🎃 Add a Helm chart for self-hosted Kubernetes installs
メンテナーはふだん 1 日以内に返信
まだ誰も着手していません。
評価
- 難易度
- 5/5
- 見積もり時間
- 1週間以上
- 初心者へのやさしさ
- 38/100
- issue の種類
- 機能追加
- 明瞭さ
- 明確に書かれている
- 活発さ
- 活発
- 技術スタック
- docker, helm, kubernetes, postgresql, redis, typescript
- 領域
- devops, infrastructure
調査の方向性
Start with docker-compose.yml:36–110 and Dockerfile:158–175 to map the app’s environment, ports, and runtime, then read the secret validation and health endpoint references. Build and validate the chart under deploy/helm/anythingmcp with helm lint and helm template, then test installation and upgrade on kind or minikube. Done means the acceptance criteria pass, including stable generated secrets and the Helm documentation.
索引モデルが issue の本文から書いたものです。
説明
Part of the October Challenge #846.
Why
Companies that self-host AnythingMCP increasingly run everything on Kubernetes (AKS, EKS, OpenShift, k3s) and do not want to translate docker-compose.yml by hand. A maintained chart in the repo is the standard entry point (n8n, Langfuse, Flowise and Dify all ship one). This issue is the first step: a single-replica chart that mirrors the Compose stack and passes helm lint.
Self-hosted vs Cloud
- Self-hosted: this is the whole point. Works for Community and Business; the license key is entered in the UI as today, nothing edition-specific in the chart.
- Cloud (
DEPLOYMENT_MODE=cloud): not affected. AnythingMCP Cloud is deployed bydocker-compose.cloud.yml+deploy/cloud/; do not change those files, and the chart must not exposeDEPLOYMENT_MODEas a value (it is our operating mode, not a user option). - Who can use it: cluster operators. No app roles involved; the first user who registers becomes
ADMINas with Compose.
What to build
deploy/helm/anythingmcp/ with Chart.yaml (apiVersion v2, appVersion = root package.json version, currently 0.18.0), values.yaml, templates/, README.md.
- App — one
Deploymentfromhelpcodeai/anythingmcp:<appVersion>running the default./start.sh(backend + frontend in one container, migrations on start).replicas: 1andstrategy: Recreatein this first version (see Out of scope for why). Ports3000(http) and4000(api), oneService. - Env — everything the
appservice sets indocker-compose.yml:50–99, as values. Required secrets in a chart-managedSecretorexistingSecret:JWT_SECRET,ENCRYPTION_KEY(min. 32 chars; must never change after install),MCP_API_KEY/MCP_BEARER_TOKEN, DB password. Do not ship defaults: the backend refuses placeholder values at startup (secrets.util.ts:41); userequiredin templates, or generate withrandAlphaNumand keep them stable across upgrades withlookup. - PostgreSQL —
postgresql.enabled: truedeploys a simpleStatefulSetofpostgres:17-alpinewith a PVC (no third-party subchart).externalDatabase.url/existingSecretwhenenabled: false→ buildsDATABASE_URL. - Redis — optional (
redis.enabled: falseby default, like Compose); when on, a smallredis:7-alpineDeployment andREDIS_URLset.externalRedis.urlalternative. - MOTIS — optional (
motis.enabled: false); when on, also addmotistoSSRF_ALLOWED_HOSTSand setMOTIS_INTERNAL_URL(docker-compose.yml:77–85,:135). - Ingress — optional,
className,hosts,tls. Route the backend paths to port 4000 and everything else to 3000. Take the list from therewrites()inpackages/frontend/next.config.ts:19(the Cloud Caddyfile says it must match it):/api,/health,/mcp,/.well-known,/auth,/sso,/authorize,/callback,/token,/register,/userinfo, plus/revokefromsetup.sh:463. (setup.sh:455–467is older and misses/ssoand/userinfo.) Document nginx annotations for SSE/streaming (proxy-buffering: off, longproxy-read-timeout). SetSERVER_URL,FRONTEND_URL,CORS_ORIGIN,NEXT_PUBLIC_API_URLfrom the first host. - Probes —
startupProbeHTTPGET /healthon 4000 with a generousfailureThreshold(migrations run first);readinessProbeGET /health;livenessProbetcpSocket 4000, not/health(it checks the database, and a DB blip must not restart the app —health.controller.ts:74). securityContext: non-root (the image runs asappuser,Dockerfile:158),resources,nodeSelector/tolerations/affinity,podAnnotations,serviceAccount.- CI (optional but welcome): a job in
.github/workflows/ci.ymlrunninghelm lintandhelm template(orchart-testingct lint).
