View Categories

Connect Azure SQL to Claude with MCP

4 min read

MCP · Azure SQL to Claude

Ask Claude about your Azure SQL database, in plain English

Connect Claude, Claude Code, Cursor or any MCP client to Query Streams once. Claude reads the structure of your Azure SQL database, writes the SQL, runs it read-only through the Agent that already sits with your data, and answers with the rows. No database password ever reaches the AI. About ten minutes, and the Free plan covers it.

About 10 minutes Claude, ChatGPT, Cursor + 11 more clients Credentials stay with you Read-only, always
Stuck at any point? Just ask us. Open Support in Query Streams (top-right menu → Support) and send us a message. Real people read it, and “I don’t know what this screen is asking for” is a perfectly good question.

What you’ll end up with

Azure SQL logoA Claude that can answer questions about your Azure SQL database with live, read-only queries, explain what the columns mean, and follow up when you ask for more — without ever seeing a database login, and without a firewall change: the Agent already inside your network runs the SQL and sends back only the rows. Once the Agent is in place, connecting Claude takes about 90 seconds if you are comfortable with a settings screen. Like this:

Nova, the Query Streams assistant

Rather not wire up an AI client at all? On the Business plan, Nova is the assistant built into Query Streams itself. It has every tool Claude gets here, plus the ones Claude does not: it drafts and validates the SQL against your Schema Intelligence model, turns the answer into a chart, and saves the result as a query your team can run from Excel, Google Sheets or the REST API — no key, no connector, nothing to install. Use MCP when your people already live in Claude, Cursor or ChatGPT; use Nova when you want the answers inside the Portal.

Azure SQL holds your data in the cloud, run by its provider. Claude, on the other hand, lives in a browser or a terminal and knows nothing about it. The usual bridge is pasting a schema into the chat and hoping, or handing an open-source MCP server your Azure SQL password. Query Streams does it differently: the Agent that already sits with your Azure SQL database runs the SQL Claude writes, read-only, and the MCP server in between checks who is asking, what they may do and how often. Claude gets answers. It never gets credentials.

Azure SQL Database is Microsoft’s managed SQL Server engine in Azure. This guide uses the Query Streams MCP server through your Agent, not Microsoft’s Azure MCP Server or its SQL MCP Server.

WHERE THE AGENT RUNSany always-on computer or server with internetYour Azure SQLdatabasecredentials stay hereQuery Streams Agentruns the SQL Claude writesSELECT only, enforced hereQuery StreamsMCP serverchecks key, scopes, rate limit · logs every callWHERE YOU ASKclaude.ai, Claude Desktop, Claude Code, Cursor, ChatGPTYour AI clientholds a key or a connection, never a password
Claude never touches your Azure SQL database. It asks the Query Streams MCP server, which relays the request over the outbound connection your Agent already holds open. The Agent runs the query and sends back only the rows.

What you’ll need

A Query Streams account

MCP is on every plan, including Free. Free allows one key or one connected app, which is all this guide needs. Sign up at my.querystreams.com.

Azure SQL connected through the Agent

The Agent installed on any always-on computer, with the Azure SQL connection added in Data Agents.

Pick the Azure SQL card under Relational. It pre-fills port 1433, Encrypt Connection on and Trust Server Certificate off, since Azure's certificate is publicly trusted. In the Azure portal, open the database, choose Settings then Connection strings, and paste the ADO.NET string. The portal masks the password, so type it yourself. Name your actual database, not master.

MCP switched on for you

Creators, owners and admins have it from the start. Everyone else needs an admin to flip the MCP switch beside their name under Account → Access Control. Until then the MCP page says “MCP is disabled for your account”.

An AI client

Claude on the web, Claude Desktop or the Claude mobile apps connect with no key. Claude Code, Cursor, ChatGPT and about ten other tools work too; the Portal has a ready-made recipe for each.

Where does the work happen? On the computer that runs the Agent. It receives the SQL Claude wrote, checks it is a SELECT, runs it and returns the rows. So that computer needs to be on when you ask; your own laptop only needs the AI client.

Set it up in four steps

  1. Open MCP in the portal

    Sign in at my.querystreams.com and open Streams → Live → MCP. The page has four tabs: Connect, Connected Apps, My Keys and, for admins, Activity. Check the My Keys side panel while you are here: it lists your Azure SQL connector and whether Schema Intelligence has run on it. Complete coverage is what lets Claude write correct Azure SQL SQL on the first try.

    Seeing “MCP is disabled for your account”? Your organization has MCP but your user is switched off. An admin turns it on with the MCP switch beside your name under Account → Access Control. Creators, owners and admins are on from the start.

