License Apache 2.0 — see [LICENSE](LICENSE).