Where to look
docker-compose.yml:36–110(app),:113(postgres),:135(motis),:156(commented redis) — source of truth for services and env.start.sh:57,:64—frontend/allmodes;run_migrationsat the top.Dockerfile:158–175— user, ports, healthcheck, CMD.packages/backend/src/health/health.controller.ts:74—/health(DB, Redis, heap).packages/backend/src/common/secrets.util.ts:41— startup secret validation.setup.sh:455— path routing the Compose Caddy setup uses.deploy/cloud/Caddyfile:76–123— explains why a split frontend/backend needs explicit backend routes (Next rewrites are baked withlocalhost:4000).docs/deployment.md:159— production deployment docs to extend.
Acceptance criteria
-
helm lint deploy/helm/anythingmcppasses with default values and withpostgresql.enabled=false,externalDatabase.url=…. -
helm installon kind/minikube: pod becomes Ready, UI reachable via port-forward/Ingress, registration works,/mcp/<serverId>answers with an API key. Put the exact commands you ran in the PR. -
helm upgradekeeps generated secrets (no newENCRYPTION_KEY, which would make stored credentials unreadable). - No secret value appears in
helm templateoutput unless the user passed it. - Docs:
deploy/helm/anythingmcp/README.md(values table) + a "Kubernetes (Helm)" section indocs/deployment.md.
Out of scope
- Multiple replicas / HPA / split frontend+backend pods. Needs Redis for shared rate limits,
MCP_STATEFUL_SESSIONSoff or sticky sessions (mcp-session.manager.ts:67), and migrations moved to a Job — follow-up issue. - Publishing the chart to a Helm repo / OCI registry, Artifact Hub listing.
- Operator, Kustomize, Terraform.
- Prometheus
ServiceMonitor(comes after the metrics endpoint in #854).
Size
L (several days, may be split: chart + lint first, Ingress/MOTIS second).
How to claim
Comment "I'd like to work on this" and we'll assign you. Rules in #846.
- 主要言語
- TypeScript
- スター
- 856
- フォーク
- 82
- 平均マージ
- 8時間 27分
- マージ済み PR(30日)
- 104
環境構築
このプロジェクトには開発コンテナ、Dockerfile、コントリビューションガイドがありません。まず README を読み、一般的な手順ははじめてのコントリビューションガイドを参照してください。
はじめの一歩
- issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
- 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
- リポジトリをフォークし、ブランチを切って変更します。
- issue 番号を参照したプルリクエストを送ります。
HelpCode-ai/anythingmcp のほかの issue
-
good first issue hacktoberfest
難易度 2/5 半日 初心者へのやさしさ 70/100
HelpCode-ai/anythingmcp#996 ·
メンテナーはふだん 1 日以内に返信
-
good first issue hacktoberfest
難易度 2/5 半日 初心者へのやさしさ 72/100
HelpCode-ai/anythingmcp#995 ·
メンテナーはふだん 1 日以内に返信
-
enhancement good first issue hacktoberfest help wanted
難易度 2/5 1〜3時間 初心者へのやさしさ 78/100
HelpCode-ai/anythingmcp#982 ·
メンテナーはふだん 1 日以内に返信
-
good first issue hacktoberfest
難易度 2/5 1〜3時間 初心者へのやさしさ 88/100
HelpCode-ai/anythingmcp#745 ·
メンテナーはふだん 1 日以内に返信
-
🐣 Good first issue: contribute a new MCP adapter再び着手できるかも @7k777 が 20 日前に担当しましたが、オープン中のプルリクエストはありません。 オープンenhancement good first issue hacktoberfest help wanted
難易度 2/5 1〜3時間 初心者へのやさしさ 85/100
HelpCode-ai/anythingmcp#150 · コメント 18 件 ·
メンテナーはふだん 1 日以内に返信
HelpCode-ai/anythingmcp の issue をすべて見る
似ている issue
-
by: ai-assisted frontend good-for: new-member spike
難易度 2/5 1〜3時間 初心者へのやさしさ 68/100
Northeastern-Electric-Racing/Argos#847 ·
メンテナーはふだん 4 日以内に返信
-
難易度 1/5 1〜3時間 初心者へのやさしさ 84/100
SignalK/freeboard-sk#990 ·
メンテナーはふだん 1 日以内に返信
-
[missing-inheritance] audit review (1 preset)対応中かも @github-actions が今日担当しました。 オープン
難易度 1/5 1時間未満 初心者へのやさしさ 82/100
osmberlin/tagging-schema-browser#363 · コメント 1 件 ·
メンテナーはふだん 1 日以内に返信
-
enhancement
難易度 2/5 1〜3時間 初心者へのやさしさ 68/100
Albert-Weasker/niubigeo#205 ·
メンテナーはふだん 1 日以内に返信
-
area/frontend area/v2 kind/bug priority/needs-triage
難易度 2/5 1〜3時間 初心者へのやさしさ 70/100
kubeflow/notebooks#1498 · コメント 1 件 ·
メンテナーはふだん 1 日以内に返信