Command Security Layer

by andrew-beniash

Not rated
GitHub

About

Implements a robust security layer for command processing, utilizing multi-step verification and auditing to enable high-security use cases like critical infrastructure management.

Details

Author
andrew-beniash
Repository
Andrew-Beniash/mcp-command-server
Categories
Developer Tools, Productivity, Design, AI, Infrastructure, Security, Frontend

- 🔒 Secure command execution with whitelist
- ✅ User confirmation for all commands
- 📝 Comprehensive audit logging
- 🔍 Input validation and sanitization
- 🤖 Claude Desktop integration

Setting up with Highlight

This MCP is not yet compatible with Highlight’s one-click setup. However, you can still use it with Highlight by following these steps:

  1. Download and install Highlight from highlightai.com/download
  2. Navigate to the plugins tab and select "Add Custom Plugin"
  3. Configure the plugin with the settings below
    Plugin Name Command Security Layer
    Command (node, npx, python, etc.) uv
    Arguments
    • Argument 1 run
    • Argument 2 python
    • Argument 3 -m
    • Argument 4 mcp_command_server
    Environment
    • ALLOWED_COMMANDS ls,pwd,echo

    Please refer to the README for specific instructions on how to obtain API keys or other required environment variables.

  4. Enable "Start Automatically" if you want the plugin to start when Highlight launches

From the repository


uv venv
source .venv/bin/activate  # On Unix/macOS
.venv\Scripts\activate     # On Windows

uv pip install -e ".[dev]"

Claude Desktop / Cursor

Paste into your MCP client config file to install this server.

{
    "mcpServers": {
        "command security layer": {
            "env": {
                "ALLOWED_COMMANDS": "ls,pwd,echo"
            },
            "args": [
                "run",
                "python",
                "-m",
                "mcp_command_server"
            ],
            "command": "uv"
        }
    }
}

Linux

{
    "env": {
        "ALLOWED_COMMANDS": "ls,pwd,echo"
    },
    "args": [
        "run",
        "python",
        "-m",
        "mcp_command_server"
    ],
    "command": "uv"
}

Macos

{
    "env": {
        "ALLOWED_COMMANDS": "ls,pwd,echo"
    },
    "args": [
        "run",
        "python",
        "-m",
        "mcp_command_server"
    ],
    "command": "uv"
}

Windows

{
    "env": {
        "ALLOWED_COMMANDS": "ls,pwd,echo"
    },
    "args": [
        "run",
        "python",
        "-m",
        "mcp_command_server"
    ],
    "command": "uv"
}

A secure Model Context Protocol (MCP) server for executing system commands through LLM applications like Claude.

export ALLOWED_COMMANDS="ls,pwd,echo"
{ "mcpServers": { "command-server": { "command": "uv", "args": ["run", "python", "-m", "mcp_command_server"], "env": { "ALLOWED_COMMANDS": "ls,pwd,echo" } } } }

- 🔒 Secure command execution with whitelist
- ✅ User confirmation for all commands
- 📝 Comprehensive audit logging
- 🔍 Input validation and sanitization
- 🤖 Claude Desktop integration

For complete documentation, see thedocs/directory:

- Installation Guide
-
Security Guidelines
-
API Reference
-
Usage Examples
-
Troubleshooting

# Clone repository git clone https://github.com/yourusername/mcp-command-server.git cd mcp-command-server # Create virtual environment uv venv source .venv/bin/activate # On Unix/macOS .venv\Scripts\activate # On Windows # Install development dependencies uv pip install -e ".[dev]"
# Run all tests pytest # Run specific test file pytest tests/unit/security/test_validator.py # Run with coverage pytest --cov=mcp_command_server

- Fork the repository
- Create your feature branch
- Run tests and linting
- Submit a pull request

This is a web browser that enables your coding agent, such as Claude Code, to visit websites on your behalf and assist you in identifying bugs or creating UI test cases.

Create crafted UI components inspired by the best 21st.dev design engineers.

Bring agent evaluations, observability, and synthetic test set generation directly into your IDE for free with Galileo's new MCP server

An MCP server to help AI assistants to answer questions and generate AccelByte Extend SDK code more effectively .

MCP server for AI Diagram Maker — generate beautiful software engineering diagrams directly inside Cursor, Claude Desktop, Claude Code, or any MCP-compatible AI agent

ALAPI MCP Tools,Call hundreds of API interfaces via MCP

AI-powered SVG animation generator that transforms static files into animated SVG components using the Allyson platform

MCP server that gives AI assistants on-demand access to 1,500+ amCharts docs, ~300 code examples, and 1000+ class API references.

APIMatic MCP Server is used to validate OpenAPI specifications using APIMatic. The server processes OpenAPI files and returns validation summaries by leveraging APIMatic’s API.

One shared context layer for AI agents and humans — live API specs, DB schemas, and versioned contracts across repos so every agent and teammate works from the same source of truth.

Build and deploy full-stack Next.js apps with 98 tools for React, AWS, and MongoDB

No reviews yet — be the first

Sign in to leave a review

Use Google, GitHub, or an email account so ratings stay tied to real people.

Email sign in

No reviews posted yet.