- SSH MCP Tool — Production-Grade SSH Automation for AI Agents
SSH MCP Tool — Production-Grade SSH Automation for AI Agents
Production-grade MCP server that opens persistent SSH sessions and exposes safe, structured tools for command execution, file operations, transfers, tunnels, package and service management, metrics, resources, and guided prompts. Secure by default: strict host-key verification, root login disabled, raw sudo policy-gated, destructive commands denied unless explicitly allowed.
Overview
SSH MCP Tool
Production-grade MCP server for SSH automation. Opens persistent SSH sessions and exposes safe, structured tools to MCP clients (Claude Desktop, Cursor, VS Code, ChatGPT, custom agents).
Why this server
- Trust: central policy engine, structured audit events, redacted logs, strict host keys, machine-readable errors.
- MCP quality: stdio for local clients, Streamable HTTP for remote clients, legacy SSE only behind an explicit compatibility flag.
- AI-friendly tools: stable output schemas,
structuredContent, annotations for read-only / destructive / idempotent behavior, resources, and curated prompts. - Operations: session TTL/eviction, command timeouts, transfer checksum verification, real SSH forwarding, Prometheus metrics, OpenTelemetry hooks.
- Portability: SFTP first, POSIX/BusyBox-aware shell fallbacks, explicit support boundaries.
Quick Start
npm install -g mcp-ssh-tool
Add to your MCP client configuration:
{
"mcpServers": {
"ssh-mcp": {
"command": "npx",
"args": ["-y", "mcp-ssh-tool"]
}
}
}
Use it from your AI client:
Open a safe SSH session to prod-1 as deploy, inspect host capabilities, then show disk usage.
Security defaults
- Strict host-key verification is on
- Root login is off
- Raw sudo is policy-gated
- Destructive commands and filesystem mutations are denied unless policy allows them
- Remote HTTP starts on loopback only unless bearer auth and allowed origins are configured
Available tools
ssh.session.open/ssh.session.close— persistent session lifecyclessh.exec— run commands with timeout, structured output, audit logssh.file.read/ssh.file.write/ssh.file.list— safe file operationsssh.transfer.upload/ssh.transfer.download— SFTP with checksum verificationssh.tunnel.open— local/remote port forwardingssh.package.install/ssh.service.restart— package and systemd managementssh.metrics— host metrics (CPU, RAM, disk, network)- Plus resources and guided prompts
Requirements
- Node.js 22.22.2+ or 24.14.1+ (LTS only)
- SSH access to target hosts
- Populated
known_hostsfile or explicit per-session host-key policy
Links
- GitHub: https://github.com/oaslananka/mcp-ssh-tool
- npm: https://www.npmjs.com/package/mcp-ssh-tool
- MCP Registry: https://registry.modelcontextprotocol.io/v0.1/servers/io.github.oaslananka%2Fmcp-ssh-tool
- Documentation: https://github.com/oaslananka/mcp-ssh-tool#readme
License
MIT
Server Config
{
"mcpServers": {
"ssh-mcp": {
"command": "npx",
"args": [
"-y",
"mcp-ssh-tool"
],
"env": {
"MCP_SSH_KNOWN_HOSTS": "~/.ssh/known_hosts",
"MCP_SSH_LOG_LEVEL": "info"
}
}
}
}Recommend Servers
TraeBuild with Free GPT-4.1 & Claude 3.7. Fully MCP-Ready.
Amap Maps高德地图官方 MCP Server
EdgeOne Pages MCPAn MCP service designed for deploying HTML content to EdgeOne Pages and obtaining an accessible public URL.
Jina AI MCP ToolsA Model Context Protocol (MCP) server that integrates with Jina AI Search Foundation APIs.
Y GuiA web-based graphical interface for AI chat interactions with support for multiple AI models and MCP (Model Context Protocol) servers.
Serper MCP ServerA Serper MCP Server
CursorThe AI Code Editor
AiimagemultistyleA Model Context Protocol (MCP) server for image generation and manipulation using fal.ai's Stable Diffusion model.
MiniMax MCPOfficial MiniMax Model Context Protocol (MCP) server that enables interaction with powerful Text to Speech, image generation and video generation APIs.
Tavily Mcp
Baidu Map百度地图核心API现已全面兼容MCP协议,是国内首家兼容MCP协议的地图服务商。
DeepChatYour AI Partner on Desktop
WindsurfThe new purpose-built IDE to harness magic
Visual Studio Code - Open Source ("Code - OSS")Visual Studio Code
Zhipu Web SearchZhipu Web Search MCP Server is a search engine specifically designed for large models. It integrates four search engines, allowing users to flexibly compare and switch between them. Building upon the web crawling and ranking capabilities of traditional search engines, it enhances intent recognition capabilities, returning results more suitable for large model processing (such as webpage titles, URLs, summaries, site names, site icons, etc.). This helps AI applications achieve "dynamic knowledge acquisition" and "precise scenario adaptation" capabilities.
RedisA Model Context Protocol server that provides access to Redis databases. This server enables LLMs to interact with Redis key-value stores through a set of standardized tools.
Playwright McpPlaywright MCP server
Howtocook Mcp基于Anduin2017 / HowToCook (程序员在家做饭指南)的mcp server,帮你推荐菜谱、规划膳食,解决“今天吃什么“的世纪难题;
Based on Anduin2017/HowToCook (Programmer's Guide to Cooking at Home), MCP Server helps you recommend recipes, plan meals, and solve the century old problem of "what to eat today"
MCP AdvisorMCP Advisor & Installation - Use the right MCP server for your needs
ChatWiseThe second fastest AI chatbot™
BlenderBlenderMCP connects Blender to Claude AI through the Model Context Protocol (MCP), allowing Claude to directly interact with and control Blender. This integration enables prompt assisted 3D modeling, scene creation, and manipulation.