  2. Choose how you will connect

    There are two ways in, and they end at the same place:

    Chat apps · no key

    claude.ai, Claude Desktop, ChatGPT

    In Claude, Query Streams is in the Anthropic Connectors Directory: browse connectors, click Connect. Elsewhere you paste one address into the app, https://mcp.querystreams.com/mcp, and connect from a chat. A Query Streams page opens, you pick the organization and the permissions, and click Approve connection. Nothing to copy, nothing to keep secret. The connection appears under Connected Apps and can be revoked there.

    Developer tools · a key

    Claude Code, Cursor, VS Code and friends

    On My Keys click Generate key. Give it a Key name such as “Claude Code on my laptop”, keep Read and Execute ticked, choose an Expiration (Never, 30 days, 90 days or 1 year) and click Generate key. Copy it, then Continue to install: the Connect tab shows the exact snippet for your tool with the key already filled in.

    Both ways use the same three permissions, which you choose on the consent screen or on the key:

    Read
    List connectors, browse tables and columns, read your saved queries and alert rules. Never returns row data.
    Execute
    Run read-only SQL and saved queries through your Agent and return the rows. Without it Claude can describe your data but not answer from it.
    Analyze
    Profile tables, discover relationships and queue a Schema Intelligence run. It spends Nova AI credits and data allowance, so the consent screen never pre-ticks it.

    Lost the key? Open My Keys: the eye icon shows it again and Copy full key copies it. Revoke it there if a laptop goes missing; every client using it fails on its next call, within about five minutes.

  3. Connect Claude

    Pick the recipe for the Claude you use. The server address is the same everywhere: https://mcp.querystreams.com/mcp.

    Claude on the web, Claude Desktop and mobile no key

    1. Open Settings → Connectors and click Browse connectors. Query Streams is listed in the Anthropic Connectors Directory: find Query Streams and click Connect. (Or open the directory listing directly and click Connect there.)
    2. If your organization hides directory connectors, click Add custom connector instead. Name it Query Streams, paste https://mcp.querystreams.com/mcp, leave the OAuth fields empty, click Add, then in any chat click + → Browse connectors → Query Streams → Connect.
    3. A Query Streams tab opens. Sign in if asked, pick the organization, review Read and Execute, optionally Limit to specific connectors, and click Approve connection.
    4. Back in Claude you see “Connected to Query Streams”. The first time Claude uses a tool it asks; choose Always allow.

    If you do add it by hand in Claude Desktop, use Settings → Connectors → Add, not the in-chat Add marketplace option, which expects a git repository. Connectors sync to your Claude account, so the mobile apps and Desktop pick it up automatically. Menu names are Anthropic’s and can move.

    Claude Code key

    One command, with your key from My Keys:

    Terminal
    claude mcp add --transport http querystreams https://mcp.querystreams.com/mcp \
      --header "X-MCP-Key: qsmcp_PASTE_YOUR_KEY_HERE"

    That writes the current project’s .mcp.json. Add --scope user to have Query Streams in every project. Run /mcp inside Claude Code to see it connected.

    Cursor key

    Open Cursor Settings → MCP → Add New MCP Server, or edit .cursor/mcp.json at the root of your workspace:

    .cursor/mcp.json
    {
      "mcpServers": {
        "querystreams": {
          "url": "https://mcp.querystreams.com/mcp",
          "headers": {
            "X-MCP-Key": "qsmcp_PASTE_YOUR_KEY_HERE"
          }
        }
      }
    }

    Restart Cursor or run MCP: Restart Servers; a querystreams badge appears in the MCP status bar.

    Using something else? The Connect tab has ready-to-paste recipes for ChatGPT, VS Code, Visual Studio, OpenAI Codex CLI, Gemini CLI, Windsurf, Zed, Cline, Continue.dev and JetBrains AI, plus a Paste & merge tool that drops the querystreams entry into a config file you already have. Any client that speaks MCP over HTTP works: server https://mcp.querystreams.com/mcp, header X-MCP-Key (an Authorization: Bearer header with the same key also works).

  4. Ask your first question

    Start with something you already know the answer to, so you can see Claude reach for the right tool. Three that work well with your Azure SQL database:

    “What data do I have in my Azure SQL database?”
    Claude lists the tables it can see, tells you which have Schema Intelligence, and asks what you want to look at.
    “Show me ten rows from Customers and explain each column.”
    Claude reads the table structure first (Read), then runs one SELECT through your Agent (Execute) and describes what CompanyName and City mean.
    “How many rows does Customers have per City? Which City has the most?”
    Claude writes the GROUP BY in Azure SQL’s dialect, runs it, and answers in a sentence with a small table. Follow up in the same chat; it keeps the context.

