
SSH — policy-gated remote access MCP Server
by tufantuncio.github.tufantunc/ssh-mcpv2.18.0
SSH control for Linux and Windows servers: execute remote shell commands with password or SSH key authentication.
context tax
queued
security
queued
cold start
queued
freshness
Active6d ago
Install SSH — policy-gated remote access MCP server
Install in Claude Code
claude mcp add ssh-tufantunc -e SSH_MCP_PASSWORD='<ssh-mcp-password>' -e SSH_MCP_PASSPHRASE='<ssh-mcp-passphrase>' -e SSH_MCP_SUDO_PASSWORD='<ssh-mcp-sudo-password>' -- npx -y ssh-mcpInstall in Cursor
{
"mcpServers": {
"ssh-tufantunc": {
"command": "npx",
"args": [
"-y",
"ssh-mcp"
],
"env": {
"SSH_MCP_PASSWORD": "<ssh-mcp-password>",
"SSH_MCP_PASSPHRASE": "<ssh-mcp-passphrase>",
"SSH_MCP_SUDO_PASSWORD": "<ssh-mcp-sudo-password>"
}
}
}
}Add to ~/.cursor/mcp.json (global) or .cursor/mcp.json (project).
Install in Claude Desktop
{
"mcpServers": {
"ssh-tufantunc": {
"command": "npx",
"args": [
"-y",
"ssh-mcp"
],
"env": {
"SSH_MCP_PASSWORD": "<ssh-mcp-password>",
"SSH_MCP_PASSPHRASE": "<ssh-mcp-passphrase>",
"SSH_MCP_SUDO_PASSWORD": "<ssh-mcp-sudo-password>"
}
}
}
}Settings → Developer → Edit Config (claude_desktop_config.json), then restart.
Install in VS Code
{
"servers": {
"ssh-tufantunc": {
"type": "stdio",
"command": "npx",
"args": [
"-y",
"ssh-mcp"
],
"env": {
"SSH_MCP_PASSWORD": "<ssh-mcp-password>",
"SSH_MCP_PASSPHRASE": "<ssh-mcp-passphrase>",
"SSH_MCP_SUDO_PASSWORD": "<ssh-mcp-sudo-password>"
}
}
}
}Add to .vscode/mcp.json in your workspace.
Install in Windsurf
{
"mcpServers": {
"ssh-tufantunc": {
"command": "npx",
"args": [
"-y",
"ssh-mcp"
],
"env": {
"SSH_MCP_PASSWORD": "<ssh-mcp-password>",
"SSH_MCP_PASSPHRASE": "<ssh-mcp-passphrase>",
"SSH_MCP_SUDO_PASSWORD": "<ssh-mcp-sudo-password>"
}
}
}
}Add to ~/.codeium/windsurf/mcp_config.json.
Configuration
| Variable | Required | Secret | Description |
|---|---|---|---|
| SSH_MCP_PASSWORD | — | yes | Password for the configured profile; a per-profile SSH_MCP_<PROFILE>_PASSWORD takes precedence. Credentials are never accepted as CLI arguments. |
| SSH_MCP_KEY | — | — | Path to the private key file to authenticate with — the path, not the key material. A per-profile SSH_MCP_<PROFILE>_KEY takes precedence. |
| SSH_MCP_PASSPHRASE | — | yes | Passphrase for an encrypted private key. |
| SSH_MCP_SUDO_PASSWORD | — | yes | Password the sudo tool escalates with, when the policy in force allows the privileged class. |
Freshness
Active — last maintenance signal 6d ago. The newest of the signals below sets the band.
Last commit (default branch)
2026-10-04 · 6d ago · GitHub
Latest release
2026-10-04 · 6d ago · GitHub · v2.18.0
Package published
no data · npm/PyPI
Registry entry updated
2026-10-04 · 6d ago · official registry · v2.18.0
FAQ
›How do I install the SSH — policy-gated remote access MCP server in Claude Code?
Run: claude mcp add ssh-tufantunc -e SSH_MCP_PASSWORD='<ssh-mcp-password>' -e SSH_MCP_PASSPHRASE='<ssh-mcp-passphrase>' -e SSH_MCP_SUDO_PASSWORD='<ssh-mcp-sudo-password>' -- npx -y ssh-mcp. For Cursor, VS Code, Claude Desktop and Windsurf, use the install tabs above.
›Does SSH — policy-gated remote access require an API key?
Yes. It expects SSH_MCP_PASSWORD, SSH_MCP_PASSPHRASE, SSH_MCP_SUDO_PASSWORD, of which 3 are secrets.
›Can I use SSH — policy-gated remote access as a remote (hosted) MCP server?
No hosted endpoint is published; it runs locally over stdio.
›Is SSH — policy-gated remote access in the official MCP registry?
Yes, as io.github.tufantunc/ssh-mcp.
Alternatives to SSH — policy-gated remote access
Other ai & llm tools MCP servers.