Neo4j MCP Integrations

Infrastructure · tested 2026-08-23 · re-test due 2026-11-23 · by the Hlido desk, not the vendor

In short: Vendor-official MCP integration guidance for Neo4j that is unusually candid about the protocol's unsolved problems — strong on trust, thin on the servers themselves.

4 PASS · 1 FAIL of 5 public-surface claims

Quick answer

Neo4j MCP Integrations scores 74/100 (STEADY) on Hlido’s independent, hands-on test (reviewed 2026-08-23). STEADY (74) because vendor-official documentation from an established database company carries a high continuity floor, the MCP explanation is accurate and non-promotional, and the candid statement of the protocol's open Pricing was not findable on the public surface when tested.

This is Neo4j's own developer-centre page for Model Context Protocol integrations against the graph database. As a surface it does two things well and one thing incompletely. It explains MCP accurately — host, servers, clients, tools, resources, prompts — and situates it in the wider ecosystem, naming the cloud and framework adopters (Google, Microsoft, AWS, OpenAI, the Docker MCP Catalog, LangChain, CrewAI, Pydantic.AI, ADK) rather than implying Neo4j invented the category. More notably, it states plainly that MCP still has open issues around security, discovery, trusted deployment and permission control. A vendor page that names the unsolved risks in the protocol it is promoting is a meaningfully better trust signal than one that does not, and it is rare. What the surface does not do is give a buyer or an agent a crisp inventory of what the Neo4j MCP servers actually expose: which tools, what scoping, read-only or read-write, and what happens when an agent gets Cypher access to a production graph. The page is a developer guide sitting inside a large documentation estate, so the reviewed surface is orientation rather than product specification. That is a fair thing for it to be — but it means the evaluation stops one level short of the thing that matters most, which is the security boundary around graph write access.

Why STEADY

STEADY (74) because vendor-official documentation from an established database company carries a high continuity floor, the MCP explanation is accurate and non-promotional, and the candid statement of the protocol's open security problems is a genuine trust signal. Held below the 80s because the reviewed surface is an orientation guide rather than a server specification: the tool inventory, scoping model and write-access boundary — the details that decide whether this is safe to give an agent — are not resolved here.

Public-surface checklist

What we saw

3 screenshots captured by the Hlido engine during the reviewed run (run-c703bb83d24db4c2-neo4j-com). Our own captures — not vendor marketing material.

Neo4j MCP Integrations — run screenshot 1 (home.png)
home.png
Neo4j MCP Integrations — run screenshot 2 (page_.png)
page_.png
Neo4j MCP Integrations — run screenshot 3 (page_.png)
page_.png

What it does well

What it fails at

Best for

  • Teams already on Neo4j evaluating whether to expose the graph to an agent
  • GraphRAG builders who need the vendor's framing before choosing a server
  • Anyone wanting an honest, vendor-authored primer on MCP's current limitations

Not recommended for

  • Buyers needing a concrete tool inventory and permission model before adoption
  • Non-Neo4j graph stacks
  • Agents attempting to auto-discover a callable endpoint from this page — it is prose, not a manifest

Pricing & access

Derived from Hlido-held evidence only (engine checklist + editorial text); quotes are verbatim from the scorecard; not vendor-supplied; re-derived daily. Verify current prices on the vendor's pricing page. Last verified 2026-08-23.

Compared to

Agent relevance

API MCP SDK

Agentic-Commerce Readiness 67/100 · INTEGRABLE

Independent readiness for agent delegation & transaction. How it’s scored · check live

Neo4j publishes MCP server integrations for the graph database, and this guide is the vendor's entry point to them. The page itself is prose rather than a machine-readable manifest, so an agent must follow onward links to reach an installable server; the tool surface and permission scoping are not discoverable from here.

Agent-friendly score: 6/10

Evidence

scorecard.json · transparency passport · registry · methodology

More: compare agents · best of · developer tools · incident registry

Verdict by Hlido Editor, our automated editorial system · Method: public-surface-tier-1+editorial-narrative-v2 · Methodology version 2026.05 · Next review due 2026-11-23

How this page was produced. The scores, claim verdicts and evidence come from automated hands-on testing of the product’s public surface. The written analysis is drafted by an AI system, and pages publish without a person reviewing each one. Hlido publishes this record and answers for it — tell us if anything here is wrong and we will correct it.

Embed this trust badge

Hlido trust score

Live, always-current independent score — free to embed on your site or README. No vendor pays for placement.

Markdown

[![Hlido trust score](https://hlido.eu/badge/neo4j-contrib-mcp-neo4j.svg)](https://hlido.eu/check/?agent=neo4j-contrib-mcp-neo4j)

HTML

<a href="https://hlido.eu/check/?agent=neo4j-contrib-mcp-neo4j"><img src="https://hlido.eu/badge/neo4j-contrib-mcp-neo4j.svg" alt="Hlido trust score"></a>