    To confirm the wiring, ask “What Query Streams connectors do I have?”. Claude calls qs_list_connectors, and on My Keys the key’s Last used time updates within a few seconds. A connected app shows up under Connected Apps with the time it was connected and last used.

That’s it. Claude now answers from your Azure SQL database whenever you ask, in whatever Claude you opened. Nothing left your network except the rows a question needed, and nobody typed a password into an AI.

What Claude can do once connected

Claude sees nineteen small tools. You never call them yourself; Claude picks the right one for your question. In plain terms:

Understand your data

List connectors, databases and Agents. Read the tables and columns of your Azure SQL database with descriptions, sample values and relationships when Schema Intelligence has run.

Profile and explore

Profile a column to see its real values before filtering on it. Discover joins between tables that never had a foreign key declared. (Analyze)

Use your saved queries

List the saved, parameterised queries your team trusts and run them with new values. Federated queries that span sources run server-side and come back already joined.

Run read-only SQL

Write and run a SELECT in the right dialect for Azure SQL. Up to 1,000 rows and 60 seconds by default; Claude can ask for more, up to 50,000 rows and five minutes. (Execute)

Check alerts

List your alert rules, their current state and recent firings. Claude can draft a rule as a dry run; a person arms it on the Alerts page.

Improve the model

Check Schema Intelligence coverage per database and, with your agreement, queue a run so the next answers are better. (Analyze)

The tool names, if you want to recognise them in Claude’s replies
PermissionTools
Readqs_list_organizations qs_list_agents qs_list_connectors qs_get_si_status qs_get_connector_schema qs_get_table_schema qs_get_relationships qs_list_saved_queries qs_get_task_status qs_list_alert_rules qs_get_alert_state qs_list_recent_alerts
Analyzeqs_profile_table qs_discover_relationships qs_request_si_analysis qs_setup_si
Executeqs_run_query qs_run_saved_query qs_create_alert_rule (proposes only; never armed from Claude)

Why Schema Intelligence matters here

Every answer Claude receives is tagged with where the structure came from, and Claude adjusts how much it trusts what it sees.

TierWhat Claude seesResult
Schema IntelligenceDescriptions for every table and column, sample values, enum meanings, declared and discovered joins.Claude writes the right Azure SQL SQL first time and explains the data in your business terms.
Captured schemaTable and column names, types, keys.Claude works, but infers meaning from names and may ask a follow-up.
Live schemaThe database is outside the connector’s capture selection, so structure is read live on each request (needs the Execute permission; SQL Server, MySQL and PostgreSQL).Queries still run. Claude explores with small selects when it needs more.

If a database matters, run Schema Intelligence on it once from Nova → Intelligence. The My Keys tab shows a coverage panel per connector. How Schema Intelligence works.

What the plans allow

MCP is on every plan, including Free, with no separate fee. What each plan sets is how many keys or connected apps you can hold and how many calls a minute Claude may make:

PlanKeys per userKeys per organizationCalls per minute
Free1130
Personal Core1160
Personal Plus1190
Business Core23120
Business Plus35150
Business Max510240
Enterprise Core525300
Enterprise Plus850450
Enterprise Max10100600

A connected app counts as a key. On top of the per-minute figure, any one key may run at most 10 queries a minute. A query returns up to 1,000 rows and runs for up to 60 seconds unless Claude asks for more, to a ceiling of 50,000 rows and five minutes. The rows Claude receives count against your Data Realm allowance, the same pool your Excel and Sheets queries use, and MCP is measured before compression, so a wide result costs more here than the same rows in a spreadsheet. Schema Intelligence runs started from Claude spend Nova AI credits, exactly as they do from the Portal. See the pricing page for the allowances.

Keeping it safe

Read-only, checked by the Agent

Only SELECT statements run. The check happens on the computer that runs the Agent, before your Azure SQL database sees the SQL, so nothing Claude writes can change data.

No credentials in the AI

The Azure SQL login stays on the Agent. Claude holds a Query Streams key or connection, which you can revoke from the MCP page; the change takes effect within about five minutes.

Everything is logged

Every tool call appears on the MCP Activity tab and every query in Query History as client type MCP, attributed to the person whose key or connection made it. The SQL text and the key itself are never written to the activity log.

What the AI provider receives

Table and column names, the Schema Intelligence descriptions including sample values, and the rows of the queries you ask for. Those go to the AI provider you connected, under its terms. Query Streams never sees your chat.

