ssh-mcp (votsie/ssh-mcp) is an MCP server listed on the M8ven Trust Index. It scores 74 out of 100, grade C. It declares 29 tools. No publisher has claimed this listing.
Управление серверами по SSH для агентов с поддержкой MCP: интерактивная консоль с эмуляцией терминала, файлы, туннели и память о серверах
Caution. Specific findings reduced this grade. They are listed on the page. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.
How we verified
Verified is a snapshot. Live keeps it current, and builds your track record.
⚡ Connect GitHub → continuous verification on every pushwhy connect →Who stands behind it
votsie
Source: github_repo_search
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access →
Install from
The grade above is for the source repository. Registries can serve a different version, so we mark the ones we were not able to read.
These names and descriptions are the publisher's own, read from the source code. We print them as written. Our assessment is the findings above, not this list.
ssh_guideПодробное руководство по работе с этими инструментами.
ssh_statusПоказать сохранённые серверы, живые соединения, сессии и туннели.
ssh_connectПодключиться к серверу по имени либо по адресу с логином и паролем/ключом.
ssh_save_serverСохранить сервер под именем, которое назвал пользователь.
ssh_forget_serverУдалить сохранённый сервер. Заметки удаляются только по явному запросу.
ssh_disconnectЗакрыть соединение с сервером вместе с его сессиями и туннелями.
ssh_forget_host_keyСнять закрепление ключа хоста.
ssh_import_legacyИмпортировать серверы из старого блочного servers.env.
ssh_runВыполнить команду на сервере и дождаться результата.
ssh_run_manyВыполнить одну команду на нескольких серверах параллельно.
ssh_notes_getПрочитать факты и заметки о сервере.
ssh_notes_addЗаписать заметку о сервере — она переживёт перезапуск и новую сессию.
ssh_facts_refreshПеречитать факты о сервере: ОС, ядро, диск, установленное ПО, порты.
ssh_historyПоказать журнал выполненных действий — что и когда делали с серверами.
ssh_uploadЗалить локальный файл на сервер и проверить, что он долетел целым.
ssh_downloadСкачать файл с сервера на эту машину и сверить контрольную сумму.
ssh_file_readПрочитать текстовый файл с сервера. Большие файлы обрезаются.
ssh_file_writeПоложить файл на сервер атомарно и идемпотентно.
ssh_list_dirПоказать содержимое каталога на сервере.
ssh_copy_betweenПерекинуть файл с одного сервера на другой через эту машину.
ssh_shell_openОткрыть интерактивную оболочку на сервере.
ssh_shell_sendОтправить текст и/или нажатия клавиш в сессию и дождаться реакции.
ssh_shell_send_secretВвести пароль в приглашение sudo, passwd или установщика.
ssh_shell_readДочитать вывод сессии, ничего не отправляя — для длящихся команд.
ssh_shell_resizeИзменить размер окна сессии. Полезно, если TUI обрезает содержимое.
ssh_shell_closeЗакрыть интерактивную сессию.
ssh_keys_listПоказать имена клавиш, которые понимает ssh_shell_send.
ssh_tunnel_openПоднять туннель до сервера.
ssh_tunnel_closeЗакрыть туннель. Без аргумента закрывает все.
SSHM_HOMEКаталог состоянияSSHM_DEBUGПодробный логTool annotations
No tools have read-only/destructive annotations
Add readOnlyHint or destructiveHint annotations to every tool so hosts can warn users before invoking.
All four hints declared on every tool
29/29 tools missing one or more hints — ssh_guide (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); ssh_status (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); ssh_connect (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint), +26 more. OpenAI's directory rejects tools where any of the four hints are missing or non-boolean.
For every tool, set all four hints (readOnlyHint, destructiveHint, idempotentHint, openWorldHint) to explicit true/false values that match the handler’s actual behaviour.
Destructive tools are labelled
1 tool perform destructive updates without destructiveHint — ssh_copy_between deletes at line 225 (spool_path.unlink(missing_ok=True))
Add destructiveHint:true to any tool whose handler calls .delete(), .upsert(), .update(), unlink, rm, DELETE, DROP, REPLACE INTO, or any operation that overwrites existing data.
Tool test coverage
19/29 tools referenced in tests (66%)
Write tests that reference each tool by name so every tool has at least one test.
Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.
[](https://m8ven.ai/mcp/votsie/ssh-mcp)?variant=verified from the URL.Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.
https://m8ven.ai/api/mcp/tool-check