Meraki MCP Server
Provides tools for interacting with the Cisco Meraki Dashboard API, enabling management of organizations, networks, devices, clients, wireless, switching, and appliance (MX) operations.
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@Meraki MCP Serverlist all networks in my organization"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
Meraki MCP Server
A Model Context Protocol (MCP) server that provides AI assistants with structured access to the Cisco Meraki Dashboard โ organizations, networks, devices, clients, wireless, switching, and appliance operations.
Note: This project is maintained by Wyre Technology.
Quick Start
Claude Code (CLI):
claude mcp add meraki-mcp \
-e MERAKI_API_KEY=your-api-key \
-e MERAKI_ORG_ID=your-org-id \
-- npx -y github:WYRE-AI/meraki-mcpSee Installation for Docker and from-source methods.
Related MCP server: Meraki MCP Server
Features
๐ MCP Protocol Compliance: Full support for MCP tools over stdio and HTTP transports
๐ Network Coverage: Tools spanning organizations, networks, devices, clients, wireless, switching, and appliance (MX) operations
๐ Flattened Navigation:
meraki_navigateandmeraki_statusare stateless discovery aids โ every tool is callable at any time๐ Safety by Default: Read-only mode is ON by default; writes are gated and destructive actions require explicit confirmation
๐ผ๏ธ Interactive Device Card (MCP Apps):
meraki_devices_getrenders as a read-only interactive card in MCP Apps hosts (SEP-1865) โ neutral by default, brandable viawindow.__BRAND__injection orMCP_BRAND_*env vars๐งฐ Long-Tail Escape Hatch:
meraki_raw_requestreaches any Meraki v1 endpoint not covered by a curated tool๐ณ Docker Ready: Containerized deployment with HTTP transport and health checks
๐ Structured Logging: Configurable log levels
Installation
Option 1: Docker
docker run -d \
-e MERAKI_API_KEY=your-key \
-e MERAKI_ORG_ID=your-org-id \
-p 8080:8080 \
ghcr.io/wyre-ai/meraki-mcp:latestOption 2: From Source
git clone https://github.com/WYRE-AI/meraki-mcp.git
cd meraki-mcp
npm ci
npm run buildConfiguration
Variable | Description | Default |
| Meraki Dashboard API key | โ |
| Default organization ID (optional) | โ |
| Override the Meraki API base URL (optional) | โ |
| Safety switch โ blocks all writes when |
|
| Transport mode ( |
|
| HTTP server port |
|
| Auth mode ( |
|
| Log level ( |
|
The legacy
READ_ONLYvariable is also honored;READ_ONLY_MODEtakes precedence.
Safety Model
This server defaults to read-only. Write operations (updates, reboots, deletions) are blocked unless you explicitly set READ_ONLY_MODE=false.
Read tools (
*_list,*_get) are always available.High-impact writes (e.g.
meraki_networks_update,meraki_clients_update_policy) are gated by read-only mode.Confirmation-gated tools additionally require a
confirm_destructive_action: trueargument, even onceREAD_ONLY_MODE=false. The confirmation flag is never forwarded to the Meraki API. Two groups qualify:Irreversible โ
meraki_networks_delete,meraki_devices_remove.High blast radius โ
meraki_appliance_firewall_l3_update,meraki_switch_ports_update,meraki_wireless_ssids_update,meraki_devices_reboot. These are reversible in principle, but each is applied over the same network link the change can break, so an operator can lose the connectivity needed to undo it.meraki_appliance_firewall_l3_updatealso replaces the rule set โ any rule not in the payload is deleted โ andmeraki_wireless_ssids_updatedrops every client on the SSID when the PSK or auth mode changes.
Confirmation is not an escape hatch from read-only mode: while
READ_ONLY_MODEis on, a confirmed call is still blocked.The
meraki_raw_requestescape hatch classifies the call by HTTP method:GETis a read;POST/PUT/DELETEare writes;DELETEis destructive.
Domains
All tools are returned upfront. Use meraki_navigate to explore a domain's tools, or meraki_status to check connectivity and the configured organization.
Domain | Tools |
organizations |
|
networks |
|
devices |
|
clients |
|
wireless |
|
switch |
|
appliance |
|
(long tail) |
|
โ = high-impact write, gated by read-only mode ยท โ โ = additionally requires confirm_destructive_action: true
Docker Deployment
Copy .env.example to .env and fill in your credentials:
cp .env.example .env
# Edit .env with your Meraki API key (and org ID)
docker run --env-file .env -p 8080:8080 ghcr.io/wyre-ai/meraki-mcp:latestDevelopment
npm ci
npm run build # Build the project
npm run start # Run over stdio
npm run start:http # Run the HTTP transport
npm run test # Run testsTesting
npm testThe test suite covers the safety contract: read-only enforcement, destructive confirmation, and that confirm_destructive_action is never forwarded to the SDK.
License
Apache 2.0 โ Copyright WYRE Technology
This server cannot be deployed
Maintenance
Related MCP Connectors
- mcpOAuthcom.vibgrate
Query your team's drift, vulnerability, and upgrade data from any AI assistant. OAuth 2.1, 51 tools.
SEO & marketing toolkit for AI agents: GA4, Search Console, AdSense, GTM, PageSpeed, Trends.
- mcp-serverOAuthcom.make
Give your AI agents the tools to build, manage, and run automation workflows.
Provides capabilities that let LLM agents perform a range of infrastructure management tasks.
Related MCP Servers
- FlicenseNot gradedqualityDmaintenanceEnables management and monitoring of Cisco Meraki networks, including device operations, client policies, firewall rules, wireless settings, and camera configurations through the Meraki API.-
- AlicenseNot gradedqualityFmaintenanceEnables interaction with the Meraki Dashboard API for LLMs, allowing seamless integration of Meraki network management capabilities within an AI assistant's conversational interface.1MIT
- AlicenseNot gradedqualityCmaintenanceEnables AI assistants to manage Cisco Meraki networks through natural language, including organizations, networks, devices, switches, wireless, and appliances.1GPL 3.0
- AlicenseNot gradedqualityDmaintenanceEnables secure, read-only monitoring of Cisco Meraki networks, allowing AI agents to query real-time information on organizations, networks, devices, clients, and traffic without risk of configuration changes.MIT