Safe Terminal MCP Server
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@Safe Terminal MCP ServerList the files in the src folder"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
Safe Terminal MCP Server
A secure, controlled terminal MCP server with strict command whitelisting and multiple safety layers.
๐ก๏ธ Security Features
Command Whitelisting: Only pre-approved commands are allowed
Pattern Blocking: Blocks shell metacharacters and dangerous patterns
Path Sanitization: Prevents directory traversal attacks
Dangerous Command Control: Requires explicit permission for risky commands
Resource Limits: Timeouts and output size limits
File Type Restrictions: Only safe file extensions allowed
Related MCP server: MCP Terminal Server
๐ Quick Setup
1. Install Dependencies
npm install2. Build Project
npm run build3. Test
npm start๐ Project Structure
safe-terminal-mcp/
โโโ src/
โ โโโ index.ts # Main server code
โโโ dist/ # Compiled JavaScript (generated)
โโโ package.json # Project dependencies
โโโ tsconfig.json # TypeScript configuration
โโโ README.md # This file๐ง Configuration
Safe Commands (Built-in)
Read-only:
ls,pwd,cat,head,tail,find,grep,wcSystem info:
date,whoami,uname,df,free,uptimeDevelopment:
git,npm,node,python(requires allowDangerous)
Dangerous Commands
These require allowDangerous: true:
File modification:
touch,mkdir,cp,mv,rmNetwork access:
ping,curl,wgetCode execution:
node,python,npmSystem changes:
chmod,chown
๐ Claude Desktop Integration
Add to your Claude Desktop config (~/Library/Application Support/Claude/claude_desktop_config.json):
{
"mcpServers": {
"safe-terminal": {
"command": "node",
"args": ["/absolute/path/to/safe-terminal-mcp/dist/index.js"]
}
}
}๐จ Available Tools
1. run_safe_command
Execute whitelisted commands with safety checks.
Parameters:
command(required): The command to executeallowDangerous(optional): Allow dangerous commands (default: false)workingDir(optional): Working directory (relative to server root)
Example:
{
"command": "ls -la",
"allowDangerous": false,
"workingDir": "src"
}2. list_safe_commands
List all available commands and their danger levels.
3. read_file
Safely read text files with extension checking.
Parameters:
path(required): File path to read
4. list_directory
List directory contents safely.
Parameters:
path(optional): Directory path (default: current directory)
๐ก๏ธ Safety Features Explained
Command Whitelisting
Only pre-approved commands in SAFE_COMMANDS are allowed. Each command is categorized as safe or dangerous.
Pattern Blocking
Blocks dangerous shell patterns:
Shell metacharacters:
;,&,|,`,$,(),{}Directory traversal:
..System directories:
/etc/,/var/,/usr/bin/Privilege escalation:
sudo,suFile redirection:
>,<
Path Sanitization
All file paths are resolved and checked to ensure they stay within the working directory.
Resource Limits
Timeout: 30 seconds max execution time
Output: 1MB max output size
File size: Files truncated at 1MB
๐งช Testing
Test the server manually:
# Start the server
npm start
# In another terminal, test with MCP inspector
npx @modelcontextprotocol/inspector node dist/index.js๐ Security Best Practices
Run in Isolation: Use in a sandboxed environment or VM
Monitor Commands: Review all command executions
Limit Dangerous Commands: Only enable when absolutely necessary
Regular Updates: Keep dependencies updated
Principle of Least Privilege: Only grant necessary permissions
โ ๏ธ Important Notes
This is much safer than unrestricted terminal access, but still carries risks
Dangerous commands should only be enabled when necessary
Always review commands before execution in production
Consider running in a containerized environment for additional isolation
๐ Customization
You can easily customize the server by:
Adding new safe commands to
SAFE_COMMANDSModifying
DANGEROUS_PATTERNSfor additional blockingAdjusting resource limits in
CONFIGAdding new tools for specific use cases
This server cannot be deployed
Maintenance
Related MCP Connectors
Security scanner for MCP servers. Detect vulnerabilities, prompt injection, and tool poisoning.
Run commands and read/write files on your servers over Termalin's keyless tunnels (hosted MCP).
An MCP server for deep research or task groups
Related MCP Servers
- AlicenseBqualityDmaintenanceA secure MCP server for executing whitelisted shell commands with resource and timeout controls, designed for integration with Claude and other MCP-compatible LLMs.20389 npm7MIT
- AlicenseBqualityDmaintenanceA secure terminal execution server that enables controlled command execution with security features and resource limits via the Model Context Protocol (MCP).110 npm11MIT
- AlicenseAqualityFmaintenanceAn MCP server that enables secure execution of shell commands across Windows, macOS, and Linux with built-in whitelisting and approval mechanisms for enhanced security.936 npm21MIT
- FlicenseNot gradedqualityNot gradedmaintenanceA simple MCP server that provides a terminal tool for executing shell commands with safety features like timeouts and error handling.-