Good next moves

  • Save the queries you consider canonical in Query Builder. Claude reaches for saved queries first, so “active customers” means what your team says it means.
  • Use a Claude Project with Query Streams attached and put your house rules in its instructions: which Azure SQL database to use by default, which saved queries are the official definitions.
  • Grant Analyze when you want deeper answers. Profiling a column before filtering on it is the difference between guessing a status code and using the right one. It spends Nova AI credits, so it is off until you say so.
  • Ask for a chart. claude.ai draws charts from the rows Claude gets back.

When something doesn’t work

What you seeWhat it meansFix
Claude shows no Query Streams toolsThe connector was added but never connected from a chat, or the key was pasted into the wrong place.In Claude: + → Browse connectors → Query Streams → Connect. In a developer tool: restart it, then check Last used on My Keys.
MCP_KEY_REQUIRED or 401No key reached the server, usually a stray newline from copy and paste or the key in the wrong header.Copy the key again from My Keys and send it in the X-MCP-Key header.
MCP_USER_DISABLEDAn admin switched MCP off for your user.Ask them to turn the MCP switch back on under Account → Access Control.
MCP_SCOPE_REQUIRED or MCP_SCOPE_DENIEDThe key or connection lacks the permission for that action, usually Execute.Edit the key on My Keys and tick Execute, or reconnect the app and approve it.
MCP_KEY_ORG_LIMIT_EXCEEDEDYour plan’s key limit is used up. On Free that is one key or one connected app.Revoke one you no longer use, or move up a plan.
MCP_AGENT_NOT_CONNECTED or MCP_AGENT_NOT_REGISTEREDThe Agent that owns your Azure SQL database is not connected right now.Open Data → Data Agents and start the Agent on its computer.
MCP_DATABASE_NOT_CAPTUREDThe database is outside the connector’s capture selection, so there is no stored schema or Schema Intelligence for it. Queries still work.Add it to the capture selection on the connector, then run Schema Intelligence if you want richer answers.
MCP_RATE_LIMITEDToo many calls a minute for your plan, or more than 10 query runs a minute on one key.Wait a moment. Schema Intelligence lets Claude answer in fewer calls.
MCP_QUERY_TIMEOUT or MCP_OUTPUT_TOO_LARGEThe query ran past its timeout or returned more than Claude can take in one reply.Ask for fewer rows or columns, or a date filter. Claude usually suggests this itself.
MCP_DATA_REALM_EXHAUSTEDYour organization’s data allowance for the period is used up.Wait for the allowance to reset or top it up from the Portal.
Read-only violationThe SQL was not a SELECT.By design. Nothing writes through MCP.

Questions people ask

Can Claude change my Azure SQL data?

No. The Agent accepts only SELECT statements and checks that before the SQL runs. Claude can queue a Schema Intelligence run or draft an alert rule as a dry run; both write to Query Streams metadata, never to your Azure SQL database.

Do I need to open a port or run a VPN?

No. The Agent makes one outbound connection on port 443 and both requests and rows travel over it. If outbound HTTPS works, MCP works.

Does the Free plan really cover this?

Yes. Free is a plan you keep, not a trial that expires. MCP is included on every plan; Free allows one key or one connected app and 30 calls a minute. See exactly what Free includes on the pricing page.

Which AI tools work besides Claude?

Anything that speaks MCP over HTTP: ChatGPT, Cursor, VS Code with Copilot, Visual Studio, OpenAI Codex CLI, Gemini CLI, Windsurf, Zed, Cline, Continue.dev and JetBrains AI all have a ready-made recipe on the Connect tab.

Does Claude see the whole organization?

A key reaches every connector your organization has. A connected app can be limited to specific connectors when you approve it. Each key or connection belongs to one organization; connect once per organization you need.

What is the difference between this and Nova?

Nova is the assistant inside the Query Streams Portal and shares the same Schema Intelligence model. Use Nova when you want answers inside Query Streams; use MCP when you want your data inside Claude next to everything else you do there.

Does Claude know Azure SQL’s SQL dialect?

Yes. Every schema answer tells Claude which connector type it is looking at, and Claude writes SQL for that engine. With Schema Intelligence it also sees column descriptions and sample values, so it stops guessing what a status code or an abbreviation means.

Does my Azure SQL database have to be on the same computer as Claude?

No. Only the Agent has to be where your Azure SQL database is, or on any always-on computer with internet access. Claude can be on your laptop, your phone or a server somewhere else; it only ever talks to Query Streams.

Still stuck? Open Support in Query Streams and tell us which step you are on and what you see. We will get you connected.
Updated on September 28, 2026

Powered by BetterDocs