MCPLow riskUnclaimed
SSH — policy-gated remote access
Policy-gated, audited SSH for Linux and Windows hosts: roles, approvals, and an audit log.
tufantunctufantunc/ssh-mcp
server.json
{
"$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
"name": "io.github.tufantunc/ssh-mcp",
"description": "Policy-gated, audited SSH for Linux and Windows hosts: roles, approvals, and an audit log.",
"title": "SSH — policy-gated remote access",
"repository": {
"url": "https://github.com/tufantunc/ssh-mcp",
"source": "github"
},
"version": "2.18.0",
"websiteUrl": "https://github.com/tufantunc/ssh-mcp#readme",
"packages": [
{
"registryType": "npm",
"identifier": "ssh-mcp",
"version": "2.18.0",
"transport": {
"type": "stdio"
},
"environmentVariables": [
{
"description": "Password for the configured profile; a per-profile SSH_MCP_<PROFILE>_PASSWORD takes precedence. Credentials are never accepted as CLI arguments.",
"isSecret": true,
"name": "SSH_MCP_PASSWORD"
},
{
"description": "Path to the private key file to authenticate with — the path, not the key material. A per-profile SSH_MCP_<PROFILE>_KEY takes precedence.",
"format": "filepath",
"name": "SSH_MCP_KEY"
},
{
"description": "Passphrase for an encrypted private key.",
"isSecret": true,
"name": "SSH_MCP_PASSPHRASE"
},
{
"description": "Password the sudo tool escalates with, when the policy in force allows the privileged class.",
"isSecret": true,
"name": "SSH_MCP_SUDO_PASSWORD"
}
]
}
]
}Permissions
DeclaredDetected
Runs code—
nodeInstalls—
npm:ssh-mcp@2.18.0Runs install scripts—None
NetworkNoneNone
Needs credentials
SSH_MCP_PASSPHRASESSH_MCP_PASSWORDSSH_MCP_SUDO_PASSWORDSSH_MCP_PASSPHRASESSH_MCP_PASSWORDSSH_MCP_SUDO_PASSWORDOutside the workspace—None
Agent tools—None
Checks
Low risk · Nothing worth a warning was found.
Not reviewed by a person · Checked by rules; the model review is not switched on yet.
Versions
- #12.18.0latestOct 7, 2026
SSH — policy-gated remote accessOpen in Codeg