security MCP Server
SSH MCP server that runs locally making it easy to manage hosts and perform commands across a group of hosts
Discovered via unknown and last synced 1w ago.
1. Add to claude_desktop_config.json
{
"mcpServers": {
"ssh-mcp": {
"command": "uvx",
"args": [
"blc-ssh-mcp"
]
}
}
}Config file location: ~/Library/Application Support/Claude/claude_desktop_config.json (macOS) / %APPDATA%\Claude\claude_desktop_config.json (Windows)
`127.0.0.1`
`false`
Download a file from a server via SFTP (validates both local and remote paths)
`8000`
—
`bearer`
List configured servers; optionally filter by group
`128`
Upload a local file to a server via SFTP (validates both local and remote paths)
will not be available at all if server is started with `--disableSudo`
Run a command on all servers in a group (parallel; supports `fail_fast` and `force`)
Retrieves the cached operating system information for Linux and Windows hosts. You can specify individual hosts or an entire group.
Updates the cached operating system information for Linux and Windows hosts. You can specify individual hosts or an entire group.
Removes a host from the SSH configuration by group and name.
Retrieves the list of all groups from the SSH configuration.
be disabled by passing the `--disableSudo` flag at startup if sudo access is not needed or not available
Default
List server groups with member counts
—
`dev`
—
`2`
Run a shell command on a single server (supports `force` to bypass dangerous-command detection)
`console`
`256`
—
`stdio`
—
Retrieves the list of hosts from the SSH configuration. Can optionally filter by group.
Adds a new Linux or Windows host to the SSH configuration with automatic OS detection. Username and password are optional in the connection string - if not provided, the current user and SSH agent will be used for authentication.
(optional): Optional description of what this command will do (appended as a comment)
`1000`
Timeout is configured via command line argument `--timeout` (in milliseconds)
a command times out, the server automatically attempts to abort the running process before closing the connection
Execute a shell command on the remote server
persistent root access, consider using `--suPassword` instead which establishes a root shell
Requires `--sudoPassword` to be set for password-protected sudo
mode: set `--maxChars=none` or any `<= 0` value (e.g. `--maxChars=0`)
`command` (required): Shell command to execute as root using sudo
Max command characters are configured via `--maxChars`
a match, the preview carries an explicit `⚠️ DANGEROUS` banner.
真实性验证技能。分析用户提供的信息、消息、图片或内容,判断其真实性和可信度,识别虚假信息、AI生成内容或伪造内容。
Container escape is a critical attack technique where an adversary breaks out of container isolation to access the host system or other containers. Detection involves monitoring for escape indicators
Pod Security Standards (PSS) define three levels of security policies -- Privileged, Baseline, and Restricted -- enforced by the Pod Security Admission (PSA) controller built into Kubernetes 1.25+. PS
Implements eBPF-based security monitoring using Cilium Tetragon for real-time process execution tracking, network connection observability, file access auditing, and runtime enforcement. Covers TracingPolicy CRD authoring with kprobe/tracepoint hooks, in-kernel filtering via matchArgs/matchBinaries selectors, JSON event export, and integration with SIEM pipelines. Use when building kernel-level runtime security observability for Linux hosts or Kubernetes clusters.
AI Agent Governance Toolkit — Policy enforcement, zero-trust identity, execution sandboxing, and reliability engineering for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10.
Open-source sandboxed agent harness for teams. Giving every employee a secured personal agent.
AI agent security scanner. Detect vulnerabilities in agent configurations, MCP servers, and tool permissions. Available as CLI, GitHub Action, ECC plugin, and GitHub App integration. 🛡️
A secure* runtime for autonomous AI agents. Policy from plain-English constitutions. (*https://ironcurtain.dev)
Learn how to use the absolute-audit Claude skill. Complete guide with installation instructions and examples.
Learn how to use the token-scam-analysis Claude skill. Complete guide with installation instructions and examples.
Learn how to use the absolute-upgrade Claude skill. Complete guide with installation instructions and examples.