# Reported issues for Crossplane

Pod holds 5 of 5 GitHub reports that passed its relevance review. This can include external user reports, maintainer-confirmed bugs, and concrete feature gaps. Treat them as evidence to inspect, not a count of distinct defects.

Back to [Crossplane](/mcp/crossplane).

## Most discussed

### feat(provisioning): opt-in write capabilities, creating through the control plane's own platform APIs

## Problem

The server can explain a control plane in detail and then has to stop. An
operator asks their assistant "why is orders-db not ready?", gets a good
answer, and then has to leave the conversation to do anything about it. The
same is true of the first thing anyone wants to demo: "create me a Postgres
database" is the question a platform API exists to answer, and today we cannot
answer it.

The reason we have not done it is good — on a Crossplane control plane a
mistaken write is a…

[Read the thread](https://github.com/ravibagri5/crossplane-mcp-server/issues/15) · 2026-09-16 · closed · 0 comments

### Expose XRD schemas through the MCP resources primitive

## Problem

`crossplane_xrd_schema` returns an XRD API contract, but only as a tool call. A client cannot attach the schema as context up front, so every question about a platform API costs a round trip — and this becomes a real constraint once a model is drafting claims under v0.8.

## What to build

Expose each XRD schema as an MCP **resource** alongside the existing tool, so clients can subscribe to and attach them directly.

## Acceptance

- Resource URIs are stable and derived from…

[Read the thread](https://github.com/ravibagri5/crossplane-mcp-server/issues/12) · 2026-09-15 · closed · 0 comments

### Explain why a package will not install

## Problem

A `Configuration` or `Provider` that will not install reports a terse condition. The actual reason — a version constraint conflict, a missing dependency, or registry authentication — is buried.

## What to build

Extend package inspection to explain install failures in terms of the dependency graph and the constraint that could not be satisfied.

## Acceptance

- Names the conflicting constraint and the packages on each side of it
- Distinguishes registry auth failure from…

[Read the thread](https://github.com/ravibagri5/crossplane-mcp-server/issues/11) · 2026-09-15 · open · 0 comments

### Explain a stuck deletion as one answer

## Problem

`crossplane_deleting_resources` and `crossplane_impact` each answer part of "why will this not delete?". The user has to assemble finalizers, `Usage` blocks and orphaned external resources themselves.

## What to build

One answer covering the finalizers present, which `Usage` or `ClusterUsage` blocks the delete, what is orphaned versus deleted given each `deletionPolicy`, and what would unblock it.

## Acceptance

- Names the specific blocking object, not just "a Usage exists"
-…

[Read the thread](https://github.com/ravibagri5/crossplane-mcp-server/issues/10) · 2026-09-15 · open · 0 comments

### Report ProviderConfig and credential resolution for a managed resource

## Problem

Credential failure is the most common cause of `Synced=False`, and it is currently invisible to the server. A model asked "why is this Bucket not syncing?" has no way to see which `ProviderConfig` is in play or whether its secret resolves, so it guesses.

## What to build

For a managed resource, report the `ProviderConfig` it references, the credential source (`Secret`, `InjectedIdentity`, IRSA, workload identity), and whether that source currently resolves.

## Acceptance

- Never…

[Read the thread](https://github.com/ravibagri5/crossplane-mcp-server/issues/6) · 2026-09-15 · open · 0 comments

## Most recent

The remaining reports are on [the project's issue tracker](https://github.com/ravibagri5/crossplane-mcp-server/issues).
