
Claude Desktop
Desktop · Freemium · Proprietary
Anthropic's official Claude AI desktop application. Supports MCP servers to extend functionality.
Developer Tools · OS Automation

tufantunc/ssh-mcp
SSH MCP Server is a security-first Model Context Protocol server that gives LLM agents controlled SSH access to remote hosts — with command classification, policy-based authorization, human-in-the-loop approval, and full audit logging.
npm install -g ssh-mcp{
"mcpServers": {
"ssh-mcp": {
"command": "ssh-mcp",
"env": {
"SSH_MCP_PASSWORD": "<SSH_MCP_PASSWORD>"
}
}
}
}SSH_MCP_PASSWORDSSH_AUTH_SOCKThe risk this server exists to manage. Giving an LLM shell access on a remote host puts private data, untrusted input and network egress in one place — Simon Willison's "lethal trifecta". Prompt injection has no general fix, so ssh-mcp assumes any command may be attacker-influenced: it classifies before executing, authorizes against a role × host-group matrix, gates destructive work behind approval, and records the decision either way. That narrows the blast radius; it does not remove the risk. Two things stay yours: never point it at a root account, and never set auto approval on a production profile. SECURITY.md has the full threat model.
list-connections
Discover available hosts and connection status
list-sessions
List active sessions per host
open-session
Create a named interactive (stateful) or background session
close-session
Close a session.
read-session-output
Read output from background sessions (e.g., tail -f)
read-command
Execute allowlisted read-only commands (ls, cat, grep,...)
run-command
Execute arbitrary commands (destructive/privileged need approval, unless approvalPolicy = "auto")
privileged-command
Execute with sudo (needs approval, unless approvalPolicy = "auto")
sftp-upload
Upload a file via SFTP (replaces the destination unconditionally)
sftp-download
Download a file via SFTP
sftp-list
List a remote directory, bounded in entries and bytes
sftp-upload-file
Stream a local file to the remote host, never through model context
sftp-download-file
Stream a remote file to local disk, never through model context
signal-process
Send INT/TERM/KILL to a remote PID
exec
read-command
sudo-exec
privileged-command
Details on this page are taken from the project's README. Open README
Clients mentioned in this server's README:

Desktop · Freemium · Proprietary
Anthropic's official Claude AI desktop application. Supports MCP servers to extend functionality.

Desktop · Freemium · Proprietary
The first agentic IDE. The Cursor editor truly merges how developers and AI work together, delivering a magical coding experience.

Desktop · Freemium · Proprietary
The first agentic IDE. The Windsurf editor truly merges how developers and AI work together.

microsoft/playwright
Playwright is a framework for web automation and testing. It drives Chromium, Firefox, and WebKit with a single API — in your tests, in your scripts, and as a tool for AI agents.

yamadashy/repomix
Repomix is a tool that packs a codebase into an AI-friendly format, supporting local and remote repository processing and providing code compression, security checks and multiple output formats.

bytedance/UI-TARS-desktop
TARS is ByteDance's multimodal AI agent stack, shipping two projects: Agent TARS (a CLI and Web UI agent built on MCP) and UI-TARS-desktop (a desktop GUI agent).

ahujasid/blender-mcp
formerly blender-mcp — the PyPI package is now mcp-for-blender. Existing setups keep working; no config change is required. Read more.

microsoft/playwright-mcp
A Model Context Protocol (MCP) server that provides browser automation capabilities using Playwright. This server enables LLMs to interact with web pages through structured accessibility snapshots, bypassing the need for screenshots or visually-tuned models.

comet-ml/opik
Opik is the open-source LLM observability and evaluation platform for AI agent tracing, LLM evaluation, prompt management, and production monitoring. Built by Comet. Apache-2.0 licensed, free to self-host the full platform, with 20,000+ GitHub stars.