Skip to content
Cloud InfrastructureClaude Desktop Guide

AWS SSO Identity Store Claude Desktop Integration

This guide explains how to configure Claude Desktop (Mac and Windows) to use the AWS SSO Identity Store API through the Model Context Protocol (MCP). The integration exposes 10 API endpointsas callable tools inside Claude's chat interface, including CreateGroup, CreateGroupMembership, CreateUser, and more. No API keys or credentials are needed — setup takes approximately 30 seconds. The server runs locally via npx and communicates over STDIO transport. Paste the JSON configuration below into your claude_desktop_config.json file to get started.

Integration Specs

ClientClaude Desktop
Runtimenpx
AuthenticationNone
Setup Time~30 sec

Setup Instructions

1

Open Claude Settings

Launch Claude Desktop, open Settings (click your profile) → Developer → click 'Edit Config'.

2

Locate configuration file

This opens your local 'claude_desktop_config.json' file in your system editor.

3

Insert Server Config JSON

Paste the JSON configuration schema block (provided below) into the 'mcpServers' object.

4

Add authentication credentials

No credentials needed; leave the 'env' mapping empty.

5

Restart Claude app

Save the config file and restart Claude Desktop to load your new tools.

Configuration JSON

claude_desktop_config.json

Copy and paste this config snippet inside your local configuration file.

{
  "mcpServers": {
    "amazonaws-com-identitystore": {
      "command": "npx",
      "args": [
        "-y",
        "@mcp/amazonaws-com-identitystore"
      ],
      "env": {
        "AWS_SSO_IDENTITY_STORE_API_KEY": "your_aws_sso_identity_store_api_key"
      }
    }
  }
}

Required Environment Keys

Provide these variable keys in your local environment section:

AWS_SSO_IDENTITY_STORE_API_KEY

Replace your_aws_sso_identity_store_api_key with your secret key credentials.

Available Tools (10)

These endpoints are parsed from the OpenAPI schema and converted to Claude-compatible tools:

POST/#X-Amz-Target=AWSIdentityStore.CreateGroup
CreateGroup
POST/#X-Amz-Target=AWSIdentityStore.CreateGroupMembership
CreateGroupMembership
POST/#X-Amz-Target=AWSIdentityStore.CreateUser
CreateUser
POST/#X-Amz-Target=AWSIdentityStore.DeleteGroup
DeleteGroup
POST/#X-Amz-Target=AWSIdentityStore.DeleteGroupMembership
DeleteGroupMembership
POST/#X-Amz-Target=AWSIdentityStore.DeleteUser
DeleteUser
POST/#X-Amz-Target=AWSIdentityStore.DescribeGroup
DescribeGroup
POST/#X-Amz-Target=AWSIdentityStore.DescribeGroupMembership
DescribeGroupMembership
POST/#X-Amz-Target=AWSIdentityStore.DescribeUser
DescribeUser
POST/#X-Amz-Target=AWSIdentityStore.GetGroupId
GetGroupId