vpn-bypass-mcp
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@vpn-bypass-mcpshow me the current routing mode and which domains bypass the VPN"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
vpn-bypass-mcp is an MCP server for VPN Bypass, the macOS menu bar app that decides which traffic uses the VPN and which goes around it. An AI agent uses it to read the app's state and change its routing through the app's local control socket. It runs on macOS only.
Features
23 tools, one per app action: status, domain lists, services, routing mode, kernel routes, DNS refresh, the log, and Custom-mode routes and rules.
Every tool returns the app's own JSON unchanged, so fields a newer app adds reach the agent.
Tool descriptions tell an agent that has never seen the app what each mode does, and keep kernel routes apart from Custom-mode egress routes.
MCP hints on every tool (
readOnlyHint,destructiveHint,idempotentHint), so a client can ask before a destructive call.VPN_BYPASS_MCP_READ_ONLY=1registers only the 8 tools that change nothing.Errors an agent can act on: the app is not running, the app is older than 4.9.0 (with its version when it reports one), or the app's own error code.
A proxy password travels in a separate field and is never returned, echoed or logged.
stdio only; the server opens no network port.
Related MCP server: mac-audio-router-mcp
Quick start
npx -y vpn-bypass-mcp --versionThen add the server to your MCP client (Claude Desktop, Cursor, or any client that reads mcpServers):
{
"mcpServers": {
"vpn-bypass": {
"command": "npx",
"args": ["-y", "vpn-bypass-mcp"]
}
}
}VPN Bypass must be open. The domain, service, active-route, refresh and log tools need VPN Bypass 4.9.0 or newer; status, set_mode and the Custom-mode tools work with older versions. Claude Code, the release binaries and building from source are in Getting started.
Documentation
The full documentation is at geiserx.github.io/vpn-bypass-mcp.
Getting started: requirements, npm, release binary, source, first run
Configuration: environment variables, read-only mode, timeouts, security
Usage: modes, the two kinds of route, every tool, errors
Development: build, test, release
Related projects: the VPN Bypass app, its
vpnbcommand line, and where this server is listed
Related projects
VPN Bypass, the app, and its Homebrew tap.
License
This server cannot be deployed
Maintenance
Related MCP Connectors
Use your Mac, Windows or Linux computer from ChatGPT, Claude or Codex: files, commands, documents.
MCP connector that lets ChatGPT list, search, and run your Apple Shortcuts via a local Mac agent
Operate Linux, macOS and Windows from your LLM. Every action runs through an auditable allowlist.
Search, read, and write your Apple Notes from ChatGPT/Claude via a local Mac agent + MCP relay.
Related MCP Servers
- AlicenseAqualityDmaintenanceEnables AI assistants to read live macOS processes and identify monitoring software, including Chinese enterprise EDR/DLP/MDM tools, through a read-only MCP server.52MIT
- AlicenseAqualityDmaintenanceEnables AI agents to manage macOS audio routing, device switching, volume control, and multi-zone playback.16MIT
- AlicenseBqualityAmaintenanceEnables AI agents to directly access native macOS services, media, system health, and administration tools through a local MCP server.4034 npmMIT
- FlicenseBqualityAmaintenanceEnables ChatGPT Web to securely control a trusted local computer through an OpenAI Secure MCP Tunnel, letting it perform file, process, Git, and other system operations on Windows, macOS, and Linux.62-